2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-3872 | — | — | 4.3% | Nov 5, 2009 | Unspecified vulnerability in the JPEG JFIF Decoder in Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 bef... |
| CVE-2009-3871 | — | — | 6.8% | Nov 5, 2009 | Heap-based buffer overflow in the setBytePixels function in the Abstract Window Toolkit (AWT) in Java Runtime Environmen... |
| CVE-2009-3869 | — | — | 65.5% | Nov 5, 2009 | Stack-based buffer overflow in the setDiffICM function in the Abstract Window Toolkit (AWT) in Java Runtime Environment ... |
| CVE-2009-3868 | — | — | 4.3% | Nov 5, 2009 | Sun Java SE in JDK and JRE 5.0 before Update 22, JDK and JRE 6 before Update 17, SDK and JRE 1.3.x before 1.3.1_27, and ... |
| CVE-2009-3867 | — | — | 73.4% | Nov 5, 2009 | Stack-based buffer overflow in the HsbParser.getSoundBank function in Sun Java SE in JDK and JRE 5.0 before Update 22, J... |
| CVE-2009-3866 | — | — | 6.2% | Nov 5, 2009 | The Java Web Start Installer in Sun Java SE in JDK and JRE 6 before Update 17 does not properly use security model permi... |
| CVE-2009-3865 | — | — | 9.4% | Nov 5, 2009 | The launch method in the Deployment Toolkit plugin in Java Runtime Environment (JRE) in Sun Java SE in JDK and JRE 6 bef... |
| CVE-2009-3864 | — | — | 22.5% | Nov 5, 2009 | The Java Update functionality in Java Runtime Environment (JRE) in Sun Java SE in JDK and JRE 5.0 before Update 22 and J... |
| CVE-2009-3863 | — | — | 5.0% | Nov 4, 2009 | Buffer overflow in the gxmim1.dll ActiveX control in Novell Groupwise Client 7.0.3.1294 allows remote attackers to cause... |
| CVE-2009-3862 | — | — | 2.3% | Nov 4, 2009 | The NDSD process in Novell eDirectory 8.7.3 before 8.7.3.10 ftf2 and eDirectory 8.8 before 8.8.5 ftf1 does not properly ... |
| CVE-2009-3861 | — | — | 3.7% | Nov 4, 2009 | Stack-based buffer overflow in SafeNet SoftRemote 10.8.5 (Build 2) and 10.3.5 (Build 6), and possibly other versions bef... |
| CVE-2009-3860 | — | — | 1.8% | Nov 4, 2009 | Multiple insecure method vulnerabilities in Idefense Labs COMRaider allow remote attackers to create or overwrite arbitr... |
| CVE-2009-3859 | — | — | 11.6% | Nov 4, 2009 | Buffer overflow in eEye Retina WiFi Scanner 1.0.8.68, as used in Retina Network Security Scanner 5.10.14, allows user-as... |
| CVE-2009-3858 | — | — | 1.5% | Nov 4, 2009 | Cross-site scripting (XSS) vulnerability in GejoSoft allows remote attackers to inject arbitrary web script or HTML via ... |
| CVE-2009-3857 | — | — | 2.0% | Nov 4, 2009 | Buffer overflow in Softonic International SciTE 1.72 allows user-assisted remote attackers to cause a denial of service ... |
| CVE-2009-3856 | — | — | 3.0% | Nov 4, 2009 | Cross-site scripting (XSS) vulnerability in the default URI in news/ in Twilight CMS before 4.1 allows remote attackers ... |
| CVE-2009-3855 | — | — | 1.7% | Nov 4, 2009 | Multiple unspecified vulnerabilities in the (1) UNIX and (2) Linux backup-archive clients, and the (3) OS/400 API client... |
| CVE-2009-3854 | — | — | 5.8% | Nov 4, 2009 | Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7... |
| CVE-2009-3853 | — | — | 36.7% | Nov 4, 2009 | Stack-based buffer overflow in the client acceptor daemon (CAD) scheduler in the client in IBM Tivoli Storage Manager (T... |
| CVE-2009-3547 | HIGH | 7 | 4.9% | Nov 4, 2009 | Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of servi... |
| CVE-2009-3466 | — | — | 4.2% | Nov 4, 2009 | Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via a crafted web page that t... |
| CVE-2009-3465 | — | — | 6.1% | Nov 4, 2009 | Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content... |
| CVE-2009-3464 | — | — | 6.1% | Nov 4, 2009 | Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content... |
| CVE-2009-3463 | — | — | 6.1% | Nov 4, 2009 | Array index error in Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via craf... |
| CVE-2009-0306 | — | — | 3.9% | Nov 4, 2009 | Buffer overflow in the IBM Lotus Notes Intellisync ActiveX control in lnresobject.dll in BlackBerry Desktop Manager in R... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now