CVE List

Id CVE No. Status Description Phase Votes Comments Actions
46061  CVE-2010-3477  Candidate  The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel memory via vectors involving a dump operation. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2942.  Assigned (20100921)  None (candidate not yet proposed)    View
46317  CVE-2010-3733  Candidate  The Engine Utilities component in IBM DB2 UDB 9.5 before FP6a uses world-writable permissions for the sqllib/cfg/db2sprf file, which might allow local users to gain privileges by modifying this file.  Assigned (20101005)  None (candidate not yet proposed)    View
46573  CVE-2010-3989  Candidate  Cross-site request forgery (CSRF) vulnerability in HP Insight Control Virtual Machine Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.  Assigned (20101018)  None (candidate not yet proposed)    View
46829  CVE-2010-4245  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101116)  None (candidate not yet proposed)    View
47085  CVE-2010-4501  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-4334. Reason: This candidate is a duplicate of CVE-2010-4334. Notes: All CVE users should reference CVE-2010-4334 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20101208)  None (candidate not yet proposed)    View

Page 18886 of 20943, showing 5 records out of 104715 total, starting on record 94426, ending on 94430

Actions