2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3624 | — | — | 0.4% | Nov 2, 2009 | The get_instantiation_keyring function in security/keys/keyctl.c in the KEYS subsystem in the Linux kernel before 2.6.32... |
| CVE-2009-3605 | — | — | 4.4% | Nov 2, 2009 | Multiple integer overflows in Poppler 0.10.5 and earlier allow remote attackers to cause a denial of service (applicatio... |
| CVE-2009-2267 | — | — | 1.8% | Nov 2, 2009 | VMware Workstation 6.5.x before 6.5.3 build 185404, VMware Player 2.5.x before 2.5.3 build 185404, VMware ACE 2.5.x befo... |
| CVE-2009-3832 | — | — | 2.0% | Oct 30, 2009 | Opera before 10.01 on Windows does not prevent use of Web fonts in rendering the product's own user interface, which all... |
| CVE-2009-3831 | — | — | 5.7% | Oct 30, 2009 | Opera before 10.01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and... |
| CVE-2009-3830 | — | — | 32.6% | Oct 30, 2009 | The download functionality in Team Services in Microsoft Office SharePoint Server 2007 12.0.0.4518 and 12.0.0.6219 allow... |
| CVE-2009-3829 | — | — | 6.1% | Oct 30, 2009 | Integer overflow in wiretap/erf.c in Wireshark before 1.2.2 allows remote attackers to execute arbitrary code or cause a... |
| CVE-2009-3722 | — | — | 2.3% | Oct 30, 2009 | The handle_dr function in arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 2.6.31.1 does not properly ... |
| CVE-2009-3623 | — | — | 3.5% | Oct 30, 2009 | The lookup_cb_cred function in fs/nfsd/nfs4callback.c in the nfsd4 subsystem in the Linux kernel before 2.6.31.2 attempt... |
| CVE-2009-3551 | — | — | 1.5% | Oct 30, 2009 | Off-by-one error in the dissect_negprot_response function in packet-smb.c in the SMB dissector in Wireshark 1.2.0 throug... |
| CVE-2009-3550 | — | — | 2.5% | Oct 30, 2009 | The DCERPC/NT dissector in Wireshark 0.10.10 through 1.0.9 and 1.2.0 through 1.2.2 allows remote attackers to cause a de... |
| CVE-2009-3549 | — | — | 2.6% | Oct 30, 2009 | packet-paltalk.c in the Paltalk dissector in Wireshark 1.2.0 through 1.2.2, on SPARC and certain other platforms, allows... |
| CVE-2009-3828 | — | — | 2.9% | Oct 30, 2009 | The web interface for Everfocus EDR1600 DVR allows remote attackers to bypass authentication and access live cams via ce... |
| CVE-2009-3640 | — | — | 0.4% | Oct 29, 2009 | The update_cr8_intercept function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.32-rc1 does ... |
| CVE-2009-3638 | — | — | 0.5% | Oct 29, 2009 | Integer overflow in the kvm_dev_ioctl_get_supported_cpuid function in arch/x86/kvm/x86.c in the KVM subsystem in the Lin... |
| CVE-2009-3627 | — | — | 1.7% | Oct 29, 2009 | The decode_entities function in util.c in HTML-Parser before 3.63 allows context-dependent attackers to cause a denial o... |
| CVE-2009-3626 | — | — | 2.2% | Oct 29, 2009 | Perl 5.10.1 allows context-dependent attackers to cause a denial of service (application crash) via a UTF-8 character wi... |
| CVE-2009-3383 | — | — | 4.3% | Oct 29, 2009 | Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.4 allow remote attacke... |
| CVE-2009-3382 | — | — | 10.8% | Oct 29, 2009 | layout/base/nsCSSFrameConstructor.cpp in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 does not properly han... |
| CVE-2009-3381 | — | — | 4.9% | Oct 29, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.4 allow remote attackers ... |
| CVE-2009-3380 | — | — | 5.5% | Oct 29, 2009 | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4... |
| CVE-2009-3379 | — | — | 5.4% | Oct 29, 2009 | Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers... |
| CVE-2009-3378 | — | — | 3.8% | Oct 29, 2009 | The oggplay_data_handle_theora_frame function in media/liboggplay/src/liboggplay/oggplay_data.c in liboggplay, as used i... |
| CVE-2009-3377 | — | — | 4.6% | Oct 29, 2009 | Multiple unspecified vulnerabilities in liboggz before cf5feeaab69b05e24, as used in Mozilla Firefox 3.5.x before 3.5.4,... |
| CVE-2009-3376 | — | — | 3.2% | Oct 29, 2009 | Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, does not properly handle a right-to-left... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now