260401
|
- |
|
libtiff
|
libtiff
|
The TIFFVStripSize function in tif_strip.c in LibTIFF 3.9.0 and 3.9.2 makes incorrect calls to the TIFFGetField function, which allows remote attackers to cause a denial of service (application crash…
|
CWE-20
Improper Input Validation
|
CVE-2010-2597
|
2013-05-15 12:10 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260402
|
- |
|
libtiff
|
libtiff
|
The TIFFReadDirectory function in LibTIFF 3.9.0 does not properly validate the data types of codec-specific tags that have an out-of-order position in a TIFF file, which allows remote attackers to ca…
|
CWE-20
Improper Input Validation
|
CVE-2010-2630
|
2013-05-15 12:10 |
2010-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260403
|
- |
|
libtiff
|
libtiff
|
LibTIFF 3.9.0 ignores tags in certain situations during the first stage of TIFF file processing and does not properly handle this during the second stage, which allows remote attackers to cause a den…
|
CWE-20
Improper Input Validation
|
CVE-2010-2631
|
2013-05-15 12:10 |
2010-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260404
|
- |
|
libtiff
|
libtiff
|
Integer overflow in the TIFFroundup macro in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TIFF file t…
|
CWE-189
Numeric Errors
|
CVE-2010-2065
|
2013-05-15 12:09 |
2010-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260405
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Multiple integer overflows in the Fax3SetupState function in tif_fax3.c in the FAX3 decoder in LibTIFF before 3.9.3, as used in ImageIO in Apple Mac OS X 10.5.8 and Mac OS X 10.6 before 10.6.4, allow…
|
CWE-189
Numeric Errors
|
CVE-2010-1411
|
2013-05-15 12:08 |
2010-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260406
|
- |
|
vmware
|
workstation player server fusion vix_api
|
Format string vulnerability in vmrun in VMware VIX API 1.6.x, VMware Workstation 6.5.x before 6.5.4 build 246459, VMware Player 2.5.x before 2.5.4 build 246459, and VMware Server 2.x on Linux, and VM…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2010-1139
|
2013-05-15 12:07 |
2010-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260407
|
- |
|
vmware
|
workstation player
|
The USB service in VMware Workstation 7.0 before 7.0.1 build 227600 and VMware Player 3.0 before 3.0.1 build 227600 on Windows might allow host OS users to gain privileges by placing a Trojan horse p…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-1140
|
2013-05-15 12:07 |
2010-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260408
|
- |
|
vmware
|
workstation player ace server fusion esxi esx
|
VMware Tools in VMware Workstation 6.5.x before 6.5.4 build 246459; VMware Player 2.5.x before 2.5.4 build 246459; VMware ACE 2.5.x before 2.5.4 build 246459; VMware Server 2.x before 2.0.2 build 203…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-1142
|
2013-05-15 12:07 |
2010-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260409
|
- |
|
vmware
|
workstation player ace server fusion
|
The virtual networking stack in VMware Workstation 7.0 before 7.0.1 build 227600, VMware Workstation 6.5.x before 6.5.4 build 246459 on Windows, VMware Player 3.0 before 3.0.1 build 227600, VMware Pl…
|
CWE-200
Information Exposure
|
CVE-2010-1138
|
2013-05-15 12:07 |
2010-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260410
|
- |
|
apple
|
cups
|
The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine the file that provides localized message strings, w…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0393
|
2013-05-15 12:06 |
2010-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|