|
303661
|
- |
|
linux suse opensuse debian canonical
|
linux_kernel linux_enterprise_server opensuse linux_enterprise_desktop linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux ubuntu_linux
|
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2010-3067
|
2024-11-21 10:17 |
2010-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303662
|
5.5 |
MEDIUM
Local
|
linux canonical opensuse suse avaya vmware
|
linux_kernel ubuntu_linux opensuse suse_linux_enterprise_server suse_linux_enterprise_desktop aura_system_manager aura_communication_manager voice_portal aura_system_platform<…
|
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which al…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2010-2942
|
2024-11-21 10:17 |
2010-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303663
|
- |
|
squid-cache
|
squid
|
The string-comparison functions in String.cci in Squid 3.x before 3.1.8 and 3.2.x before 3.2.0.2 allow remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a …
|
NVD-CWE-Other
|
CVE-2010-3072
|
2024-11-21 10:17 |
2010-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303664
|
- |
|
hp
|
system_management_homepage
|
Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this issue wa…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3012
|
2024-11-21 10:17 |
2010-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303665
|
- |
|
arg0
|
encfs
|
EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations…
|
CWE-310
Cryptographic Issues
|
CVE-2010-3075
|
2024-11-21 10:17 |
2010-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303666
|
- |
|
arg0
|
encfs
|
SSL_Cipher.cpp in EncFS before 1.7.0 uses an improper combination of an AES cipher and a CBC cipher mode for encrypted filesystems, which allows local users to obtain sensitive information via a wate…
|
CWE-310
Cryptographic Issues
|
CVE-2010-3074
|
2024-11-21 10:17 |
2010-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303667
|
- |
|
arg0
|
encfs
|
SSL_Cipher.cpp in EncFS before 1.7.0 does not properly handle integer data sizes when constructing headers intended for randomization of initialization vectors, which makes it easier for local users …
|
CWE-310
Cryptographic Issues
|
CVE-2010-3073
|
2024-11-21 10:17 |
2010-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303668
|
- |
|
hp
|
system_management_homepage
|
CRLF injection vulnerability in HP System Management Homepage (SMH) before 6.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vec…
|
CWE-20
Improper Input Validation
|
CVE-2010-3011
|
2024-11-21 10:17 |
2010-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303669
|
- |
|
hp
|
3com_officeconnect_gigabit_vpn_firewall_software 3crevf100-73
|
Cross-site scripting (XSS) vulnerability on the HP 3Com OfficeConnect Gigabit VPN Firewall 3CREVF100-73 with firmware before 1.0.13 allows remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2010-3010
|
2024-11-21 10:17 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303670
|
- |
|
microsoft
|
windows_server_2008 windows_xp windows_vista windows_server_2003 office
|
The Uniscribe (aka new Unicode Script Processor) implementation in USP10.DLL in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2, and Microsoft Offic…
|
CWE-20
Improper Input Validation
|
CVE-2010-2738
|
2024-11-21 10:17 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|