Show filters
238 Total Results
Displaying 91-100 of 238
Sort by:
Attacker Value
Unknown
CVE-2010-2541
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Buffer overflow in ftmulti.c in the ftmulti demo program in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown
CVE-2010-2519
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted length value in a POST fragment header in a font file.
0
Attacker Value
Unknown
CVE-2010-2806
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via negative size values for certain strings in FontType42 font files, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2010-2805
Disclosure Date: August 19, 2010 (last updated October 04, 2023)
The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly validate certain position values, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown
CVE-2010-2008
Disclosure Date: July 13, 2010 (last updated October 04, 2023)
MySQL before 5.1.48 allows remote authenticated users with alter database privileges to cause a denial of service (server crash and database loss) via an ALTER DATABASE command with a #mysql50# string followed by a . (dot), .. (dot dot), ../ (dot dot slash) or similar sequence, and an UPGRADE DATA DIRECTORY NAME command, which causes MySQL to move certain directories to the server data directory.
0
Attacker Value
Unknown
CVE-2010-1205
Disclosure Date: June 30, 2010 (last updated October 04, 2023)
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
0
Attacker Value
Unknown
CVE-2010-2249
Disclosure Date: June 30, 2010 (last updated October 04, 2023)
Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.
0
Attacker Value
Unknown
CVE-2010-2067
Disclosure Date: June 24, 2010 (last updated October 04, 2023)
Stack-based buffer overflow in the TIFFFetchSubjectDistance function in tif_dirread.c in LibTIFF before 3.9.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long EXIF SubjectDistance field in a TIFF file.
0
Attacker Value
Unknown
CVE-2010-2063
Disclosure Date: June 17, 2010 (last updated October 04, 2023)
Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0.x before 3.3.13 allows remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via a crafted field in a packet.
0
Attacker Value
Unknown
CVE-2010-0395
Disclosure Date: June 10, 2010 (last updated October 04, 2023)
OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro directory structure is previewed.
0