Total
2596 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2011-2602 | 2 Microsoft, Nvidia | 2 Windows Xp, Geforce 310 Driver | 2011-07-11 | 7.1 HIGH | N/A |
The NVIDIA Geforce 310 driver 6.14.12.7061 on Windows XP SP3 allows remote attackers to cause a denial of service (system crash) via a crafted web page that is visited with Google Chrome or Mozilla Firefox, as demonstrated by the lots-of-polys-example.html test page in the Khronos WebGL SDK. | |||||
CVE-2011-2618 | 1 Opera | 1 Opera Browser | 2011-07-10 | 5.0 MEDIUM | N/A |
Opera before 11.50 allows remote attackers to cause a denial of service (application crash) via web script that moves a (1) AUDIO element or (2) VIDEO element between windows. | |||||
CVE-2011-2619 | 1 Opera | 1 Opera Browser | 2011-07-10 | 5.0 MEDIUM | N/A |
Opera before 11.50 allows remote attackers to cause a denial of service (application crash) via a gradient with many stops, related to the implementation of CANVAS elements, SVG, and Cascading Style Sheets (CSS). | |||||
CVE-2011-2614 | 1 Opera | 1 Opera Browser | 2011-07-10 | 5.0 MEDIUM | N/A |
The SVG implementation in Opera before 11.50 allows remote attackers to cause a denial of service (application crash) via vectors involving a path on which many characters are drawn. | |||||
CVE-2011-2613 | 1 Opera | 1 Opera Browser | 2011-07-10 | 5.0 MEDIUM | N/A |
The Array.prototype.join method in Opera before 11.50 allows remote attackers to cause a denial of service (application crash) via a non-array object that contains initial holes. | |||||
CVE-2011-2624 | 1 Opera | 1 Opera Browser | 2011-07-07 | 4.3 MEDIUM | N/A |
Opera before 11.50 allows user-assisted remote attackers to cause a denial of service (application hang) via a large table, which is not properly handled during a print preview. | |||||
CVE-2011-2626 | 1 Opera | 1 Opera Browser | 2011-07-07 | 5.0 MEDIUM | N/A |
Opera before 11.50 allows remote attackers to cause a denial of service (application crash) by using "injected script" to set the SRC attribute of an IFRAME element. | |||||
CVE-2011-2625 | 1 Opera | 1 Opera Browser | 2011-07-07 | 5.0 MEDIUM | N/A |
Opera before 11.50 allows remote attackers to cause a denial of service (application crash) via a SELECT element that contains many OPTION elements. | |||||
CVE-2011-2635 | 1 Opera | 1 Opera Browser | 2011-07-05 | 5.0 MEDIUM | N/A |
The Cascading Style Sheets (CSS) implementation in Opera before 11.10 allows remote attackers to cause a denial of service (application crash) via vectors involving use of the :hover pseudo-class, in conjunction with transforms, for a floated element. | |||||
CVE-2011-2641 | 1 Opera | 1 Opera Browser | 2011-07-04 | 5.0 MEDIUM | N/A |
Opera 11.11 allows remote attackers to cause a denial of service (application crash) by setting the FACE attribute of a FONT element within an IFRAME element after changing the SRC attribute of this IFRAME element to an about:blank value. | |||||
CVE-2011-2639 | 1 Opera | 1 Opera Browser | 2011-07-04 | 5.0 MEDIUM | N/A |
Opera before 11.10 does not properly handle hidden animated GIF images, which allows remote attackers to cause a denial of service (CPU consumption) via an image file that triggers continual repaints. | |||||
CVE-2011-2532 | 1 Prosody | 1 Prosody | 2011-06-27 | 5.0 MEDIUM | N/A |
The json.decode function in util/json.lua in Prosody 0.8.x before 0.8.1 might allow remote attackers to cause a denial of service (infinite loop) via invalid JSON data, as demonstrated by truncated data. | |||||
CVE-2011-1757 | 1 Brad Fitzpatrick | 1 Djabberd | 2011-06-27 | 5.0 MEDIUM | N/A |
DJabberd 0.84 and earlier does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564. | |||||
CVE-2011-2206 | 1 Brad Fitzpatrick | 1 Djabberd | 2011-06-27 | 5.5 MEDIUM | N/A |
XMLParser.pm in DJabberd before 0.85 allows remote authenticated users to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference, a different vulnerability than CVE-2011-1757. | |||||
CVE-2011-2531 | 1 Prosody | 1 Prosody | 2011-06-27 | 4.3 MEDIUM | N/A |
Prosody 0.8.x before 0.8.1, when MySQL is used, assigns an incorrect data type to the value column in certain tables, which might allow remote attackers to cause a denial of service (data truncation) by sending a large amount of data. | |||||
CVE-2011-0196 | 1 Apple | 2 Mac Os X, Mac Os X Server | 2011-06-26 | 7.8 HIGH | N/A |
AirPort in Apple Mac OS X 10.5.8 allows remote attackers to cause a denial of service (out-of-bounds read and reboot) via Wi-Fi frames on the local wireless network. | |||||
CVE-2009-4008 | 1 Nlnetlabs | 1 Unbound | 2011-06-13 | 5.0 MEDIUM | N/A |
Unbound before 1.4.4 does not send responses for signed zones after mishandling an unspecified query, which allows remote attackers to cause a denial of service (DNSSEC outage) via a crafted query. | |||||
CVE-2006-3122 | 1 Isc | 1 Dhcpd | 2011-06-12 | 5.0 MEDIUM | N/A |
The supersede_lease function in memory.c in ISC DHCP (dhcpd) server 2.0pl5 allows remote attackers to cause a denial of service (application crash) via a DHCPDISCOVER packet with a 32 byte client-identifier, which causes the packet to be interpreted as a corrupt uid and causes the server to exit with "corrupt lease uid." | |||||
CVE-2007-0267 | 2 Apple, Freebsd | 2 Mac Os X, Freebsd | 2011-06-09 | 6.6 MEDIUM | N/A |
The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly corrupt other filesystems by mounting a crafted UNIX File System (UFS) DMG image that contains a corrupted directory entry (struct direct), related to the ufs_dirbad function. NOTE: a third party states that the FreeBSD issue does not cross privilege boundaries. | |||||
CVE-2010-0969 | 1 Nlnetlabs | 1 Unbound | 2011-06-01 | 5.0 MEDIUM | N/A |
Unbound before 1.4.3 does not properly align structures on 64-bit platforms, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors. |