CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2011-1957

    Last Modified: 11 Apr 2025

    The dissect_dcm_main function in epan/dissectors/packet-dcm.c in the DICOM dissector in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (infinite loop) via an invalid PDU length.

    Published: 31 May 2011
    4.3
    Medium

    CVE-2011-1959

    Last Modified: 11 Apr 2025

    The snoop_read function in wiretap/snoop.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 does not properly handle certain virtualizable buffers, which allows remote attackers to cause a denial of service (application crash) via a large length value in a snoop file that triggers a stack-based buffer over-read.

    Published: 31 May 2011
    7.8
    High

    CVE-2011-2177

    Last Modified: 21 Nov 2024

    OpenOffice.org v3.3 allows execution of arbitrary code with the privileges of the user running the OpenOffice.org suite tools.

    Published: 31 May 2011
    4.4
    Medium

    CVE-2011-2178

    Last Modified: 11 Apr 2025

    The virSecurityManagerGetPrivateData function in security/security_manager.c in libvirt 0.8.8 through 0.9.1 uses the wrong argument for a sizeof call, which causes incorrect processing of "security manager private data" that "reopens disk probing" and might allow guest OS users to read arbitrary files on the host OS. NOTE: this vulnerability exists because of a CVE-2010-2238 regression.

    Published: 31 May 2011
    Unknown

    CVE-2011-2186

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 31 May 2011
    4.3
    Medium

    CVE-2011-2597

    Last Modified: 11 Apr 2025

    The Lucent/Ascend file parser in Wireshark 1.2.x before 1.2.18, 1.4.x through 1.4.7, and 1.6.0 allows remote attackers to cause a denial of service (infinite loop) via malformed packets.

    Published: 31 May 2011
    7.7
    High

    CVE-2011-1763

    Last Modified: 11 Apr 2025

    The get_free_port function in Xen allows local authenticated DomU users to cause a denial of service or possibly gain privileges via unspecified vectors involving a new event channel port.

    Published: 31 May 2011
    5.5
    Medium

    CVE-2011-1950

    Last Modified: 11 Apr 2025

    plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011.

    Published: 31 May 2011
    4.3
    Medium

    CVE-2011-2175

    Last Modified: 11 Apr 2025

    Integer underflow in the visual_read function in wiretap/visual.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (application crash) via a malformed Visual Networks file that triggers a heap-based buffer over-read.

    Published: 31 May 2011
    7.2
    High

    CVE-2011-1709

    Last Modified: 11 Apr 2025

    GNOME Display Manager (gdm) before 2.32.2, when glib 2.28 is used, enables execution of a web browser with the uid of the gdm account, which allows local users to gain privileges via vectors involving the x-scheme-handler/http MIME type.

    Published: 31 May 2011
    4.3
    Medium

    CVE-2011-1958

    Last Modified: 11 Apr 2025

    Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Diameter dictionary file.

    Published: 31 May 2011
    4.3
    Medium

    CVE-2011-2174

    Last Modified: 11 Apr 2025

    Double free vulnerability in the tvb_uncompress function in epan/tvbuff.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (application crash) via a packet with malformed data that uses zlib compression.

    Published: 31 May 2011
    4.9
    Medium

    CVE-2011-2491

    Last Modified: 11 Apr 2025

    The Network Lock Manager (NLM) protocol implementation in the NFS client functionality in the Linux kernel before 3.0 allows local users to cause a denial of service (system hang) via a LOCK_UN flock system call.

    Published: 31 May 2011
    5
    Medium

    CVE-2011-1947

    Last Modified: 11 Apr 2025

    fetchmail 5.9.9 through 6.3.19 does not properly limit the wait time after issuing a (1) STARTTLS or (2) STLS request, which allows remote servers to cause a denial of service (application hang) by acknowledging the request but not sending additional packets.

    Published: 30 May 2011
    2.1
    Low

    CVE-2011-1943

    Last Modified: 11 Apr 2025

    The destroy_one_secret function in nm-setting-vpn.c in libnm-util in the NetworkManager package 0.8.999-3.git20110526 in Fedora 15 creates a log entry containing a certificate password, which allows local users to obtain sensitive information by reading a log file.

    Published: 29 May 2011
    9.3
    Critical

    CVE-2011-1944

    Last Modified: 11 Apr 2025

    Integer overflow in xpath.c in libxml2 2.6.x through 2.6.32 and 2.7.x through 2.7.8, and libxml 1.8.16 and earlier, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted XML file that triggers a heap-based buffer overflow when adding a new namespace node, related to handling of XPath expressions.

