CVE-2010-0434
- EPSS 5.39%
- Veröffentlicht 05.03.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ap_read_request function in server/protocol.c in the Apache HTTP Server 2.2.x before 2.2.15, when a multithreaded MPM is used, does not properly handle headers in subrequests in certain circumstances involving a parent request that has a body, wh...
CVE-2010-0205
- EPSS 4.58%
- Veröffentlicht 03.03.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which...
- EPSS 2.48%
- Veröffentlicht 22.02.2010 13:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute ...
CVE-2010-0410
- EPSS 0.15%
- Veröffentlicht 22.02.2010 13:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
drivers/connector/connector.c in the Linux kernel before 2.6.32.8 allows local users to cause a denial of service (memory consumption and system crash) by sending the kernel many NETLINK_CONNECTOR messages.
CVE-2010-0307
- EPSS 0.4%
- Veröffentlicht 17.02.2010 18:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
The load_elf_binary function in fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the x86_64 platform does not ensure that the ELF interpreter is available before a call to the SET_PERSONALITY macro, which allows local users to cause a denial of...
CVE-2009-2949
- EPSS 57.89%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in the XPMReader::ReadXPM function in filter.vcl/ixpm/svt_xpmread.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to execute arbitrary code via a crafted XPM file that triggers a heap-based buffer overflow.
CVE-2009-2950
- EPSS 22.82%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
Heap-based buffer overflow in the GIFLZWDecompressor::GIFLZWDecompressor function in filter.vcl/lgif/decode.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary ...
CVE-2009-3301
- EPSS 42.76%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer underflow in filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTDefTable table property modifier in a Word d...
CVE-2009-3302
- EPSS 42.76%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
filter/ww8/ww8par2.cxx in OpenOffice.org (OOo) before 3.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted sprmTSetBrc table property modifier in a Word document, related to a "...
CVE-2010-0136
- EPSS 4.92%
- Veröffentlicht 16.02.2010 19:30:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remote attackers to run arbitrary macros via a crafted document.