NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 14376 | CVE-2010-2945 | The default configuration of SLiM before 1.3.2 places ./ (dot slash) at the beginning of the default_path option, which might allow local users to gain privileges via a Trojan horse program in the current working directory, related to slim.conf and cfg.cpp. | 2 | 6.9 | Medium | 2017-01-18 | 2010-08-31 | View | |
| 14377 | CVE-2010-2946 | fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might allow local users by bypass intended xattr namespace restrictions via an "os2." substring at the beginning of a name. | 2 | 2.1 | Low | 2017-01-18 | 2012-03-19 | View | |
| 14378 | CVE-2010-2947 | Heap-based buffer overflow in the HX_split function in string.c in libHX before 3.6 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a string that is inconsistent with the expected number of fields. | 2 | 10 | High | 2017-01-18 | 2011-01-14 | View | |
| 14379 | CVE-2010-2948 | Stack-based buffer overflow in the bgp_route_refresh_receive function in bgp_packet.c in bgpd in Quagga before 0.99.17 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a malformed Outbound Route Filtering (ORF) record in a BGP ROUTE-REFRESH (RR) message. | 2 | 6.5 | Medium | 2017-01-18 | 2012-01-18 | View | |
| 14380 | CVE-2010-2949 | bgpd in Quagga before 0.99.17 does not properly parse AS paths, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an unknown AS type in an AS path attribute in a BGP UPDATE message. | 2 | 5 | Medium | 2017-01-18 | 2012-01-18 | View |
Page 2876 of 17672, showing 5 records out of 88360 total, starting on record 14376, ending on 14380