CVE-2013-5616
- EPSS 2.87%
- Published 11.12.2013 15:55:12
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the nsEventListenerManager::HandleEventSubType function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code...
- EPSS 2.75%
- Published 11.12.2013 15:55:07
- Last modified 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allow remote attackers to cause a denial of service (memory corruption and app...
CVE-2012-5830
- EPSS 1.45%
- Published 21.11.2012 12:55:03
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 on Mac OS X allows remote attackers to execute arbitrary code via an...
CVE-2010-3881
- EPSS 0.07%
- Published 23.12.2010 18:00:02
- Last modified 11.04.2025 00:51:21
arch/x86/kvm/x86.c in the Linux kernel before 2.6.36.2 does not initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory via read operations on the /dev/kvm device.
CVE-2010-2537
- EPSS 0.09%
- Published 30.09.2010 15:00:01
- Last modified 11.04.2025 00:51:21
The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Linux kernel before 2.6.35 allows local users to overwrite an append-only file via a (1) BTRFS_IOC_CLONE or (2) BTRFS_IOC_CLONE_RANGE ioctl call that specifies this file as a donor.
CVE-2010-3081
- EPSS 19.92%
- Published 24.09.2010 20:00:02
- Last modified 11.04.2025 00:51:21
The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit platforms do not properly allocate the userspace memory required for the 32-bit compatibility layer, which allows local users to ...
CVE-2010-3078
- EPSS 0.05%
- Published 21.09.2010 18:00:05
- Last modified 11.04.2025 00:51:21
The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an...
CVE-2010-2942
- EPSS 0.06%
- Published 21.09.2010 18:00:02
- Last modified 11.04.2025 00:51:21
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which allows local users to obtain potentially sensitive in...
CVE-2010-2960
- EPSS 0.1%
- Published 08.09.2010 20:00:04
- Last modified 11.04.2025 00:51:21
The keyctl_session_to_parent function in security/keys/keyctl.c in the Linux kernel 2.6.35.4 and earlier expects that a certain parent session keyring exists, which allows local users to cause a denial of service (NULL pointer dereference and system ...
CVE-2010-2798
- EPSS 0.05%
- Published 08.09.2010 20:00:02
- Last modified 11.04.2025 00:51:21
The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an incorrect size value in calculations associated with sentinel directory entries, which allows local users to cause a denial of service (NULL pointer derefe...