|
300841
|
- |
|
linux fedoraproject
|
linux_kernel fedora
|
The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local u…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2010-4249
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300842
|
- |
|
linux debian
|
linux_kernel debian_linux
|
The ivtvfb_ioctl function in drivers/media/video/ivtv/ivtvfb.c in the Linux kernel before 2.6.36-rc8 does not properly initialize a certain structure member, which allows local users to obtain potent…
|
CWE-200
Information Exposure
|
CVE-2010-4079
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300843
|
- |
|
linux suse opensuse debian
|
linux_kernel linux_enterprise_server opensuse linux_enterprise_desktop linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux
|
The sisfb_ioctl function in drivers/video/sis/sis_main.c in the Linux kernel before 2.6.36-rc6 does not properly initialize a certain structure member, which allows local users to obtain potentially …
|
CWE-909
Missing Initialization of Resource
|
CVE-2010-4078
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300844
|
- |
|
linux
|
linux_kernel
|
The ntty_ioctl_tiocgicount function in drivers/char/nozomi.c in the Linux kernel 2.6.36.1 and earlier does not properly initialize a certain structure member, which allows local users to obtain poten…
|
CWE-200
Information Exposure
|
CVE-2010-4077
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300845
|
- |
|
linux
|
linux_kernel
|
The rs_ioctl function in drivers/char/amiserial.c in the Linux kernel 2.6.36.1 and earlier does not properly initialize a certain structure member, which allows local users to obtain potentially sens…
|
CWE-200
Information Exposure
|
CVE-2010-4076
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300846
|
- |
|
linux
|
linux_kernel
|
The uart_get_count function in drivers/serial/serial_core.c in the Linux kernel before 2.6.37-rc1 does not properly initialize a certain structure member, which allows local users to obtain potential…
|
CWE-200
Information Exposure
|
CVE-2010-4075
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300847
|
- |
|
linux debian
|
linux_kernel debian_linux
|
The USB subsystem in the Linux kernel before 2.6.36-rc5 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack …
|
CWE-200
Information Exposure
|
CVE-2010-4074
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300848
|
- |
|
linux suse opensuse debian
|
linux_kernel linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux
|
The ipc subsystem in the Linux kernel before 2.6.37-rc1 does not initialize certain structures, which allows local users to obtain potentially sensitive information from kernel stack memory via vecto…
|
CWE-200
Information Exposure
|
CVE-2010-4073
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300849
|
- |
|
linux suse opensuse debian canonical
|
linux_kernel linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux ubuntu_linux
|
The copy_shmid_to_user function in ipc/shm.c in the Linux kernel before 2.6.37-rc1 does not initialize a certain structure, which allows local users to obtain potentially sensitive information from k…
|
CWE-200
Information Exposure
|
CVE-2010-4072
|
2024-11-21 10:20 |
2010-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300850
|
- |
|
apache
|
tomcat
|
The default configuration of Apache Tomcat 6.x does not include the HTTPOnly flag in a Set-Cookie header, which makes it easier for remote attackers to hijack a session via script access to a cookie.
|
CWE-16
Configuration
|
CVE-2010-4312
|
2024-11-21 10:20 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|