CVE-2010-1772
- EPSS 1.99%
- Veröffentlicht 24.09.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before 5.0.375.70, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted web ...
CVE-2010-1773
- EPSS 1.78%
- Veröffentlicht 24.09.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensitive information, cause a denial of service (memory...
CVE-2010-3301
- EPSS 4.73%
- Veröffentlicht 22.09.2010 19:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The IA32 system call emulation functionality in arch/x86/ia32/ia32entry.S in the Linux kernel before 2.6.36-rc4-git2 on the x86_64 platform does not zero extend the %eax register after the 32-bit entry path to ptrace is used, which allows local users...
CVE-2010-3477
- EPSS 0.08%
- Veröffentlicht 21.09.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certain structure members, which allows local users to o...
CVE-2010-3080
- EPSS 0.05%
- Veröffentlicht 21.09.2010 18:00:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in the snd_seq_oss_open function in sound/core/seq/oss/seq_oss_init.c in the Linux kernel before 2.6.36-rc4 might allow local users to cause a denial of service or possibly have unspecified other impact via an unsuccessful a...
CVE-2010-3067
- EPSS 0.15%
- Veröffentlicht 21.09.2010 18:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact via crafted use of the io_submit system call.
CVE-2010-3078
- EPSS 0.08%
- Veröffentlicht 21.09.2010 18:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an...
CVE-2010-2942
- EPSS 0.06%
- Veröffentlicht 21.09.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which allows local users to obtain potentially sensitive in...
CVE-2010-3069
- EPSS 16.56%
- Veröffentlicht 15.09.2010 18:00:44
- Zuletzt bearbeitet 11.04.2025 00:51:21
Stack-based buffer overflow in the (1) sid_parse and (2) dom_sid_parse functions in Samba before 3.5.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted Windows Security ID (SID) on a file ...
CVE-2010-1781
- EPSS 8%
- Veröffentlicht 09.09.2010 22:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the rendering of an inline element.