CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2010-3788

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X 10.6.x before 10.6.5 accesses uninitialized memory locations during processing of JP2 image data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 file.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3789

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted AVI file.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3791

    Last Modified: 11 Apr 2025

    Buffer overflow in QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG movie file.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3792

    Last Modified: 11 Apr 2025

    Integer signedness error in QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG movie file.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3793

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Sorenson movie file.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3794

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X 10.6.x before 10.6.5 accesses uninitialized memory locations during processing of FlashPix image data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FlashPix file.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3795

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X 10.6.x before 10.6.5 accesses uninitialized memory locations during processing of GIF image data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted GIF file.

    Published: 16 Nov 2010
    4.3
    Medium

    CVE-2010-3796

    Last Modified: 11 Apr 2025

    Safari RSS in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not block Java applets in an RSS feed, which allows remote attackers to obtain sensitive information via a feed: URL containing an applet that performs DOM modifications.

    Published: 16 Nov 2010
    7.8
    High

    CVE-2010-1843

    Last Modified: 11 Apr 2025

    Networking in Apple Mac OS X 10.6.2 through 10.6.4 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via a crafted PIM packet.

    Published: 16 Nov 2010
    5
    Medium

    CVE-2010-3784

    Last Modified: 11 Apr 2025

    The PMPageFormatCreateWithDataRepresentation API in Printing in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not properly handle XML data, which allows attackers to cause a denial of service (NULL pointer dereference and application crash) via unspecified API calls.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3790

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file that causes an image sample transformation to scale a sprite outside a buffer boundary.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3798

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in xar in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted xar archive.

    Published: 16 Nov 2010
    6.8
    Medium

    CVE-2010-3783

    Last Modified: 11 Apr 2025

    Password Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not properly perform replication, which allows remote authenticated users to bypass verification of the current password via unspecified vectors.

    Published: 16 Nov 2010
    3.5
    Low

    CVE-2010-3797

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Wiki Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

    Published: 16 Nov 2010
    3.3
    Low

    CVE-2010-4173

    Last Modified: 11 Apr 2025

    The default configuration of libsdp.conf in libsdp 1.1.104 and earlier creates log files in /tmp, which allows local users to overwrite arbitrary files via a (1) symlink or (2) hard link attack on the libsdp.log.##### temporary file.

    Published: 16 Nov 2010
    4.3
    Medium

    CVE-2010-4647

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in the Help Contents web application (aka the Help Server) in Eclipse IDE before 3.6.2 allow remote attackers to inject arbitrary web script or HTML via the query string to (1) help/index.jsp or (2) help/advanced/content.jsp.

    Published: 16 Nov 2010
    7.6
    High

    CVE-2010-3864

    Last Modified: 11 Apr 2025

    Multiple race conditions in ssl/t1_lib.c in OpenSSL 0.9.8f through 0.9.8o, 1.0.0, and 1.0.0a, when multi-threading and internal caching are enabled on a TLS server, might allow remote attackers to execute arbitrary code via client data that triggers a heap-based buffer overflow, related to (1) the TLS server name extension and (2) elliptic curve cryptography.

    Published: 16 Nov 2010
    6
    Medium

    CVE-2010-1829

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote authenticated users to execute arbitrary code by creating files that are outside the bounds of a share.

    Published: 15 Nov 2010
    5
    Medium

    CVE-2010-1830

    Last Modified: 11 Apr 2025

    AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 generates different error messages depending on whether a share exists, which allows remote attackers to enumerate valid share names via unspecified vectors.

    Published: 15 Nov 2010
    6.8
    Medium

    CVE-2010-1831

    Last Modified: 11 Apr 2025

    Buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code via a long name of an embedded font in a document.

    Published: 15 Nov 2010
    5.8
    Medium

    CVE-2010-1834

    Last Modified: 11 Apr 2025

    CFNetwork in Apple Mac OS X 10.6.x before 10.6.5 does not properly validate the domains of cookies, which makes it easier for remote web servers to track users by setting a cookie that is associated with a partial IP address.

