CVE-2010-3705
- EPSS 1.22%
- Veröffentlicht 26.11.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory corruption and panic) via a cr...
CVE-2010-3698
- EPSS 0.1%
- Veröffentlicht 26.11.2010 19:00:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conjunction with a modified Local D...
CVE-2010-2962
- EPSS 0.12%
- Veröffentlicht 26.11.2010 19:00:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to blocks of memory, which allows l...
CVE-2010-2963
- EPSS 0.11%
- Veröffentlicht 26.11.2010 19:00:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kerne...
CVE-2010-4169
- EPSS 0.05%
- Veröffentlicht 22.11.2010 13:00:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
CVE-2010-4168
- EPSS 2.84%
- Veröffentlicht 17.11.2010 16:00:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to networ...
CVE-2010-4204
- EPSS 4.35%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, accesses a frame object after this object has been destroyed, which allows remote attackers to cause a denial of service or possibly have unspecified othe...
CVE-2010-4206
- EPSS 2.95%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service ...
CVE-2010-4197
- EPSS 6.28%
- Veröffentlicht 06.11.2010 00:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving text ...
CVE-2010-4198
- EPSS 1.28%
- Veröffentlicht 06.11.2010 00:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, does not properly handle large text areas, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified oth...