CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45805  CVE-2010-3221  Candidate  Microsoft Word 2002 SP3 and 2003 SP3, Office 2004 for Mac, and Word Viewer do not properly handle a malformed record during parsing of a Word document, which allows remote attackers to execute arbitrary code via a crafted document that triggers memory corruption, aka "Word Parsing Vulnerability."  Assigned (20100903)  None (candidate not yet proposed)    View
46061  CVE-2010-3477  Candidate  The tcf_act_police_dump function in net/sched/act_police.c in the actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc4 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel memory via vectors involving a dump operation. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-2942.  Assigned (20100921)  None (candidate not yet proposed)    View
46317  CVE-2010-3733  Candidate  The Engine Utilities component in IBM DB2 UDB 9.5 before FP6a uses world-writable permissions for the sqllib/cfg/db2sprf file, which might allow local users to gain privileges by modifying this file.  Assigned (20101005)  None (candidate not yet proposed)    View
46573  CVE-2010-3989  Candidate  Cross-site request forgery (CSRF) vulnerability in HP Insight Control Virtual Machine Management before 6.2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.  Assigned (20101018)  None (candidate not yet proposed)    View
46829  CVE-2010-4245  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20101116)  None (candidate not yet proposed)    View

Page 19486 of 20943, showing 5 records out of 104715 total, starting on record 97426, ending on 97430

Actions