CVE-2010-2497
- EPSS 5.56%
- Veröffentlicht 19.08.2010 18:00:03
- Zuletzt bearbeitet 16.06.2026 23:20:51
Integer underflow in glyph handling in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
CVE-2010-2547
- EPSS 5.34%
- Veröffentlicht 05.08.2010 18:17:57
- Zuletzt bearbeitet 16.06.2026 23:20:57
Use-after-free vulnerability in kbx/keybox-blob.c in GPGSM in GnuPG 2.x through 2.0.16 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a certificate with a large number of Subject Alternate Names, ...
- EPSS 2.4%
- Veröffentlicht 28.07.2010 20:00:10
- Zuletzt bearbeitet 16.06.2026 23:21:43
The rendering implementation in Google Chrome before 5.0.375.125 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
CVE-2010-1205
- EPSS 43.38%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 16.06.2026 23:17:50
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
CVE-2010-2249
- EPSS 2.63%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 16.06.2026 23:20:23
Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.
CVE-2010-2063
- EPSS 78.56%
- Veröffentlicht 17.06.2010 16:30:01
- Zuletzt bearbeitet 16.06.2026 23:19:54
Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0.x before 3.3.13 allows remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arb...
CVE-2010-0395
- EPSS 10.47%
- Veröffentlicht 10.06.2010 00:30:07
- Zuletzt bearbeitet 16.06.2026 23:16:04
OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro direct...
CVE-2010-1321
- EPSS 6.88%
- Veröffentlicht 19.05.2010 18:30:03
- Zuletzt bearbeitet 16.06.2026 23:18:07
The kg_accept_krb5 function in krb5/accept_sec_context.c in the GSS-API library in MIT Kerberos 5 (aka krb5) through 1.7.1 and 1.8 before 1.8.2, as used in kadmind and other applications, does not properly check for invalid GSS-API tokens, which allo...
- EPSS 0.66%
- Veröffentlicht 07.05.2010 18:30:01
- Zuletzt bearbeitet 16.06.2026 23:18:23
Race condition in the find_keyring_by_name function in security/keys/keyring.c in the Linux kernel 2.6.34-rc5 and earlier allows local users to cause a denial of service (memory corruption and system crash) or possibly have unspecified other impact v...
CVE-2010-1451
- EPSS 0.52%
- Veröffentlicht 07.05.2010 18:30:01
- Zuletzt bearbeitet 16.06.2026 23:18:25
The TSB I-TLB load implementation in arch/sparc/kernel/tsb.S in the Linux kernel before 2.6.33 on the SPARC platform does not properly obtain the value of a certain _PAGE_EXEC_4U bit and consequently does not properly implement a non-executable stack...