CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2011-1194

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in Google Chrome before 10.0.648.127 allow remote attackers to bypass the pop-up blocker via unknown vectors.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1195

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to "document script lifetime handling."

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1199

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly handle DataView objects, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via unknown vectors.

    Published: 11 Mar 2011
    6.8
    Medium

    CVE-2011-1200

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly perform a cast of an unspecified variable during text rendering, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1201

    Last Modified: 11 Apr 2025

    The context implementation in WebKit, as used in Google Chrome before 10.0.648.127, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1285

    Last Modified: 11 Apr 2025

    The regular-expression functionality in Google Chrome before 10.0.648.127 does not properly implement reentrancy, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1286

    Last Modified: 11 Apr 2025

    Google V8, as used in Google Chrome before 10.0.648.127, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger incorrect access to memory.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1413

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 on Linux does not properly mitigate an unspecified flaw in an X server, which allows remote attackers to cause a denial of service (application crash) via vectors involving long messages.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1197

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly perform table painting, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1203

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly handle SVG cursors, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

    Published: 11 Mar 2011
    6.8
    Medium

    CVE-2011-1204

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly handle attributes, which allows remote attackers to cause a denial of service (DOM tree corruption) or possibly have unspecified other impact via a crafted document.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1191

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of DOM URLs.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1196

    Last Modified: 11 Apr 2025

    The OGG container implementation in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an out-of-bounds write.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1198

    Last Modified: 11 Apr 2025

    The video functionality in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger use of a malformed "out-of-bounds structure."

    Published: 11 Mar 2011
    2.1
    Low

    CVE-2011-0726

    Last Modified: 11 Apr 2025

    The do_task_stat function in fs/proc/array.c in the Linux kernel before 2.6.39-rc1 does not perform an expected uid check, which makes it easier for local users to defeat the ASLR protection mechanism by reading the start_code and end_code fields in the /proc/#####/stat file for a process executing a PIE binary.

    Published: 11 Mar 2011
    8.8
    High

    CVE-2011-1347

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Microsoft Internet Explorer 8 on Windows 7 allows remote attackers to bypass Protected Mode and create arbitrary files by leveraging access to a Low integrity process, as demonstrated by Stephen Fewer as the third of three chained vulnerabilities during a Pwn2Own competition at CanSecWest 2011.

    Published: 10 Mar 2011
    6.8
    Medium

    CVE-2011-1344

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.5; iOS before 4.3.2 for iPhone, iPod, and iPad; iOS before 4.2.7 for iPhone 4 (CDMA); and possibly other products allows remote attackers to execute arbitrary code by adding children to a WBR tag and then removing the tag, related to text nodes, as demonstrated by Chaouki Bekrar during a Pwn2Own competition at CanSecWest 2011.

    Published: 10 Mar 2011
    9.3
    Critical

    CVE-2011-1346

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Microsoft Internet Explorer 8 on Windows 7 allows remote attackers to execute arbitrary code via unknown vectors, as demonstrated by Stephen Fewer as the second of three chained vulnerabilities during a Pwn2Own competition at CanSecWest 2011.

    Published: 10 Mar 2011
    9.3
    Critical

    CVE-2011-1345

    Last Modified: 11 Apr 2025

    Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, as demonstrated by Stephen Fewer as the first of three chained vulnerabilities during a Pwn2Own competition at CanSecWest 2011, aka "Object Management Memory Corruption Vulnerability."

    Published: 10 Mar 2011
    2.1
    Low

    CVE-2011-1171

    Last Modified: 11 Apr 2025

    net/ipv4/netfilter/ip_tables.c in the IPv4 implementation in the Linux kernel before 2.6.39 does not place the expected '\0' character at the end of string data in the values of certain structure members, which allows local users to obtain potentially sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability to issue a crafted request, and then reading the argument to the resulting modprobe process.

    Published: 10 Mar 2011
    2.1
    Low

    CVE-2011-1172

    Last Modified: 11 Apr 2025

    net/ipv6/netfilter/ip6_tables.c in the IPv6 implementation in the Linux kernel before 2.6.39 does not place the expected '\0' character at the end of string data in the values of certain structure members, which allows local users to obtain potentially sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability to issue a crafted request, and then reading the argument to the resulting modprobe process.

    Published: 10 Mar 2011
    4
    Medium

    CVE-2011-1091

    Last Modified: 11 Apr 2025

    libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.

    Published: 10 Mar 2011
    2.1
    Low

    CVE-2011-1170

    Last Modified: 11 Apr 2025

    net/ipv4/netfilter/arp_tables.c in the IPv4 implementation in the Linux kernel before 2.6.39 does not place the expected '\0' character at the end of string data in the values of certain structure members, which allows local users to obtain potentially sensitive information from kernel memory by leveraging the CAP_NET_ADMIN capability to issue a crafted request, and then reading the argument to the resulting modprobe process.

