|
1501
|
7.8
7.2
|
HIGH
Local
|
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from u…
|
CWE-1284
Improper Validation of Specified Quantity in Input
|
CVE-2010-3904
|
cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2026-04-22 02:29
2010-12-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1502
|
9.8
9.3
|
CRITICAL
Network
|
ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-f…
|
CWE-416
Use After Free
|
CVE-2010-2941
|
cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2024-11-21 10:17
2010-11-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1503
|
8.8
6.8
|
HIGH
Network
|
Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensi…
|
CWE-193
Off-by-one Error
|
CVE-2010-1773
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 10:15
2010-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1504
|
8.8
6.8
|
HIGH
Network
|
Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before 5.0.375.70, allows remote attackers to execute arbitrary code or cause a denia…
|
CWE-416
Use After Free
|
CVE-2010-1772
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 10:15
2010-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1505
|
-
4.3
|
MEDIUM
|
LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not configured, which allows…
|
CWE-20
Improper Input Validation
|
CVE-2010-2598
|
cpe:2.3:o:redhat:enterprise_linux:3:ga cpe:2.3:o:redhat:enterprise_linux:3:ga cpe:2.3:o:redhat:enterprise_linux:3…
|
|
|
|
|
2024-11-21 10:16
2010-07-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1506
|
-
2.6
|
LOW
|
The MMIO instruction decoder in the Xen hypervisor in the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows guest OS users to cause a denial of service (32-bit guest OS crash) via vecto…
|
CWE-20
Improper Input Validation
|
CVE-2010-0730
|
cpe:2.3:o:redhat:enterprise_linux:5:ga cpe:2.3:o:redhat:enterprise_linux:5:ga cpe:2.3:o:redhat:enterprise_linux:5…
|
|
|
|
|
2018-10-11 04:53
2010-05-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1507
|
-
4.9
|
MEDIUM
|
The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX lo…
|
CWE-399
Resource Management Errors
|
CVE-2010-0727
|
cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2020-08-8 00:13
2010-03-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1508
|
-
6.9
|
MEDIUM
|
A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently gain privileges, via …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0729
|
cpe:2.3:o:redhat:enterprise_linux:4:*
|
|
|
|
|
2017-09-19 10:30
2010-03-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1509
|
7.5
4.3
|
HIGH
Network
|
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epol…
|
CWE-416
Use After Free
|
CVE-2010-0302
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2024-02-3 11:22
2010-03-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1510
|
-
1.9
|
LOW
|
A certain Red Hat configuration step for the qla2xxx driver in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when N_Port ID Virtualization (NPIV) hardware is used, sets world-writable…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3556
|
cpe:2.3:o:redhat:enterprise_linux:5:*
|
|
|
|
|
2023-02-13 11:20
2010-01-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|