|
250941
|
9.9 |
CRITICAL
Network
|
qemu redhat
|
qemu enterprise_linux_server enterprise_linux_workstation
|
Multiple use-after-free vulnerabilities in vnc.c in the VNC server in QEMU 0.10.6 and earlier might allow guest OS users to execute arbitrary code on the host OS by establishing a connection from a V…
|
CWE-416
Use After Free
|
CVE-2009-3616
|
2024-02-16 06:06 |
2009-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250942
|
8.8 |
HIGH
Network
|
microsoft
|
internet_explorer
|
Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2…
|
CWE-416
Use After Free
|
CVE-2010-0249
|
2024-02-16 06:06 |
2010-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250943
|
8.8 |
HIGH
Network
|
phpbb
|
phpbb
|
prefs.php in phpBB 1.4.0 and earlier allows remote authenticated users to execute arbitrary PHP code via an invalid language value, which prevents the variables (1) $l_statsblock in prefs.php or (2) …
|
CWE-665
Improper Initialization
|
CVE-2001-1471
|
2024-02-16 06:06 |
2001-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250944
|
- |
|
digium
|
asterisk s800i_firmware
|
The SIP channel driver in Asterisk Open Source 1.2.x before 1.2.34, 1.4.x before 1.4.26.1, 1.6.0.x before 1.6.0.12, and 1.6.1.x before 1.6.1.4; Asterisk Business Edition A.x.x, B.x.x before B.2.5.9, …
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2009-2726
|
2024-02-16 06:05 |
2009-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250945
|
7.5 |
HIGH
Network
|
isc canonical apple
|
bind ubuntu_linux mac_os_x_server mac_os_x
|
BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote attackers to cause a denial of service (crash) via certain SIG queries, which cause an assertion failure when multiple RRsets are returned.
|
CWE-617
Reachable Assertion
|
CVE-2006-4095
|
2024-02-16 06:04 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250946
|
8.8 |
HIGH
Network
|
apple
|
mac_os_x_server mac_os_x
|
The Hash-based Message Authentication Code (HMAC) provider in Java on Apple Mac OS X 10.4.11, 10.5.4, and 10.5.5 uses an uninitialized variable, which allows remote attackers to execute arbitrary cod…
|
CWE-665
Improper Initialization
|
CVE-2008-3637
|
2024-02-16 05:54 |
2008-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250947
|
- |
|
wirlab
|
kphone
|
sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN response packet with a large attrLen value that causes an out-of-bounds read.
|
CWE-125
Out-of-bounds Read
|
CVE-2004-1940
|
2024-02-16 05:54 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250948
|
- |
|
cisco symantec hp avaya redhat freebsd openbsd apple sco 4d checkpoint dell forcepoint litespeedtech neoteris novell openssl sgi stonesoft tarantella vmware bluecoat securecomputing sun
|
firewall_services_module clientless_vpn_gateway_4400 apache-based_web_server aaa_server sg203 hp-ux enterprise_linux_desktop ciscoworks_common_management_foundation freebsd
|
The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote at…
|
CWE-125
Out-of-bounds Read
|
CVE-2004-0112
|
2024-02-16 05:54 |
2004-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250949
|
- |
|
tcpdump
|
tcpdump
|
TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an out-of-bounds read,…
|
CWE-125
Out-of-bounds Read
|
CVE-2004-0183
|
2024-02-16 05:53 |
2004-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250950
|
7.5 |
HIGH
Network
|
linux redhat
|
linux_kernel enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop enterprise_linux_eus virtualization
|
A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (deadlock) via crafted packets that f…
|
CWE-667
Improper Locking
|
CVE-2009-4272
|
2024-02-16 05:47 |
2010-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|