CVE-2012-1090
- EPSS 0.06%
- Veröffentlicht 17.05.2012 11:00:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
The cifs_lookup function in fs/cifs/dir.c in the Linux kernel before 3.2.10 allows local users to cause a denial of service (OOPS) via attempted access to a special file, as demonstrated by a FIFO.
CVE-2012-1097
- EPSS 0.12%
- Veröffentlicht 17.05.2012 11:00:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other...
CVE-2012-1146
- EPSS 0.1%
- Veröffentlicht 17.05.2012 11:00:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
The mem_cgroup_usage_unregister_event function in mm/memcontrol.c in the Linux kernel before 3.2.10 does not properly handle multiple events that are attached to the same eventfd, which allows local users to cause a denial of service (NULL pointer de...
CVE-2012-0879
- EPSS 0.08%
- Veröffentlicht 17.05.2012 11:00:36
- Zuletzt bearbeitet 11.04.2025 00:51:21
The I/O implementation for block devices in the Linux kernel before 2.6.33 does not properly handle the CLONE_IO feature, which allows local users to cause a denial of service (I/O instability) by starting multiple processes that share an I/O context...
CVE-2012-1823
- EPSS 94.39%
- Veröffentlicht 11.05.2012 10:15:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle query strings that lack an = (equals sign) character, which allows remote attackers to execute arbitrary code by ...
CVE-2011-3026
- EPSS 34.69%
- Veröffentlicht 16.02.2012 20:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.
CVE-2011-3970
- EPSS 0.49%
- Veröffentlicht 09.02.2012 04:10:29
- Zuletzt bearbeitet 11.04.2025 00:51:21
libxslt, as used in Google Chrome before 17.0.963.46, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
- EPSS 2.23%
- Veröffentlicht 01.02.2012 16:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures, which allows remote attackers to cause a denial of service (memory corr...
CVE-2012-0449
- EPSS 10.94%
- Veröffentlicht 01.02.2012 16:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...
CVE-2011-3659
- EPSS 76.08%
- Veröffentlicht 01.02.2012 16:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 might allow remote attackers to execute arbitrary code via vectors related to incorrect Attribu...