    Published: 15 Nov 2010
    6.8
    Medium

    CVE-2010-1836

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in CoreGraphics in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document.

    Published: 15 Nov 2010
    6.8
    Medium

    CVE-2010-1837

    Last Modified: 11 Apr 2025

    CoreText in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a PDF document.

    Published: 15 Nov 2010
    4.4
    Medium

    CVE-2010-1838

    Last Modified: 11 Apr 2025

    Directory Services in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not properly handle errors associated with disabled mobile accounts, which allows remote attackers to bypass authentication by providing a valid account name.

    Published: 15 Nov 2010
    7.5
    High

    CVE-2010-1840

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the password-validation functionality in Directory Services in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.

    Published: 15 Nov 2010
    9.3
    Critical

    CVE-2010-1841

    Last Modified: 11 Apr 2025

    Disk Images in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted UDIF image.

    Published: 15 Nov 2010
    9.8
    Critical

    CVE-2010-1378

    Last Modified: 11 Apr 2025

    OpenSSL in Apple Mac OS X 10.6.x before 10.6.5 does not properly perform arithmetic, which allows remote attackers to bypass X.509 certificate authentication via an arbitrary certificate issued by a legitimate Certification Authority.

    Published: 15 Nov 2010
    4.3
    Medium

    CVE-2010-1803

    Last Modified: 11 Apr 2025

    Time Machine in Apple Mac OS X 10.6.x before 10.6.5 does not verify the unique identifier of its remote AFP volume, which allows remote attackers to obtain sensitive information by spoofing this volume.

    Published: 15 Nov 2010
    6.8
    Medium

    CVE-2010-1832

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code via a crafted embedded font in a document.

    Published: 15 Nov 2010
    6.8
    Medium

    CVE-2010-1833

    Last Modified: 11 Apr 2025

    Apple Type Services (ATS) in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted embedded font in a document.

    Published: 15 Nov 2010
    5
    Medium

    CVE-2010-1828

    Last Modified: 11 Apr 2025

    AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon restart) via crafted reconnect authentication packets.

    Published: 15 Nov 2010
    9.3
    Critical

    CVE-2010-1842

    Last Modified: 11 Apr 2025

    Buffer overflow in AppKit in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a bidirectional text string with ellipsis truncation.

    Published: 15 Nov 2010
    4.3
    Medium

    CVE-2010-0113

    Last Modified: 11 Apr 2025

    The Symantec Norton Mobile Security application 1.0 Beta for Android records setup details, possibly including wipe/lock credentials, in the device logs, which allows user-assisted remote attackers to obtain potentially sensitive information by leveraging the ability of a separate crafted application to read these logs.

    Published: 15 Nov 2010
    4
    Medium

    CVE-2010-2638

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in IBM WebSphere MQ 7.0 before 7.0.1.5 allows remote authenticated users to cause a denial of service (disk consumption) via vectors that trigger an FDC with an RM680004 Probe Id value.

    Published: 15 Nov 2010
    8.5
    High

    CVE-2010-2892

    Last Modified: 11 Apr 2025

    gsb/drivers.php in LANDesk Management Gateway 4.0 through 4.0-1.48 and 4.2 through 4.2-1.8 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the DRIVES parameter, as demonstrated by a cross-site request forgery (CSRF) attack.

    Published: 15 Nov 2010
    5.7
    Medium

    CVE-2011-0695

    Last Modified: 11 Apr 2025

    Race condition in the cm_work_handler function in the InfiniBand driver (drivers/infiniband/core/cma.c) in Linux kernel 2.6.x allows remote attackers to cause a denial of service (panic) by sending an InfiniBand request while other request handlers are still running, which triggers an invalid pointer dereference.

    Published: 15 Nov 2010
    3.3
    Low

    CVE-2011-1072

    Last Modified: 11 Apr 2025

    The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.

    Published: 14 Nov 2010
    3.3
    Low

    CVE-2011-1144

    Last Modified: 11 Apr 2025

    The installer in PEAR 1.9.2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1072.

