Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.49%
  • Veröffentlicht 29.05.2012 20:55:08
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Puppet 2.6.x before 2.6.15 and 2.7.x before 2.7.13, and Puppet Enterprise (PE) Users 1.0, 1.1, 1.2.x, 2.0.x, and 2.5.x before 2.5.1 allows remote authenticated users with agent SSL keys and file-creation permissions on the puppet master to execute ar...

  • EPSS 0.09%
  • Veröffentlicht 17.05.2012 11:00:36
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the drm_mode_dirtyfb_ioctl function in drivers/gpu/drm/drm_crtc.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 3.1.5 allows local users to gain privileges or cause a denial of service (memory corrupti...

  • EPSS 0.06%
  • Veröffentlicht 17.05.2012 11:00:36
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The I/O implementation for block devices in the Linux kernel before 2.6.33 does not properly handle the CLONE_IO feature, which allows local users to cause a denial of service (I/O instability) by starting multiple processes that share an I/O context...

Exploit
  • EPSS 8.39%
  • Veröffentlicht 01.02.2012 16:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures, which allows remote attackers to cause a denial of service (memory corr...

  • EPSS 47.82%
  • Veröffentlicht 15.12.2011 03:57:34
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted numrlvls value in a coding st...

  • EPSS 42.13%
  • Veröffentlicht 15.12.2011 03:57:34
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data type during a certain size calculation, which allows remote attackers to trigger a heap-based buffer overflow and execute arbitrary code, or cause a deni...

  • EPSS 32.27%
  • Veröffentlicht 08.12.2011 11:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

dhcpd in ISC DHCP 4.x before 4.2.3-P1 and 4.1-ESV before 4.1-ESV-R4 does not properly handle regular expressions in dhcpd.conf, which allows remote attackers to cause a denial of service (daemon crash) via a crafted request packet.

  • EPSS 1.97%
  • Veröffentlicht 29.11.2011 17:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure connection" for queries to the OpenPrinting database, which allows remote attackers to execute arb...

  • EPSS 1.04%
  • Veröffentlicht 29.11.2011 17:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Software Center in Ubuntu 11.10, 11.04 10.10 does not properly validate server certificates, which allows remote attackers to execute arbitrary code or obtain sensitive information via a man-in-the-middle (MITM) attack.

Exploit
  • EPSS 49.48%
  • Veröffentlicht 29.11.2011 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in the exif_process_IFD_TAG function in exif.c in the exif extension in PHP 5.4.0beta2 on 32-bit platforms allows remote attackers to read the contents of arbitrary memory locations or cause a denial of service via a crafted offset_v...