NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
48074 | CVE-2009-0755 | The FormWidgetChoice::loadDefaults function in Poppler before 0.10.4 allows remote attackers to cause a denial of service (crash) via a PDF file with an invalid Form Opt entry. | 2 | 5 | Medium | 2017-01-07 | 2009-12-19 | View | |
48586 | CVE-2009-1299 | The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file. | 2 | 6.9 | Medium | 2017-01-07 | 2010-06-29 | View | |
48842 | CVE-2009-1573 | xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments. | 2 | 4.6 | Medium | 2017-01-07 | 2010-05-27 | View | |
49866 | CVE-2009-2624 | The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive. NOTE: this issue is caused by a CVE-2006-4334 regression. | 2 | 6.8 | Medium | 2017-01-07 | 2010-11-18 | View | |
50122 | CVE-2009-2901 | The autodeployment process in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20, when autoDeploy is enabled, deploys appBase files that remain from a failed undeploy, which might allow remote attackers to bypass intended authentication requirements via HTTP requests. | 2 | 4.3 | Medium | 2017-01-07 | 2016-08-22 | View |
Page 15780 of 17672, showing 5 records out of 88360 total, starting on record 78896, ending on 78900