|
299791
|
- |
|
linux opensuse suse
|
linux_kernel opensuse linux_enterprise_high_availability_extension linux_enterprise_real_time
|
Integer overflow in the rds_rdma_pages function in net/rds/rdma.c in the Linux kernel allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted iovec s…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2010-3865
|
2024-11-21 10:19 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299792
|
- |
|
gnu
|
glibc
|
ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use of the LD_AUDIT environment variable to reference dynamic shared objects (DSOs)…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3856
|
2024-11-21 10:19 |
2011-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299793
|
- |
|
gnu
|
glibc
|
elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x through 2.12.1, does not properly handle a value of $ORIGIN for the LD_AUDIT environment variable, which al…
|
CWE-59
Link Following
|
CVE-2010-3847
|
2024-11-21 10:19 |
2011-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299794
|
- |
|
videolan
|
vlc_media_player
|
Multiple integer overflows in real.c in the Real demuxer plugin in VideoLAN VLC Media Player before 1.1.6 allow remote attackers to cause a denial of service (application crash) or possibly execute a…
|
CWE-189
Numeric Errors
|
CVE-2010-3907
|
2024-11-21 10:19 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299795
|
- |
|
linux debian
|
linux_kernel debian_linux
|
The get_name function in net/tipc/socket.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from ker…
|
CWE-909
Missing Initialization of Resource
|
CVE-2010-3877
|
2024-11-21 10:19 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299796
|
- |
|
linux suse opensuse debian
|
linux_kernel linux_enterprise_server opensuse linux_enterprise_desktop linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux
|
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel s…
|
CWE-909
Missing Initialization of Resource
|
CVE-2010-3876
|
2024-11-21 10:19 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299797
|
- |
|
linux debian
|
linux_kernel debian_linux
|
The ax25_getname function in net/ax25/af_ax25.c in the Linux kernel before 2.6.37-rc2 does not initialize a certain structure, which allows local users to obtain potentially sensitive information fro…
|
CWE-200
Information Exposure
|
CVE-2010-3875
|
2024-11-21 10:19 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299798
|
- |
|
linux suse opensuse debian
|
linux_kernel linux_enterprise_server opensuse debian_linux
|
The X.25 implementation in the Linux kernel before 2.6.36.2 does not properly parse facilities, which allows remote attackers to cause a denial of service (heap memory corruption and panic) or possib…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3873
|
2024-11-21 10:19 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299799
|
- |
|
mitsu_hiro_hi_rose
|
attachecase
|
Untrusted search path vulnerability in AttacheCase before 2.70 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
|
NVD-CWE-Other
|
CVE-2010-3923
|
2024-11-21 10:19 |
2010-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299800
|
- |
|
redhat
|
jboss_enterprise_application_platform
|
Cross-site request forgery (CSRF) vulnerability in the JMX Console in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.3 before 4.3.0.CP09 allows remote attackers to hijack th…
|
CWE-352
Origin Validation Error
|
CVE-2010-3878
|
2024-11-21 10:19 |
2010-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|