    Published: 10 Mar 2011
    7.8
    High

    CVE-2011-2534

    Last Modified: 11 Apr 2025

    Buffer overflow in the clusterip_proc_write function in net/ipv4/netfilter/ipt_CLUSTERIP.c in the Linux kernel before 2.6.39 might allow local users to cause a denial of service or have unspecified other impact via a crafted write operation, related to string data that lacks a terminating '\0' character.

    Published: 10 Mar 2011
    7.8
    High

    CVE-2011-0042

    Last Modified: 11 Apr 2025

    SBE.dll in the Stream Buffer Engine in Windows Media Player and Windows Media Center in Microsoft Windows XP SP2 and SP3, Windows XP Media Center Edition 2005 SP3, Windows Vista SP1 and SP2, Windows 7 Gold and SP1, and Windows Media Center TV Pack for Windows Vista does not properly parse Digital Video Recording (.dvr-ms) files, which allows remote attackers to execute arbitrary code via a crafted file, aka "DVR-MS Vulnerability."

    Published: 9 Mar 2011
    7.5
    High

    CVE-2011-1343

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the Web GUI in IBM Tivoli Netcool/OMNIbus before 7.3.0.4 allows remote attackers to execute arbitrary SQL commands via "dynamic SQL parameters."

    Published: 9 Mar 2011
    10
    Critical

    CVE-2011-0464

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Novell Vibe OnPrem 3.0 before Hot Patch 1 allows remote attackers to execute arbitrary code via unknown vectors.

    Published: 9 Mar 2011
    7.4
    High

    CVE-2011-0029

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in the client in Microsoft Remote Desktop Connection 5.2, 6.0, 6.1, and 7.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rdp file, aka "Remote Desktop Insecure Library Loading Vulnerability."

    Published: 9 Mar 2011
    9.3
    Critical

    CVE-2011-0032

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in DirectShow in Microsoft Windows Vista SP1 and SP2, Windows 7 Gold and SP1, Windows Server 2008 R2 and R2 SP1, and Windows Media Center TV Pack for Windows Vista allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a Digital Video Recording (.dvr-ms), Windows Recorded TV Show (.wtv), or .mpg file, aka "DirectShow Insecure Library Loading Vulnerability."

    Published: 9 Mar 2011
    5.8
    Medium

    CVE-2011-1099

    Last Modified: 11 Apr 2025

    Multiple directory traversal vulnerabilities in FocalMedia.Net Quick Polls before 1.0.2 allow remote attackers to (1) read arbitrary files via a .. (dot dot) in the p parameter in a preview action to index.php, or (2) delete arbitrary files via a .. (dot dot) in the p parameter in a delete action to index.php.

    Published: 9 Mar 2011
    7.8
    High

    CVE-2011-1145

    Last Modified: 21 Nov 2024

    The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow condition when specifying a large value for SAVEFILE parameter in the connection string.

    Published: 9 Mar 2011
    4.3
    Medium

    CVE-2011-1523

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in statusmap.c in statusmap.cgi in Nagios 3.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the layer parameter.

    Published: 9 Mar 2011
    4.3
    Medium

    CVE-2011-1712

    Last Modified: 11 Apr 2025

    The txXPathNodeUtils::getXSLTId function in txMozillaXPathTreeWalker.cpp and txStandaloneXPathTreeWalker.cpp in Mozilla Firefox before 3.5.19, 3.6.x before 3.6.17, and 4.x before 4.0.1, and SeaMonkey before 2.0.14, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.

    Published: 9 Mar 2011
    5
    Medium

    CVE-2011-0001

    Last Modified: 11 Apr 2025

    Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.

    Published: 9 Mar 2011
    5.8
    Medium

    CVE-2011-0344

    Last Modified: 11 Apr 2025

    Multiple stack-based buffer overflows in unspecified CGI programs in the Unified Maintenance Tool web interface in the embedded web server in the Communication Server (CS) in Alcatel-Lucent OmniPCX Enterprise before R9.0 H1.301.50 allow remote attackers to execute arbitrary code via crafted HTTP headers.

    Published: 8 Mar 2011
    3.3
    Low

    CVE-2011-0345

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the NMS server in Alcatel-Lucent OmniVista 4760 R5.1.06.03 and earlier allows remote attackers to read arbitrary files via directory traversal sequences in HTTP GET requests, related to the lang variable.

