Skip to main content

Vendor archive

fedoraproject CVEs

Beta · best-effort

5,417 CVEs tagged to vendor fedoraproject472 Critical, 2,345 High, 2,336 Medium, 264 Low, 0 Unrated.

CVE-2010-4001

Published Nov 6, 2010

GMXRC.bash in Gromacs 4.5.1 and earlier places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library i…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-3702

Published Nov 5, 2010

The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows co…

CVSS 7.5 · High

CVE-2010-2941

Published Nov 5, 2010

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of…

CVSS 9.8 · Critical

CVE-2010-3442

Published Oct 4, 2010

Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (…

CVSS 4.7 · Medium

CVE-2010-2959

Published Sep 8, 2010

Integer overflow in net/can/bcm.c in the Controller Area Network (CAN) implementation in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x before 2.6.34.6, an…

CVSS 7.2 · High

CVE-2010-2940

Published Aug 30, 2010

The auth_send function in providers/ldap/ldap_auth.c in System Security Services Daemon (SSSD) 1.3.0, when LDAP authentication and anonymous bind are enabled, allows remote attack…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-2249

Published Jun 30, 2010

Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PN…

CVSS 6.5 · Medium

CVE-2010-1205

Published Jun 30, 2010

Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG…

CVSS 9.8 · Critical

CVE-2010-0302

Published Mar 5, 2010

Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4,…

CVSS 7.5 · High

CVE-2010-0014

Published Jan 14, 2010

System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, v…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort
Showing 5,301-5,325 of 5,417 CVEsPage 213 of 217