CVE-2010-4494
- EPSS 1.26%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath...
CVE-2010-4180
- EPSS 3.85%
- Veröffentlicht 06.12.2010 21:05:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...
CVE-2010-4249
- EPSS 0.09%
- Veröffentlicht 29.11.2010 16:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via...
CVE-2010-3705
- EPSS 1.22%
- Veröffentlicht 26.11.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory corruption and panic) via a cr...
CVE-2010-3698
- EPSS 0.1%
- Veröffentlicht 26.11.2010 19:00:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conjunction with a modified Local D...
CVE-2010-2962
- EPSS 0.12%
- Veröffentlicht 26.11.2010 19:00:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to blocks of memory, which allows l...
CVE-2010-2963
- EPSS 0.11%
- Veröffentlicht 26.11.2010 19:00:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kerne...
CVE-2010-4169
- EPSS 0.05%
- Veröffentlicht 22.11.2010 13:00:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
CVE-2010-4168
- EPSS 2.84%
- Veröffentlicht 17.11.2010 16:00:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to networ...
CVE-2010-4204
- EPSS 4.35%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, accesses a frame object after this object has been destroyed, which allows remote attackers to cause a denial of service or possibly have unspecified othe...