CVE-2010-4493
- EPSS 1.36%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 16.06.2026 23:24:54
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events.
CVE-2010-4494
- EPSS 7.53%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 16.06.2026 23:24:55
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath...
CVE-2010-4180
- EPSS 9.5%
- Veröffentlicht 06.12.2010 21:05:48
- Zuletzt bearbeitet 16.06.2026 23:24:18
OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...
CVE-2010-4080
- EPSS 0.42%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 16.06.2026 23:24:06
The snd_hdsp_hwdep_ioctl function in sound/pci/rme9652/hdsp.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_HD...
CVE-2010-4081
- EPSS 0.39%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 16.06.2026 23:24:06
The snd_hdspm_hwdep_ioctl function in sound/pci/rme9652/hdspm.c in the Linux kernel before 2.6.36-rc6 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via an SNDRV_...
CVE-2010-4083
- EPSS 0.39%
- Veröffentlicht 30.11.2010 22:14:00
- Zuletzt bearbeitet 16.06.2026 23:24:07
The copy_semid_to_user function in ipc/sem.c in the Linux kernel before 2.6.36 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) IPC_INFO, (2) SEM_INFO, (3...
CVE-2010-3858
- EPSS 0.91%
- Veröffentlicht 30.11.2010 21:38:23
- Zuletzt bearbeitet 16.06.2026 23:23:41
The setup_arg_pages function in fs/exec.c in the Linux kernel before 2.6.36, when CONFIG_STACK_GROWSDOWN is used, does not properly restrict the stack memory consumption of the (1) arguments and (2) environment for a 32-bit application on a 64-bit pl...
CVE-2010-4078
- EPSS 0.38%
- Veröffentlicht 29.11.2010 16:00:03
- Zuletzt bearbeitet 16.06.2026 23:24:06
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via ...
CVE-2010-4079
- EPSS 0.38%
- Veröffentlicht 29.11.2010 16:00:03
- Zuletzt bearbeitet 16.06.2026 23:24:06
The ivtvfb_ioctl function in drivers/media/video/ivtv/ivtvfb.c in the Linux kernel before 2.6.36-rc8 does not properly initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memor...
CVE-2010-4072
- EPSS 0.38%
- Veröffentlicht 29.11.2010 16:00:02
- Zuletzt bearbeitet 16.06.2026 23:24:04
The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from kernel stack memory via vectors related to the shmct...