Show filters
122 Total Results
Displaying 41-50 of 122
Sort by:
Attacker Value
Unknown
CVE-2011-0997
Disclosure Date: April 08, 2011 (last updated October 04, 2023)
dhclient in ISC DHCP 3.0.x through 4.2.x before 4.2.1-P1, 3.1-ESV before 3.1-ESV-R1, and 4.1-ESV before 4.1-ESV-R2 allows remote attackers to execute arbitrary commands via shell metacharacters in a hostname obtained from a DHCP message, as demonstrated by a hostname that is provided to dhclient-script.
0
Attacker Value
Unknown
CVE-2011-1400
Disclosure Date: March 25, 2011 (last updated October 04, 2023)
The default configuration of the shell_escape_commands directive in conf/texmf.d/95NonPath.cnf in the tex-common package before 2.08.1 in Debian GNU/Linux squeeze, Ubuntu 10.10 and 10.04 LTS, and possibly other operating systems lists certain programs, which might allow remote attackers to execute arbitrary code via a crafted TeX document.
0
Attacker Value
Unknown
CVE-2011-0762
Disclosure Date: March 02, 2011 (last updated October 04, 2023)
The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a denial of service (CPU consumption and process slot exhaustion) via crafted glob expressions in STAT commands in multiple FTP sessions, a different vulnerability than CVE-2010-2632.
0
Attacker Value
Unknown
CVE-2011-0725
Disclosure Date: February 23, 2011 (last updated October 04, 2023)
Absolute path traversal vulnerability in the org.debian.apt.UpdateCachePartially method in worker.py in Aptdaemon 0.40 in Ubuntu 10.10 and 11.04 allows local users to read arbitrary files via a full pathname in the sources_list argument, related to the D-Bus interface.
0
Attacker Value
Unknown
CVE-2010-3452
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Use-after-free vulnerability in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted tags in an RTF document.
0
Attacker Value
Unknown
CVE-2010-3450
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file, or unspecified other (3) JAR or (4) ZIP files.
0
Attacker Value
Unknown
CVE-2010-3689
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
0
Attacker Value
Unknown
CVE-2010-4253
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file in an ODF or Microsoft Office document, as demonstrated by a PowerPoint (aka PPT) document.
0
Attacker Value
Unknown
CVE-2010-3453
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
The WW8ListManager::WW8ListManager function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle an unspecified number of list levels in user-defined list styles in WW8 data in a Microsoft Word document, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted .DOC file that triggers an out-of-bounds write.
0
Attacker Value
Unknown
CVE-2010-3454
Disclosure Date: January 28, 2011 (last updated October 04, 2023)
Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted typography information in a Microsoft Word .DOC file that triggers an out-of-bounds write.
0