CVE-2012-0449
- EPSS 10.94%
- Veröffentlicht 01.02.2012 16:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...
CVE-2011-3659
- EPSS 76.08%
- Veröffentlicht 01.02.2012 16:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 might allow remote attackers to execute arbitrary code via vectors related to incorrect Attribu...
CVE-2012-0442
- EPSS 1.44%
- Veröffentlicht 01.02.2012 16:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to cause a denial of service (memory corru...
- EPSS 92.41%
- Veröffentlicht 25.12.2011 01:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to exec...
CVE-2011-4516
- EPSS 47.82%
- Veröffentlicht 15.12.2011 03:57:34
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted numrlvls value in a coding st...
CVE-2011-4517
- EPSS 42.13%
- Veröffentlicht 15.12.2011 03:57:34
- Zuletzt bearbeitet 11.04.2025 00:51:21
The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data type during a certain size calculation, which allows remote attackers to trigger a heap-based buffer overflow and execute arbitrary code, or cause a deni...
CVE-2011-3439
- EPSS 6.54%
- Veröffentlicht 11.11.2011 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
FreeType in CoreGraphics in Apple iOS before 5.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a document.
CVE-2011-2660
- EPSS 1.09%
- Veröffentlicht 06.09.2011 16:55:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
The modify_resolvconf_suse script in the vpnc package before 0.5.1-55.10.1 in SUSE Linux Enterprise Desktop 11 SP1 might allow remote attackers to execute arbitrary commands via a crafted DNS domain name.
CVE-2011-1526
- EPSS 0.23%
- Veröffentlicht 11.07.2011 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
ftpd.c in the GSS-API FTP daemon in MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.1 and earlier does not check the krb5_setegid return value, which allows remote authenticated users to bypass intended group access restrictions, and create, ...
CVE-2011-0611
- EPSS 92.9%
- Veröffentlicht 13.04.2011 14:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Adobe Flash Player before 10.2.154.27 on Windows, Mac OS X, Linux, and Solaris and 10.2.156.12 and earlier on Android; Adobe AIR before 2.6.19140; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader 9.x before 9.4.4 and 10.x through 10.0.1 on W...