Show filters
238 Total Results
Displaying 31-40 of 238
Sort by:
Attacker Value
Unknown
CVE-2011-1593
Disclosure Date: May 03, 2011 (last updated October 04, 2023)
Multiple integer overflows in the next_pidmap function in kernel/pid.c in the Linux kernel before 2.6.38.4 allow local users to cause a denial of service (system crash) via a crafted (1) getdents or (2) readdir system call.
0
Attacker Value
Unknown
CVE-2011-0463
Disclosure Date: April 10, 2011 (last updated October 04, 2023)
The ocfs2_prepare_page_for_write function in fs/ocfs2/aops.c in the Oracle Cluster File System 2 (OCFS2) subsystem in the Linux kernel before 2.6.39-rc1 does not properly handle holes that cross page boundaries, which allows local users to obtain potentially sensitive information from uninitialized disk locations by reading a file.
0
Attacker Value
Unknown
CVE-2011-0997
Disclosure Date: April 08, 2011 (last updated October 04, 2023)
dhclient in ISC DHCP 3.0.x through 4.2.x before 4.2.1-P1, 3.1-ESV before 3.1-ESV-R1, and 4.1-ESV before 4.1-ESV-R2 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message, as demonstrated by a hostname that is provided to dhclient-script.
0
Attacker Value
Unknown
CVE-2011-0695
Disclosure Date: March 15, 2011 (last updated October 04, 2023)
Race condition in the cm_work_handler function in the InfiniBand driver (drivers/infiniband/core/cma.c) in Linux kernel 2.6.x allows remote attackers to cause a denial of service (panic) by sending an InfiniBand request while other request handlers are still running, which triggers an invalid pointer dereference.
0
Attacker Value
Unknown
CVE-2011-0762
Disclosure Date: March 02, 2011 (last updated October 04, 2023)
The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a denial of service (CPU consumption and process slot exhaustion) via crafted glob expressions in STAT commands in multiple FTP sessions, a different vulnerability than CVE-2010-2632.
0
Attacker Value
Unknown
CVE-2011-1017
Disclosure Date: March 01, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the ldm_frag_add function in fs/partitions/ldm.c in the Linux kernel 2.6.37.2 and earlier might allow local users to gain privileges or obtain sensitive information via a crafted LDM partition table.
0
Attacker Value
Unknown
CVE-2011-1012
Disclosure Date: March 01, 2011 (last updated October 04, 2023)
The ldm_parse_vmdb function in fs/partitions/ldm.c in the Linux kernel before 2.6.38-rc6-git6 does not validate the VBLK size value in the VMDB structure in an LDM partition table, which allows local users to cause a denial of service (divide-by-zero error and OOPS) via a crafted partition table.
0
Attacker Value
Unknown
CVE-2011-0712
Disclosure Date: February 18, 2011 (last updated October 04, 2023)
Multiple buffer overflows in the caiaq Native Instruments USB audio functionality in the Linux kernel before 2.6.38-rc4-next-20110215 might allow attackers to cause a denial of service or possibly have unspecified other impact via a long USB device name, related to (1) the snd_usb_caiaq_audio_init function in sound/usb/caiaq/audio.c and (2) the snd_usb_caiaq_midi_init function in sound/usb/caiaq/midi.c.
0
Attacker Value
Unknown
CVE-2010-3452
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted tags in an RTF document.
0
Attacker Value
Unknown
CVE-2010-3450
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file, or unspecified other (3) JAR or (4) ZIP files.
0