- EPSS 4.21%
- Veröffentlicht 20.01.2011 19:00:08
- Zuletzt bearbeitet 16.06.2026 23:27:30
Stack-based buffer overflow in the ast_uri_encode function in main/utils.c in Asterisk Open Source before 1.4.38.1, 1.4.39.1, 1.6.1.21, 1.6.2.15.1, 1.6.2.16.1, 1.8.1.2, 1.8.2.; and Business Edition before C.3.6.2; when running in pedantic mode allows...
CVE-2011-0480
- EPSS 2.3%
- Veröffentlicht 14.01.2011 17:00:03
- Zuletzt bearbeitet 16.06.2026 23:27:28
Multiple buffer overflows in vorbis_dec.c in the Vorbis decoder in FFmpeg, as used in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344, allow remote attackers to cause a denial of service (memory corruption and application crash) or ...
CVE-2011-0482
- EPSS 1.88%
- Veröffentlicht 14.01.2011 17:00:03
- Zuletzt bearbeitet 16.06.2026 23:27:28
Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly perform a cast of an unspecified variable during handling of anchors, which allows remote attackers to cause a denial of service or possibly have unspecified other impa...
- EPSS 2.83%
- Veröffentlicht 14.01.2011 17:00:02
- Zuletzt bearbeitet 16.06.2026 23:27:27
Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle Cascading Style Sheets (CSS) token sequences in conjunction with cursors, which allows remote attackers to cause a denial of service or possibly have unspecified...
CVE-2010-3875
- EPSS 0.39%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 16.06.2026 23:23:44
The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this str...
CVE-2010-3876
- EPSS 0.38%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 16.06.2026 23:23:44
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...
CVE-2010-3877
- EPSS 0.39%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 16.06.2026 23:23:44
The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory by reading a copy of this structur...
CVE-2010-4164
- EPSS 4.31%
- Veröffentlicht 03.01.2011 20:00:42
- Zuletzt bearbeitet 16.06.2026 23:24:14
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via malformed X.25 (1) X25_FAC_CLASS_A, (2) X25_FAC_CL...
- EPSS 3.74%
- Veröffentlicht 03.01.2011 20:00:41
- Zuletzt bearbeitet 16.06.2026 23:23:43
The X.25 implementation in the Linux kernel before 2.6.36.2 does not properly parse facilities, which allows remote attackers to cause a denial of service (heap memory corruption and panic) or possibly have unspecified other impact via malformed (1) ...
CVE-2010-3848
- EPSS 0.7%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 16.06.2026 23:23:40
Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.