|
299431
|
- |
|
linux redhat
|
linux_kernel enterprise_linux
|
The udp_queue_rcv_skb function in net/ipv4/udp.c in a certain Red Hat build of the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows attackers to cause a denial of service (deadlock and…
|
CWE-399
Resource Management Errors
|
CVE-2010-4161
|
2024-11-21 10:20 |
2010-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299432
|
- |
|
linux fedoraproject suse opensuse
|
linux_kernel fedora linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit linux_enterprise_real_time_extension
|
The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwr…
|
CWE-269
Improper Privilege Management
|
CVE-2010-4258
|
2024-11-21 10:20 |
2010-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299433
|
- |
|
linux fedoraproject suse opensuse
|
linux_kernel fedora linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit linux_enterprise_real_time_extension
|
The sk_run_filter function in net/core/filter.c in the Linux kernel before 2.6.36.2 does not check whether a certain memory location has been initialized before executing a (1) BPF_S_LD_MEM or (2) BP…
|
CWE-200
Information Exposure
|
CVE-2010-4158
|
2024-11-21 10:20 |
2010-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299434
|
5.5 |
MEDIUM
Local
|
linux vmware
|
linux_kernel esx
|
drivers/scsi/bfa/bfa_core.c in the Linux kernel before 2.6.35 does not initialize a certain port data structure, which allows local users to cause a denial of service (system crash) via read operatio…
|
CWE-665
Improper Initialization
|
CVE-2010-4343
|
2024-11-21 10:20 |
2010-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299435
|
- |
|
linux opensuse suse
|
linux_kernel opensuse linux_enterprise_real_time_extension
|
The ACPI subsystem in the Linux kernel before 2.6.36.2 uses 0222 permissions for the debugfs custom_method file, which allows local users to gain privileges by placing a custom ACPI method in the ACP…
|
CWE-269
Improper Privilege Management
|
CVE-2010-4347
|
2024-11-21 10:20 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299436
|
- |
|
linux
|
linux_kernel
|
The install_special_mapping function in mm/mmap.c in the Linux kernel before 2.6.37-rc6 does not make an expected security_file_mmap function call, which allows local users to bypass intended mmap_mi…
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-4346
|
2024-11-21 10:20 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299437
|
- |
|
jovelstefan
|
embedded-video
|
Cross-site scripting (XSS) vulnerability in lembedded-video.php in the Embedded Video plugin 4.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the content parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4277
|
2024-11-21 10:20 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299438
|
- |
|
hp
|
discovery\&dependency_mapping_inventory
|
Cross-site scripting (XSS) vulnerability in HP Discovery & Dependency Mapping Inventory (DDMI) 2.5x, 7.5x, and 7.6x allows remote attackers to inject arbitrary web script or HTML via unspecified vect…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4114
|
2024-11-21 10:20 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299439
|
- |
|
hp
|
power_manager
|
Stack-based buffer overflow in HP Power Manager (HPPM) before 4.3.2 allows remote attackers to execute arbitrary code via a long Login variable to the management web server.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4113
|
2024-11-21 10:20 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299440
|
- |
|
hp
|
insight_management_agents
|
HP Insight Management Agents before 8.6 allows remote attackers to obtain sensitive information via an unspecified request that triggers disclosure of the full path.
|
CWE-200
Information Exposure
|
CVE-2010-4112
|
2024-11-21 10:20 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|