|
300741
|
- |
|
catb
|
gif2png
|
A certain Fedora patch for gif2png.c in gif2png 2.5.1 and 2.5.2, as distributed in gif2png-2.5.1-1200.fc12 on Fedora 12 and gif2png_2.5.2-1 on Debian GNU/Linux, truncates a GIF pathname specified on …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4695
|
2024-11-21 10:21 |
2011-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300742
|
- |
|
catb
|
gif2png
|
Buffer overflow in gif2png.c in gif2png 2.5.3 and earlier might allow context-dependent attackers to cause a denial of service (application crash) or have unspecified other impact via a GIF file that…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4694
|
2024-11-21 10:21 |
2011-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300743
|
- |
|
eclipse
|
eclipse_ide
|
Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTM…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4647
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300744
|
- |
|
crawltrack
|
crawltrack
|
Unspecified vulnerability in CrawlTrack before 3.2.7, when a public stats page is provided, allows remote attackers to execute arbitrary PHP code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4537
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300745
|
- |
|
linux
|
linux_kernel
|
Integer underflow in the irda_getsockopt function in net/irda/af_irda.c in the Linux kernel before 2.6.37 on platforms other than x86 allows local users to obtain potentially sensitive information fr…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2010-4529
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300746
|
- |
|
linux
|
linux_kernel
|
The load_mixer_volumes function in sound/oss/soundcard.c in the OSS sound subsystem in the Linux kernel before 2.6.37 incorrectly expects that a certain name field ends with a '\0' character, which a…
|
CWE-120
Classic Buffer Overflow
|
CVE-2010-4527
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300747
|
- |
|
coppermine-gallery
|
coppermine_photo_gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in Coppermine Photo Gallery 1.5.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters to …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4693
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300748
|
- |
|
php
|
php
|
strtod.c, as used in the zend_strtod function in PHP 5.2 before 5.2.17 and 5.3 before 5.3.5, and other products, allows context-dependent attackers to cause a denial of service (infinite loop) via a …
|
CWE-189
Numeric Errors
|
CVE-2010-4645
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300749
|
- |
|
linux redhat vmware
|
linux_kernel enterprise_mrg esx
|
Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unrea…
|
CWE-362
Race Condition
|
CVE-2010-4526
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300750
|
- |
|
linux
|
linux_kernel
|
Linux kernel 2.6.33 and 2.6.34.y does not initialize the kvm_vcpu_events->interrupt.pad structure member, which allows local users to obtain potentially sensitive information from kernel stack memory…
|
CWE-200
Information Exposure
|
CVE-2010-4525
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|