    Published: 8 Mar 2011
    10
    Critical

    CVE-2011-1306

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Scratchpad application in Google Chrome OS before R10 0.10.156.46 Beta has unknown impact and attack vectors.

    Published: 8 Mar 2011
    7.5
    High

    CVE-2011-1309

    Last Modified: 11 Apr 2025

    The Plug-in component in IBM WebSphere Application Server (WAS) before 7.0.0.15 does not properly handle trace requests, which has unspecified impact and attack vectors.

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1313

    Last Modified: 11 Apr 2025

    Double free vulnerability in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.35 and 7.x before 7.0.0.15 allows remote backend IIOP servers to cause a denial of service (S0C4 ABEND and storage corruption) by rejecting IIOP requests at opportunistic time instants, as demonstrated by requests associated with an ORB_Request::getACRWorkElementPtr function call.

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1314

    Last Modified: 11 Apr 2025

    The Service Integration Bus (SIB) messaging engine in IBM WebSphere Application Server (WAS) before 7.0.0.15 allows remote attackers to cause a denial of service (daemon hang) by performing close operations via network connections to a queue manager.

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1315

    Last Modified: 11 Apr 2025

    Memory leak in the messaging engine in IBM WebSphere Application Server (WAS) before 7.0.0.15 allows remote attackers to cause a denial of service (memory consumption) via network connections associated with a NULL return value from a synchronous JMS receive call.

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1316

    Last Modified: 11 Apr 2025

    The Session Initiation Protocol (SIP) Proxy in the HTTP Transport component in IBM WebSphere Application Server (WAS) before 7.0.0.15 allows remote attackers to cause a denial of service (worker thread exhaustion and UDP messaging outage) by sending many UDP messages.

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1317

    Last Modified: 11 Apr 2025

    Memory leak in com.ibm.ws.jsp.runtime.WASJSPStrBufferImpl in the JavaServer Pages (JSP) component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.37 and 7.x before 7.0.0.15 allows remote attackers to cause a denial of service (memory consumption) by sending many JSP requests that trigger large responses.

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1318

    Last Modified: 11 Apr 2025

    Memory leak in org.apache.jasper.runtime.JspWriterImpl.response in the JavaServer Pages (JSP) component in IBM WebSphere Application Server (WAS) before 7.0.0.15 allows remote attackers to cause a denial of service (memory consumption) by accessing a JSP page of an application that is repeatedly stopped and restarted.

    Published: 8 Mar 2011
    6.5
    Medium

    CVE-2011-1321

    Last Modified: 11 Apr 2025

    The AuthCache purge implementation in the Security component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.37 and 7.x before 7.0.0.15 does not purge a user from the PlatformCredential cache, which might allow remote authenticated users to gain privileges by leveraging a group membership specified in an old RACF Object (aka RACO).

    Published: 8 Mar 2011
    5
    Medium

    CVE-2011-1322

    Last Modified: 11 Apr 2025

    The SOAP with Attachments API for Java (SAAJ) implementation in the Web Services component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.37 and 7.x before 7.0.0.15 allows remote attackers to cause a denial of service (memory consumption) via encrypted SOAP messages.

    Published: 8 Mar 2011
    2.1
    Low

    CVE-2011-1307

    Last Modified: 11 Apr 2025

    The installer in IBM WebSphere Application Server (WAS) before 7.0.0.15 uses 777 permissions for a temporary log directory, which allows local users to have unintended access to log files via standard filesystem operations, a different vulnerability than CVE-2009-1173.

    Published: 8 Mar 2011
    6
    Medium

    CVE-2011-1311

    Last Modified: 11 Apr 2025

    The Security component in IBM WebSphere Application Server (WAS) before 7.0.0.15, when a J2EE 1.4 application is used, determines the security role mapping on the basis of the ibm-application-bnd.xml file instead of the intended ibm-application-bnd.xmi file, which might allow remote authenticated users to gain privileges in opportunistic circumstances by requesting a service.

    Published: 8 Mar 2011
    4
    Medium

    CVE-2011-1312

    Last Modified: 11 Apr 2025

    The Administrative Console component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.31 and 7.x before 7.0.0.15 does not prevent modifications of the primary admin id, which allows remote authenticated administrators to bypass intended access restrictions by mapping a (1) user or (2) group to an administrator role.

    Published: 8 Mar 2011
    6.8
    Medium

    CVE-2011-1320

    Last Modified: 11 Apr 2025

    The Security component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.35 and 7.x before 7.0.0.15, when the Tivoli Integrated Portal / embedded WebSphere Application Server (TIP/eWAS) framework is used, does not properly delete AuthCache entries upon a logout, which might allow remote attackers to access the server by leveraging an unattended workstation.

    Published: 8 Mar 2011