2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2010-3328HIGH8.8Use-after-free vulnerability in the CAttrArray::PrivateFind function in mshtml.dll in Microsoft Internet Explorer 6 thro...
CVE-2010-1883HIGH7.8Integer overflow in the Embedded OpenType (EOT) Font Engine in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2...
CVE-2010-3730HIGH8.8Google Chrome before 6.0.472.62 does not properly use information about the origin of a document to manage properties, w...
CVE-2010-1822HIGH8.8WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not proper...
CVE-2010-2943HIGH8.1The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode b...
CVE-2010-2537HIGH7.1The btrfs_ioctl_clone function in fs/btrfs/ioctl.c in the Linux kernel before 2.6.35 allows local users to overwrite an ...
CVE-2010-3081HIGH7.8The compat_alloc_user_space functions in include/asm/compat.h files in the Linux kernel before 2.6.36-rc4-git2 on 64-bit...
CVE-2010-1773HIGH8.8Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as u...
CVE-2010-1772HIGH8.8Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before...
CVE-2010-0820HIGH8.8Heap-based buffer overflow in the Local Security Authority Subsystem Service (LSASS), as used in Active Directory in Mic...
CVE-2010-3322HIGH8.8The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain ...
CVE-2010-2883HIGH7.3Stack-based buffer overflow in CoolType.dll in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows ...
CVE-2010-2960HIGH7.8The keyctl_session_to_parent function in security/keys/keyctl.c in the Linux kernel 2.6.35.4 and earlier expects that a ...
CVE-2010-2798HIGH7.8The gfs2_dirent_find_space function in fs/gfs2/dir.c in the Linux kernel before 2.6.35 uses an incorrect size value in c...
CVE-2010-2524HIGH7.8The DNS resolution functionality in the CIFS implementation in the Linux kernel before 2.6.35, when CONFIG_CIFS_DFS_UPCA...
CVE-2010-2492HIGH7.8Buffer overflow in the ecryptfs_uid_hash macro in fs/ecryptfs/messaging.c in the eCryptfs subsystem in the Linux kernel ...
CVE-2010-3190HIGH7.8Untrusted search path vulnerability in the Microsoft Foundation Class (MFC) Library in Microsoft Visual Studio .NET 2003...
CVE-2010-3035HIGH7.5Cisco IOS XR 3.4.0 through 3.9.1, when BGP is enabled, does not properly handle unrecognized transitive attributes, whic...
CVE-2010-2554HIGH7.8The Tracing Feature for Services in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Wind...
CVE-2010-1896HIGH8.4The Windows kernel-mode drivers in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vist...
CVE-2010-1889HIGH7.8Double free vulnerability in the kernel in Microsoft Windows Vista SP1 and SP2, and Windows Server 2008 Gold and SP2, al...
CVE-2010-2547HIGH8.1Use-after-free vulnerability in kbx/keybox-blob.c in GPGSM in GnuPG 2.x through 2.0.16 allows remote attackers to cause ...
CVE-2010-1871HIGH8.8JBoss Seam 2 (jboss-seam2), as used in JBoss Enterprise Application Platform 4.3.0 for Red Hat Linux, does not properly ...
CVE-2010-2753HIGH8.8Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x...
CVE-2010-1208HIGH8.8Use-after-free vulnerability in the attribute-cloning functionality in the DOM implementation in Mozilla Firefox 3.5.x b...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now