Canonical

Ubuntu Linux

4108 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.28%
  • Veröffentlicht 05.11.2008 15:00:14
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The hfsplus_block_allocate function in fs/hfsplus/bitmap.c in the Linux kernel before 2.6.28-rc1 does not check a certain return value from the read_mapping_page function before calling kmap, which allows attackers to cause a denial of service (syste...

  • EPSS 1.1%
  • Veröffentlicht 15.10.2008 20:08:02
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.

  • EPSS 35.58%
  • Veröffentlicht 15.10.2008 20:08:02
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox 3.0.1 through 3.0.3, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13, when running on Windows, do not properly identify the context of Windows .url shortcut files, which allows user-assisted remote attackers to bypass the...

  • EPSS 3.67%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, and SeaMonkey before 1.1.12, allow user-assisted remote attackers to move a window during a mouse click, and possibly force a file download or unspecified other drag-and-drop action, via a crafted...

  • EPSS 3.48%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The XPConnect component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to "pollute XPCNativeWrappers" and execute arbitrary code with chrome privileges via vec...

  • EPSS 3.9%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Integer overflow in the MathML component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (memory corruption and application crash) ...

  • EPSS 2.91%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to cause a denial of service (memory corruption and application crash) or po...

  • EPSS 2.89%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the layout engine and (1)...

Exploit
  • EPSS 1.34%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via byte order mark (BOM) charact...

Exploit
  • EPSS 2.06%
  • Veröffentlicht 24.09.2008 20:37:04
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Directory traversal vulnerability in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 on Linux allows remote attackers to read arbitrary files via a .. (dot dot) and URL-encoded / (slash) ...