Search CVE reports


Toggle filters

361 – 370 of 490 results


CVE-2011-2768

Medium priority
Ignored

Tor before 0.2.2.34, when configured as a client or bridge, sends a TLS certificate chain as part of an outgoing OR connection, which allows remote relays to bypass intended anonymity properties by reading this chain and then...

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2011-4024

Medium priority
Ignored

Cross-site scripting (XSS) vulnerability in ocsinventory in OCS Inventory NG 2.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

1 affected package

ocsinventory-server

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ocsinventory-server
Show less packages

CVE-2011-2201

Low priority
Ignored

The Data::FormValidator module 4.66 and earlier for Perl, when untaint_all_constraints is enabled, does not properly preserve the taint attribute of data, which might allow remote attackers to bypass the taint protection mechanism...

1 affected package

libdata-formvalidator-perl

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libdata-formvalidator-perl
Show less packages

CVE-2011-2907

Medium priority
Ignored

Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 3.0.1 and earlier allows remote attackers to bypass host-based authentication and submit arbitrary jobs via a modified PBS_O_HOST variable to the qsub program.

1 affected package

torque

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torque Not in release
Show less packages

CVE-2011-2193

Medium priority
Ignored

Multiple buffer overflows in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 2.x before 2.4.14, 2.5.x before 2.5.6, and 3.x before 3.0.2 allow (1) remote authenticated users to gain privileges via a...

1 affected package

torque

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torque
Show less packages

CVE-2011-1924

Low priority
Ignored

Buffer overflow in the policy_summarize function in or/policies.c in Tor before 0.2.1.30 allows remote attackers to cause a denial of service (directory authority crash) via a crafted policy that triggers creation of a long port list.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2011-1828

Medium priority
Fixed

usb-creator-helper in usb-creator before 0.2.28.3 does not enforce intended PolicyKit restrictions, which allows local users to perform arbitrary unmount operations via the UnmountFile method in a dbus-send command.

1 affected package

usb-creator

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
usb-creator
Show less packages

CVE-2011-1842

High priority
Fixed

dbus_backend/lsd.py in the D-Bus backend in language-selector before 0.6.7 does not validate the arguments to the (1) SetSystemDefaultLangEnv and (2) SetSystemDefaultLanguageEnv functions, which allows local users to...

1 affected package

language-selector

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
language-selector
Show less packages

CVE-2011-0729

High priority
Fixed

dbus_backend/ls-dbus-backend in the D-Bus backend in language-selector before 0.6.7 does not restrict access on the basis of a PolicyKit check result, which allows local users to modify the /etc/default/locale and /etc/environment...

1 affected package

language-selector

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
language-selector
Show less packages

CVE-2011-0493

Medium priority
Ignored

Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha might allow remote attackers to cause a denial of service (assertion failure and daemon exit) via vectors related to malformed router caches and improper handling of integer values.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages