CVE-2011-1588
- EPSS 0.32%
- Veröffentlicht 14.11.2019 02:15:10
- Zuletzt bearbeitet 21.11.2024 01:26:39
Thunar before 1.3.1 could crash when copy and pasting a file name with % format characters due to a format string error.
CVE-2011-1070
- EPSS 0.13%
- Veröffentlicht 14.11.2019 01:15:10
- Zuletzt bearbeitet 21.11.2024 01:25:27
v86d before 0.1.10 do not verify if received netlink messages are sent by the kernel. This could allow unprivileged users to manipulate the video mode and potentially other consequences.
CVE-2011-1136
- EPSS 0.26%
- Veröffentlicht 14.11.2019 01:15:10
- Zuletzt bearbeitet 21.11.2024 01:25:38
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file.
CVE-2011-0544
- EPSS 0.34%
- Veröffentlicht 14.11.2019 00:15:10
- Zuletzt bearbeitet 21.11.2024 01:24:15
phpbb 3.0.x-3.0.6 has an XSS vulnerability via the [flash] BB tag.
CVE-2010-5108
- EPSS 0.31%
- Veröffentlicht 13.11.2019 23:15:10
- Zuletzt bearbeitet 21.11.2024 01:22:31
Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker to change the status and resolution of tickets without having proper permissions.
CVE-2010-4664
- EPSS 0.2%
- Veröffentlicht 13.11.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 01:21:28
In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated system user to escalate their privileges by initiating a remote VNC session.
CVE-2010-4817
- EPSS 0.25%
- Veröffentlicht 13.11.2019 22:15:11
- Zuletzt bearbeitet 21.11.2024 01:21:50
pithos before 0.3.5 allows overwrite of arbitrary files via symlinks.
CVE-2010-4657
- EPSS 1.57%
- Veröffentlicht 13.11.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 01:21:27
PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by libxml2. This results in memory leak into the resulting output.
CVE-2010-4661
- EPSS 0.15%
- Veröffentlicht 13.11.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 01:21:27
udisks before 1.0.3 allows a local user to load arbitrary Linux kernel modules.
CVE-2010-4653
- EPSS 0.78%
- Veröffentlicht 13.11.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 01:21:27
An integer overflow condition in poppler before 0.16.3 can occur when parsing CharCodes for fonts.