    Published: 27 May 2011
    3.7
    Low

    CVE-2011-1758

    Last Modified: 11 Apr 2025

    The krb5_save_ccname_done function in providers/krb5/krb5_auth.c in System Security Services Daemon (SSSD) 1.5.x before 1.5.7, when automatic ticket renewal and offline authentication are configured, uses a pathname string as a password, which allows local users to bypass Kerberos authentication by listing the /tmp directory to obtain the pathname.

    Published: 26 May 2011
    5.1
    Medium

    CVE-2010-2246

    Last Modified: 11 Apr 2025

    feh before 1.8, when the --wget-timestamp option is enabled, might allow remote attackers to execute arbitrary commands via shell metacharacters in a URL.

    Published: 26 May 2011
    4
    Medium

    CVE-2010-4806

    Last Modified: 11 Apr 2025

    The authoring tool in IBM Web Content Manager (WCM) 6.1.5, and 7.0.0.1 before CF003, allows remote authenticated users to bypass intended access restrictions on draft creation by leveraging certain resource editor privileges.

    Published: 26 May 2011
    5
    Medium

    CVE-2011-1801

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Google Chrome before 11.0.696.71 allows remote attackers to bypass the pop-up blocker via unknown vectors.

    Published: 26 May 2011
    7.5
    High

    CVE-2011-1804

    Last Modified: 11 Apr 2025

    rendering/RenderBox.cpp in WebCore in WebKit before r86862, as used in Google Chrome before 11.0.696.71, does not properly render floats, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

    Published: 26 May 2011
    10
    Critical

    CVE-2011-1806

    Last Modified: 11 Apr 2025

    Google Chrome before 11.0.696.71 does not properly implement the GPU command buffer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.

    Published: 26 May 2011
    10
    Critical

    CVE-2011-1807

    Last Modified: 11 Apr 2025

    Google Chrome before 11.0.696.71 does not properly handle blobs, which allows remote attackers to execute arbitrary code via unspecified vectors that trigger an out-of-bounds write.

    Published: 26 May 2011
    4.3
    Medium

    CVE-2011-2172

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the search center in IBM WebSphere Portal 7.0.0.1 before CF004 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 26 May 2011
    4
    Medium

    CVE-2011-2173

    Last Modified: 11 Apr 2025

    The implementation of OutputMediator objects in IBM WebSphere Portal 6.0.1.7, and 7.0.0.1 before CF002, allows remote authenticated users to cause a denial of service (memory consumption) via requests.

    Published: 26 May 2011
    3.5
    Low

    CVE-2010-4807

    Last Modified: 11 Apr 2025

    Race condition in IBM Web Content Manager (WCM) 7.0.0.1 before CF003 allows remote authenticated users to cause a denial of service (infinite recursive query) via unspecified vectors, related to a StackOverflowError exception.

    Published: 26 May 2011
    5
    Medium

    CVE-2011-1910

    Last Modified: 11 Apr 2025

    Off-by-one error in named in ISC BIND 9.x before 9.7.3-P1, 9.8.x before 9.8.0-P2, 9.4-ESV before 9.4-ESV-R4-P1, and 9.6-ESV before 9.6-ESV-R4-P1 allows remote DNS servers to cause a denial of service (assertion failure and daemon exit) via a negative response containing large RRSIG RRsets.

    Published: 26 May 2011
    7.2
    High

    CVE-2011-2169

    Last Modified: 11 Apr 2025

    Google Chrome OS before R12 0.12.433.38 Beta allows local users to gain privileges by creating a /var/lib/chromeos-aliases.conf file and placing commands in it.

    Published: 24 May 2011
    4
    Medium

    CVE-2011-0418

    Last Modified: 11 Apr 2025

    The glob implementation in Pure-FTPd before 1.0.32, and in libc in NetBSD 5.1, does not properly expand expressions containing curly brackets, which allows remote authenticated users to cause a denial of service (memory consumption) via a crafted FTP STAT command.

    Published: 24 May 2011
    4.4
    Medium

    CVE-2011-2170

    Last Modified: 11 Apr 2025

    Google Chrome OS before R12 0.12.433.38 Beta, when Guest mode is enabled, does not prevent changes on the about:flags page, which has unspecified impact and local attack vectors.

    Published: 24 May 2011
    10
    Critical

    CVE-2011-2171

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the dbugs package in Google Chrome OS before R12 0.12.433.38 Beta has unknown impact and attack vectors.

    Published: 24 May 2011
    7.5
    High

    CVE-2011-1328

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in RADVISION iVIEW Suite before 7.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 24 May 2011
    3.5
    Low

    CVE-2011-1424

    Last Modified: 11 Apr 2025

    The default configuration of ExShortcut\Web.config in EMC SourceOne Email Management before 6.6 SP1, when the Mobile Services component is used, does not properly set the localOnly attribute of the trace element, which allows remote authenticated users to obtain sensitive information via ASP.NET Application Tracing.

