|
1471
|
-
7.5
|
HIGH
|
Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and po…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-2665
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 10:39
2012-08-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1472
|
-
4.3
|
MEDIUM
|
PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof conn…
|
CWE-20 CWE-295
Improper Input Validation Improper Certificate Validation
|
CVE-2012-0867
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2024-11-21 10:35
2012-07-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1473
|
-
7.5
|
HIGH
|
Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application c…
|
CWE-189
Numeric Errors
|
CVE-2012-1149
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2024-11-21 10:36
2012-06-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1474
|
-
1.2
|
LOW
|
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2313
|
cpe:2.3:o:redhat:enterprise_linux:5:*
|
|
|
|
|
2024-11-21 10:38
2012-06-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1475
|
6.5
6.1
|
MEDIUM
Adjacent
|
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) …
|
CWE-20
Improper Input Validation
|
CVE-2011-3363
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2024-11-21 10:30
2012-05-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1476
|
8.8
8.3
|
HIGH
Adjacent
|
Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-3191
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2024-11-21 10:29
2012-05-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1477
|
9.1
6.4
|
CRITICAL
Network
|
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote…
|
NVD-CWE-Other
|
CVE-2011-3188
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2024-11-21 10:29
2012-05-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1478
|
7.5
7.8
|
HIGH
Network
|
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial o…
|
NVD-CWE-Other
|
CVE-2011-2699
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2024-11-21 10:28
2012-05-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1479
|
-
7.2
|
HIGH
|
Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privileges by leveraging the CAP_NET_ADMIN capability during scan operations with a l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-2517
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2024-11-21 10:28
2012-05-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1480
|
7.8
7.2
|
HIGH
Local
|
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL poin…
|
CWE-476
NULL Pointer Dereference
|
CVE-2012-1097
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2024-11-21 10:36
2012-05-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|