Show filters
251 Total Results
Displaying 41-50 of 251
Sort by:
Attacker Value
Unknown
CVE-2010-2955
Disclosure Date: September 08, 2010 (last updated October 04, 2023)
The cfg80211_wext_giwessid function in net/wireless/wext-compat.c in the Linux kernel before 2.6.36-rc3-next-20100831 does not properly initialize certain structure members, which allows local users to leverage an off-by-one error in the ioctl_standard_iw_point function in net/wireless/wext-core.c, and obtain potentially sensitive information from kernel heap memory, via vectors involving an SIOCGIWESSID ioctl call that specifies a large buffer size.
0
Attacker Value
Unknown
CVE-2010-2226
Disclosure Date: September 03, 2010 (last updated October 04, 2023)
The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT ioctl, which allows local users to leverage write access and obtain read access by swapping one file into another file.
0
Attacker Value
Unknown
CVE-2010-2954
Disclosure Date: September 03, 2010 (last updated October 04, 2023)
The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsap function, which allows local users to cause a denial of service (NULL pointer dereference and panic) and possibly have unspecified other impact via multiple unsuccessful calls to bind on an AF_IRDA (aka PF_IRDA) socket.
0
Attacker Value
Unknown
CVE-2010-2808
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Adobe Type 1 Mac Font File (aka LWFN) font.
0
Attacker Value
Unknown
CVE-2010-2499
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted LaserWriter PS font file with an embedded PFB fragment.
0
Attacker Value
Unknown
CVE-2010-2527
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Multiple buffer overflows in demo programs in FreeType before 2.4.0 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown
CVE-2010-2807
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
FreeType before 2.4.2 uses incorrect integer data types during bounds checking, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown
CVE-2010-2498
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
The psh_glyph_find_strong_points function in pshinter/pshalgo.c in FreeType before 2.4.0 does not properly implement hinting masks, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a crafted font file that triggers an invalid free operation.
0
Attacker Value
Unknown
CVE-2010-2500
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Integer overflow in the gray_render_span function in smooth/ftgrays.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown
CVE-2010-2520
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in the Ins_IUP function in truetype/ttinterp.c in FreeType before 2.4.0, when TrueType bytecode support is enabled, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0