    Published: 24 May 2011
    5
    Medium

    CVE-2011-2168

    Last Modified: 11 Apr 2025

    Multiple integer overflows in the glob implementation in libc in OpenBSD before 4.9 might allow context-dependent attackers to have an unspecified impact via a crafted string, related to the GLOB_APPEND and GLOB_DOOFFS flags, a different issue than CVE-2011-0418.

    Published: 24 May 2011
    5.8
    Medium

    CVE-2011-1575

    Last Modified: 11 Apr 2025

    The STARTTLS implementation in ftp_parser.c in Pure-FTPd before 1.0.30 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted FTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 23 May 2011
    5.8
    Medium

    CVE-2011-1766

    Last Modified: 11 Apr 2025

    includes/User.php in MediaWiki before 1.16.5, when wgBlockDisablesLogin is enabled, does not clear certain cached data after verification of an auth token fails, which allows remote attackers to bypass authentication by creating crafted wikiUserID and wikiUserName cookies, or by leveraging an unattended workstation.

    Published: 23 May 2011
    5
    Medium

    CVE-2009-5024

    Last Modified: 11 Apr 2025

    ViewVC before 1.1.11 allows remote attackers to bypass the cvsdb row_limit configuration setting, and consequently conduct resource-consumption attacks, via the limit parameter, as demonstrated by a "query revision history" request.

    Published: 23 May 2011
    4.3
    Medium

    CVE-2011-1765

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.5, when Internet Explorer 6 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an uploaded file accessed with a dangerous extension such as .shtml at the end of the query string, in conjunction with a modified URI path that has a %2E sequence in place of the . (dot) character. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1578 and CVE-2011-1587.

    Published: 23 May 2011
    6.8
    Medium

    CVE-2011-2165

    Last Modified: 11 Apr 2025

    The STARTTLS implementation in WatchGuard XCS 9.0 and 9.1 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 23 May 2011
    7.5
    High

    CVE-2011-1938

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the socket_connect function in ext/sockets/sockets.c in PHP 5.3.3 through 5.3.6 might allow context-dependent attackers to execute arbitrary code via a long pathname for a UNIX socket.

    Published: 23 May 2011
    6.8
    Medium

    CVE-2011-1178

    Last Modified: 11 Apr 2025

    Multiple integer overflows in the load_image function in file-pcx.c in the Personal Computer Exchange (PCX) plugin in GIMP 2.6.x and earlier allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PCX image that triggers a heap-based buffer overflow.

    Published: 23 May 2011
    7.5
    High

    CVE-2011-1782

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the read_channel_data function in file-psp.c in the Paint Shop Pro (PSP) plugin in GIMP 2.6.11 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a PSP_COMP_RLE (aka RLE compression) image file that begins a long run count at the end of the image. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-4543.

    Published: 23 May 2011
    4.3
    Medium

    CVE-2011-0082

    Last Modified: 11 Apr 2025

    The X.509 certificate validation functionality in Mozilla Firefox 4.0.x through 4.0.1 does not properly implement single-session security exceptions, which might make it easier for user-assisted remote attackers to spoof an SSL server via an untrusted certificate that triggers potentially unwanted local caching of documents from that server.

    Published: 21 May 2011
    4.3
    Medium

    CVE-2006-7245

    Last Modified: 11 Apr 2025

    Monkey's Audio before 4.01b2 allows remote attackers to cause a denial of service (application crash) via an APX file that lacks NULL termination.

    Published: 20 May 2011
    4.3
    Medium

    CVE-2009-5075

    Last Modified: 11 Apr 2025

    Monkey's Audio before 4.02 allows remote attackers to cause a denial of service (application crash) via a malformed APE file.

    Published: 20 May 2011
    5.8
    Medium

    CVE-2010-0217

    Last Modified: 11 Apr 2025

    Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or Tomcat daemon crash) via a brute-force attack.

    Published: 20 May 2011
    6.8
    Medium

    CVE-2011-0722

    Last Modified: 11 Apr 2025

    FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a malformed RealMedia file.

    Published: 20 May 2011
    6.8
    Medium

    CVE-2011-0723

    Last Modified: 11 Apr 2025

    FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed VC-1 file.

    Published: 20 May 2011
    7.5
    High

    CVE-2011-0960

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Cisco Unified Operations Manager (CUOM) before 8.6 allow remote attackers to execute arbitrary SQL commands via (1) the CCMs parameter to iptm/PRTestCreation.do or (2) the ccm parameter to iptm/TelePresenceReportAction.do, aka Bug ID CSCtn61716.

    Published: 20 May 2011
    4.3
    Medium

    CVE-2011-0961

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in cwhp/device.center.do in the Help servlet in Cisco CiscoWorks Common Services 3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the device parameter, aka Bug ID CSCto12704.

    Published: 20 May 2011