CVE-2010-4492
- EPSS 1.92%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animations.
CVE-2010-4493
- EPSS 1.58%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events.
CVE-2010-4494
- EPSS 1.26%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath...
CVE-2010-4180
- EPSS 3.85%
- Veröffentlicht 06.12.2010 21:05:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...
CVE-2010-4080
- EPSS 0.08%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HD...
CVE-2010-4081
- EPSS 0.08%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The snd_hdspm_hwdep_ioctl function in sound/pci/rme9652/hdspm.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_...
CVE-2010-4083
- EPSS 0.09%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The copy_semid_to_user function in ipc/sem.c in the Linux kernel before 2.6.36 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) IPC_INFO, (2) SEM_INFO, (3...
CVE-2010-3858
- EPSS 0.15%
- Veröffentlicht 30.11.2010 21:38:23
- Zuletzt bearbeitet 11.04.2025 00:51:21
The setup_arg_pages function in fs/exec.c in the Linux kernel before 2.6.36, when CONFIG_STACK_GROWSDOWN is used, does not properly restrict the stack memory consumption of the (1) arguments and (2) environment for a 32-bit application on a 64-bit pl...
CVE-2010-4078
- EPSS 0.07%
- Veröffentlicht 29.11.2010 16:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via ...
CVE-2010-4079
- EPSS 0.08%
- Veröffentlicht 29.11.2010 16:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ivtvfb_ioctl function in drivers/media/video/ivtv/ivtvfb.c in the Linux kernel before 2.6.36-rc8 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memor...