    Published: 14 Nov 2010
    6.9
    Medium

    CVE-2010-4347

    Last Modified: 11 Apr 2025

    The ACPI subsystem in the Linux kernel before 2.6.36.2 uses 0222 permissions for the debugfs custom_method file, which allows local users to gain privileges by placing a custom ACPI method in the ACPI interpreter tables, related to the acpi_debugfs_init function in drivers/acpi/debugfs.c.

    Published: 13 Nov 2010
    6.8
    Medium

    CVE-2010-3892

    Last Modified: 11 Apr 2025

    Session fixation vulnerability in the login form in the administrator interface in IBM OmniFind Enterprise Edition 8.x and 9.x allows remote attackers to hijack web sessions by replaying a session ID (aka SID) value.

    Published: 12 Nov 2010
    9.3
    Critical

    CVE-2010-3894

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the Java_com_ibm_es_oss_CryptionNative_ESEncrypt function in /opt/IBM/es/lib/libffq.cryptionjni.so in the login form in the administration interface in IBM OmniFind Enterprise Edition before 8.5 FP6 allows remote attackers to execute arbitrary code via a long password.

    Published: 12 Nov 2010
    7.2
    High

    CVE-2010-3895

    Last Modified: 11 Apr 2025

    esRunCommand in IBM OmniFind Enterprise Edition before 9.1 allows local users to gain privileges by specifying an arbitrary command name as the first argument.

    Published: 12 Nov 2010
    7.5
    High

    CVE-2010-3896

    Last Modified: 11 Apr 2025

    The ESSearchApplication directory tree in IBM OmniFind Enterprise Edition 8.x and 9.x does not require authentication, which allows remote attackers to modify the server configuration via a request to palette.do.

    Published: 12 Nov 2010
    5
    Medium

    CVE-2010-3897

    Last Modified: 11 Apr 2025

    ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow remote attackers to obtain sensitive information by leveraging read access to this file.

    Published: 12 Nov 2010
    5
    Medium

    CVE-2010-3898

    Last Modified: 11 Apr 2025

    IBM OmniFind Enterprise Edition 8.x and 9.x does not properly restrict the cookie path of administrator (aka ESAdmin) cookies, which might allow remote attackers to bypass authentication by leveraging access to other pages on the web site.

    Published: 12 Nov 2010
    5
    Medium

    CVE-2010-3899

    Last Modified: 11 Apr 2025

    IBM OmniFind Enterprise Edition 8.x and 9.x performs web crawls with an unlimited recursion depth, which allows remote web servers to cause a denial of service (infinite loop) via a crafted series of documents.

    Published: 12 Nov 2010
    6.9
    Medium

    CVE-2010-4236

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in estaskwrapper in IBM OmniFind Enterprise Edition before 9.1 allows local users to gain privileges via an ES_LIBRARY_PATH environment variable and a modified PATH environment variable, which is used during execution of the estasklight program, a different vulnerability than CVE-2010-3895.

    Published: 12 Nov 2010
    7.5
    High

    CVE-2010-3893

    Last Modified: 11 Apr 2025

    The administrator interface in IBM OmniFind Enterprise Edition 8.x and 9.x does not restrict use of a session ID (aka SID) value to a single IP address, which allows remote attackers to perform arbitrary administrative actions by leveraging cookie theft, related to a "session impersonation" issue.

    Published: 12 Nov 2010
    4.3
    Medium

    CVE-2010-3890

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in IBM OmniFind Enterprise Edition before 9.1 allows remote attackers to inject arbitrary web script or HTML via the command parameter to the administration interface, as demonstrated by the command parameter to ESAdmin/collection.do.

    Published: 12 Nov 2010
    6.8
    Medium

    CVE-2010-3891

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in ESAdmin/security.do in the administrator interface in IBM OmniFind Enterprise Edition before 9.1 allows remote attackers to hijack the authentication of administrators for requests that add an administrative user via a saveNewUser action.

    Published: 12 Nov 2010