2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2009-2857MEDIUM5.5The kernel in Sun Solaris 8, 9, and 10, and OpenSolaris before snv_103, does not properly handle interaction between the...
CVE-2009-2055MEDIUM5.9Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session reset) via a BGP UPDATE m...
CVE-2009-2416MEDIUM6.5Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow ...
CVE-2009-2408MEDIUM5.9Mozilla Network Security Services (NSS) before 3.12.3, Firefox before 3.0.13, Thunderbird before 2.0.0.23, and SeaMonkey...
CVE-2009-2495MEDIUM6.5The Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold and SP1...
CVE-2009-1388MEDIUM5.5The ptrace_start function in kernel/ptrace.c in the Linux kernel 2.6.18 does not properly handle simultaneous execution ...
CVE-2009-2216MEDIUM6.1Cross-site scripting (XSS) vulnerability in CMD_REDIRECT in DirectAdmin 1.33.6 and earlier allows remote attackers to in...
CVE-2009-2213MEDIUM6.5The default configuration of the Security global settings on the Citrix NetScaler Access Gateway appliance with Enterpri...
CVE-2009-1961MEDIUM4.7The inode double locking code in fs/ocfs2/file.c in the Linux kernel 2.6.30 before 2.6.30-rc3, 2.6.27 before 2.6.27.24, ...
CVE-2009-0783MEDIUM4.2Apache Tomcat 4.1.0 through 4.1.39, 5.5.0 through 5.5.27, and 6.0.0 through 6.0.18 permits web applications to replace a...
CVE-2009-1466MEDIUM5.5Application Access Server (A-A-S) 2.0.48 stores (1) passwords and (2) the port keyword in cleartext in aas.ini, which al...
CVE-2009-1605MEDIUM5.4Heap-based buffer overflow in the loadexponentialfunc function in mupdf/pdf_function.c in MuPDF in the mupdf-20090223-wi...
CVE-2009-1596MEDIUM6.5Ignite Realtime Openfire before 3.6.5 does not properly implement the register.password (aka canChangePassword) console ...
CVE-2009-1243MEDIUM5.5net/ipv4/udp.c in the Linux kernel before 2.6.29.1 performs an unlocking step in certain incorrect circumstances, which ...
CVE-2009-1073MEDIUM5.5nss-ldapd before 0.6.8 uses world-readable permissions for the /etc/nss-ldapd.conf file, which allows local users to obt...
CVE-2009-0935MEDIUM5.5The inotify_read function in the Linux kernel 2.6.27 to 2.6.27.13, 2.6.28 to 2.6.28.2, and 2.6.29-rc3 allows local users...
CVE-2009-0141MEDIUM5.5XTerm in Apple Mac OS X 10.4.11 and 10.5.6, when used with luit, creates tty devices with insecure world-writable permis...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now