2008 CVE Vulnerabilities
7,179 CVEs published in 2008.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2008-5264 | — | — | 1.5% | Nov 28, 2008 | Cross-site scripting (XSS) vulnerability in searcher.exe in Tornado Knowledge Retrieval System 4.2 and earlier allows re... |
| CVE-2008-5257 | — | — | 1.2% | Nov 27, 2008 | webseald in WebSEAL 6.0.0.17 in IBM Tivoli Access Manager for e-business allows remote attackers to cause a denial of se... |
| CVE-2008-5256 | — | — | 0.4% | Nov 27, 2008 | The AcquireDaemonLock function in ipcdUnix.cpp in Sun Innotek VirtualBox before 2.0.6 allows local users to overwrite ar... |
| CVE-2008-4636 | — | — | 0.5% | Nov 27, 2008 | yast2-backup 2.14.2 through 2.16.6 on SUSE Linux and Novell Linux allows local users to gain privileges via shell metach... |
| CVE-2008-4315 | — | — | 2.7% | Nov 27, 2008 | tog-pegasus in OpenGroup Pegasus 2.7.0 on Red Hat Enterprise Linux (RHEL) 5, Fedora 9, and Fedora 10 does not log failed... |
| CVE-2008-4313 | — | — | 1.4% | Nov 27, 2008 | A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which a... |
| CVE-2008-2378 | — | — | 0.3% | Nov 26, 2008 | Untrusted search path vulnerability in hfkernel in hf 0.7.3 and 0.8 allows local users to gain privileges via a Trojan h... |
| CVE-2008-5248 | — | — | 1.2% | Nov 26, 2008 | xine-lib before 1.1.15 allows remote attackers to cause a denial of service (crash) via "MP3 files with metadata consist... |
| CVE-2008-5247 | — | — | 1.5% | Nov 26, 2008 | The real_parse_audio_specific_data function in demux_real.c in xine-lib 1.1.12, and other 1.1.15 and earlier versions, u... |
| CVE-2008-5246 | — | — | 5.7% | Nov 26, 2008 | Multiple heap-based buffer overflows in xine-lib before 1.1.15 allow remote attackers to execute arbitrary code via vect... |
| CVE-2008-5245 | — | — | 1.7% | Nov 26, 2008 | xine-lib before 1.1.15 performs V4L video frame preallocation before ascertaining the required length, which has unknown... |
| CVE-2008-5244 | — | — | 2.0% | Nov 26, 2008 | Unspecified vulnerability in xine-lib before 1.1.15 has unknown impact and attack vectors related to libfaad. NOTE: due... |
| CVE-2008-5243 | — | — | 1.8% | Nov 26, 2008 | The real_parse_headers function in demux_real.c in xine-lib 1.1.12, and other 1.1.15 and earlier versions, relies on an ... |
| CVE-2008-5242 | — | — | 3.1% | Nov 26, 2008 | demux_qt.c in xine-lib 1.1.12, and other 1.1.15 and earlier versions, does not validate the count field before calling c... |
| CVE-2008-5241 | — | — | 1.8% | Nov 26, 2008 | Integer underflow in demux_qt.c in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allows remote attackers to ca... |
| CVE-2008-5240 | — | — | 4.2% | Nov 26, 2008 | xine-lib 1.1.12, and other 1.1.15 and earlier versions, relies on an untrusted input value to determine the memory alloc... |
| CVE-2008-5239 | — | — | 3.7% | Nov 26, 2008 | xine-lib 1.1.12, and other 1.1.15 and earlier versions, does not properly handle (a) negative and (b) zero values during... |
| CVE-2008-5238 | — | — | 3.6% | Nov 26, 2008 | Integer overflow in the real_parse_mdpr function in demux_real.c in xine-lib 1.1.12, and other versions before 1.1.15, a... |
| CVE-2008-5237 | — | — | 5.5% | Nov 26, 2008 | Multiple integer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers to cause a ... |
| CVE-2008-5236 | — | — | 5.7% | Nov 26, 2008 | Multiple heap-based buffer overflows in xine-lib 1.1.12, and other 1.1.15 and earlier versions, allow remote attackers t... |
| CVE-2008-5235 | — | — | 4.6% | Nov 26, 2008 | Heap-based buffer overflow in the demux_real_send_chunk function in src/demuxers/demux_real.c in xine-lib before 1.1.15 ... |
| CVE-2008-5234 | — | — | 5.7% | Nov 26, 2008 | Multiple heap-based buffer overflows in xine-lib 1.1.12, and other versions before 1.1.15, allow remote attackers to exe... |
| CVE-2008-5233 | — | — | 3.3% | Nov 26, 2008 | xine-lib 1.1.12, and other versions before 1.1.15, does not check for failure of malloc in circumstances including (1) t... |
| CVE-2008-5232 | — | — | 36.1% | Nov 26, 2008 | Buffer overflow in the CallHTMLHelp method in the Microsoft Windows Media Services ActiveX control in nskey.dll 4.1.00.3... |
| CVE-2008-5231 | — | — | 4.0% | Nov 26, 2008 | Stack-based buffer overflow in the ExecuteRequest method in the Novell iPrint ActiveX control in ienipp.ocx in Novell iP... |
Check if your code is affected by 2008 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now