CVE-2010-0136
- EPSS 4.52%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remote attackers to run arbitrary macros via a crafted document.
CVE-2010-0291
- EPSS 0.09%
- Veröffentlicht 15.02.2010 18:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Linux kernel before 2.6.32.4 allows local users to gain privileges or cause a denial of service (panic) by calling the (1) mmap or (2) mremap function, aka the "do_mremap() mess" or "mremap/mmap mess."
CVE-2010-0298
- EPSS 0.61%
- Veröffentlicht 12.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The x86 emulator in KVM 83 does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) in determining the memory access available to CPL3 code, which allows guest OS users to cause a denial of service (guest OS crash) or gain privil...
CVE-2009-4013
- EPSS 0.84%
- Veröffentlicht 02.02.2010 16:30:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple directory traversal vulnerabilities in Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allow remote attackers to overwrite arbitrary files or obtain sensitive information via vectors involving (1) control field ...
CVE-2010-0003
- EPSS 0.06%
- Veröffentlicht 26.01.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The print_fatal_signal function in kernel/signal.c in the Linux kernel before 2.6.32.4 on the i386 platform, when print-fatal-signals is enabled, allows local users to discover the contents of arbitrary memory locations by jumping to an address and t...
CVE-2009-4536
- EPSS 1.59%
- Veröffentlicht 12.01.2010 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/net/e1000/e1000_main.c in the e1000 driver in the Linux kernel 2.6.32.3 and earlier handles Ethernet frames that exceed the MTU by processing certain trailing payload data as if it were a complete frame, which allows remote attackers to bypas...
CVE-2009-4537
- EPSS 3.72%
- Veröffentlicht 12.01.2010 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/net/r8169.c in the r8169 driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to (1) cause a denial of service (temporary network outage) via...
- EPSS 2.68%
- Veröffentlicht 12.01.2010 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
drivers/net/e1000e/netdev.c in the e1000e driver in the Linux kernel 2.6.32.3 and earlier does not properly check the size of an Ethernet frame that exceeds the MTU, which allows remote attackers to have an unspecified impact via crafted packets, a r...
CVE-2010-0012
- EPSS 0.3%
- Veröffentlicht 08.01.2010 17:30:02
- Zuletzt bearbeitet 09.04.2025 00:30:58
Directory traversal vulnerability in libtransmission/metainfo.c in Transmission 1.22, 1.34, 1.75, and 1.76 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a pathname within a .torrent file.
CVE-2009-4484
- EPSS 74.61%
- Veröffentlicht 30.12.2009 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple stack-based buffer overflows in the CertDecoder::GetName function in src/asn.cpp in TaoCrypt in yaSSL before 1.9.9, as used in mysqld in MySQL 5.0.x before 5.0.90, MySQL 5.1.x before 5.1.43, MySQL 5.5.x through 5.5.0-m2, and other products, ...