CVE-2010-0727
- EPSS 0.07%
- Veröffentlicht 16.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute ...
CVE-2010-0434
- EPSS 2.55%
- Veröffentlicht 05.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ap_read_request function in server/protocol.c in the Apache HTTP Server 2.2.x before 2.2.15, when a multithreaded MPM is used, does not properly handle headers in subrequests in certain circumstances involving a parent request that has a body, wh...
CVE-2010-0205
- EPSS 8.13%
- Veröffentlicht 03.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which...
- EPSS 2.15%
- Veröffentlicht 22.02.2010 13:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute ...
CVE-2010-0410
- EPSS 0.08%
- Veröffentlicht 22.02.2010 13:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by sending the kernel many NETLINK_CONNECTOR messages.
CVE-2010-0307
- EPSS 0.13%
- Veröffentlicht 17.02.2010 18:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The load_elf_binary function in fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the x86_64 platform does not ensure that the ELF interpreter is available before a call to the SET_PERSONALITY macro, which allows local users to cause a denial of...
CVE-2009-2949
- EPSS 50.18%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the XPMReader::ReadXPM function in filter.vcl/ixpm/svt_xpmread.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to execute arbitrary code via a crafted XPM file that triggers a heap-based buffer overflow.
CVE-2009-2950
- EPSS 22.96%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary ...
CVE-2009-3301
- EPSS 38.75%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer underflow in filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTDefTable table property modifier in a Word d...
CVE-2009-3302
- EPSS 42.76%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTSetBrc table property modifier in a Word document, related to a "...