|
292211
|
- |
|
mozilla
|
firefox
|
The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarklets, which allows user-assisted remote attackers to run arbitrary programs by le…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4203
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292212
|
- |
|
mozilla suse opensuse canonical redhat
|
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux enterprise_li…
|
Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.1…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-4202
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292213
|
- |
|
mozilla suse opensuse redhat canonical debian
|
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit enterprise_linux_server en…
|
The evalInSandbox implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 uses an incor…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4201
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292214
|
- |
|
belkin
|
n300_wireless_router n450_wireless_router n150_wireless_router n900_wireless_router
|
Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 generate a predictable default WPA2-PSK passphrase based on eight digits of the…
|
CWE-310
Cryptographic Issues
|
CVE-2012-4366
|
2024-11-21 10:42 |
2012-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292215
|
- |
|
redhat
|
libvirt
|
The virNetServerProgramDispatchCall function in libvirt before 0.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and segmentation fault) via an RPC call with (1) a…
|
NVD-CWE-Other
|
CVE-2012-4423
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292216
|
- |
|
libreoffice sun
|
libreoffice openoffice.org
|
LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.…
|
NVD-CWE-Other
|
CVE-2012-4233
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292217
|
- |
|
nvidia
|
unix_graphic_driver
|
NVIDIA UNIX graphics driver before 295.71 and before 304.32 allows local users to write to arbitrary physical memory locations and gain privileges by modifying the VGA window using /dev/nvidia0.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4225
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292218
|
- |
|
gegl
|
gegl
|
Multiple integer overflows in operations/external/ppm-load.c in GEGL (Generic Graphics Library) 0.2.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbit…
|
CWE-189
Numeric Errors
|
CVE-2012-4433
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292219
|
- |
|
gluster
|
glusterfs
|
GlusterFS 3.3.0, as used in Red Hat Storage server 2.0, allows local users to overwrite arbitrary files via a symlink attack on temporary files with predictable names.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4417
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292220
|
- |
|
mozilla
|
bugzilla
|
template/en/default/bug/field-events.js.tmpl in Bugzilla 3.x before 3.6.12, 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1 generates JavaScript function…
|
CWE-200
Information Exposure
|
CVE-2012-4199
|
2024-11-21 10:42 |
2012-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|