CVE-2010-4253
- EPSS 6.23%
- Veröffentlicht 28.01.2011 22:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file in an ODF or Microsoft Office docu...
- EPSS 0.57%
- Veröffentlicht 20.01.2011 19:00:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Stack-based buffer overflow in the ast_uri_encode function in main/utils.c in Asterisk Open Source before 1.4.38.1, 1.4.39.1, 1.6.1.21, 1.6.2.15.1, 1.6.2.16.1, 1.8.1.2, 1.8.2.; and Business Edition before C.3.6.2; when running in pedantic mode allows...
CVE-2011-0480
- EPSS 1.29%
- Veröffentlicht 14.01.2011 17:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple buffer overflows in vorbis_dec.c in the Vorbis decoder in FFmpeg, as used in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344, allow remote attackers to cause a denial of service (memory corruption and application crash) or ...
CVE-2011-0482
- EPSS 3.27%
- Veröffentlicht 14.01.2011 17:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly perform a cast of an unspecified variable during handling of anchors, which allows remote attackers to cause a denial of service or possibly have unspecified other impa...
- EPSS 2.88%
- Veröffentlicht 14.01.2011 17:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle Cascading Style Sheets (CSS) token sequences in conjunction with cursors, which allows remote attackers to cause a denial of service or possibly have unspecified...
CVE-2010-3875
- EPSS 0.07%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this str...
CVE-2010-3876
- EPSS 0.06%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 11.04.2025 00:51:21
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...
CVE-2010-3877
- EPSS 0.11%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 11.04.2025 00:51:21
The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structur...
CVE-2010-4164
- EPSS 2%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via malformed X.25 (1) X25_FAC_CLASS_A, (2) X25_FAC_CL...
- EPSS 3.37%
- Veröffentlicht 03.01.2011 20:00:41
- Zuletzt bearbeitet 11.04.2025 00:51:21
The X.25 implementation in the Linux kernel before 2.6.36.2 does not properly parse facilities, which allows remote attackers to cause a denial of service (heap memory corruption and panic) or possibly have unspecified other impact via malformed (1) ...