- EPSS 92.59%
- Veröffentlicht 25.12.2011 01:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to exec...
- EPSS 4.39%
- Veröffentlicht 24.12.2011 19:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer signedness error in the base64_decode function in the HTTP authentication functionality (http_auth.c) in lighttpd 1.4 before 1.4.30 and 1.5 before SVN revision 2806 allows remote attackers to cause a denial of service (segmentation fault) via...
CVE-2011-4516
- EPSS 47.82%
- Veröffentlicht 15.12.2011 03:57:34
- Zuletzt bearbeitet 29.04.2026 01:13:23
Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted numrlvls value in a coding st...
CVE-2011-4517
- EPSS 42.13%
- Veröffentlicht 15.12.2011 03:57:34
- Zuletzt bearbeitet 29.04.2026 01:13:23
The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data type during a certain size calculation, which allows remote attackers to trigger a heap-based buffer overflow and execute arbitrary code, or cause a deni...
- EPSS 1.21%
- Veröffentlicht 13.12.2011 21:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
- EPSS 32.27%
- Veröffentlicht 08.12.2011 11:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
dhcpd in ISC DHCP 4.x before 4.2.3-P1 and 4.1-ESV before 4.1-ESV-R4 does not properly handle regular expressions in dhcpd.conf, which allows remote attackers to cause a denial of service (daemon crash) via a crafted request packet.
CVE-2011-4566
- EPSS 37.1%
- Veröffentlicht 29.11.2011 00:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in the exif_process_IFD_TAG function in exif.c in the exif extension in PHP 5.4.0beta2 on 32-bit platforms allows remote attackers to read the contents of arbitrary memory locations or cause a denial of service via a crafted offset_v...
CVE-2011-4107
- EPSS 12.43%
- Veröffentlicht 17.11.2011 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The simplexml_load_string function in the XML import plug-in (libraries/import/xml.php) in phpMyAdmin 3.4.x before 3.4.7.1 and 3.3.x before 3.3.10.5 allows remote authenticated users to read arbitrary files via XML data containing external entity ref...
CVE-2011-3892
- EPSS 2.11%
- Veröffentlicht 11.11.2011 11:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Double free vulnerability in the Theora decoder in Google Chrome before 15.0.874.120 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted stream.
CVE-2011-3895
- EPSS 3.44%
- Veröffentlicht 11.11.2011 11:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Heap-based buffer overflow in the Vorbis decoder in Google Chrome before 15.0.874.120 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted stream.