2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2010-1445——Heap-based buffer overflow in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of servic...
CVE-2010-1444——The ZIP archive decompressor in VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of serv...
CVE-2010-1443——The parse_track_node function in modules/demux/playlist/xspf.c in the XSPF playlist parser in VideoLAN VLC media player ...
CVE-2010-1442——VideoLAN VLC media player before 1.0.6 allows remote attackers to cause a denial of service (invalid memory access and a...
CVE-2010-1441——Multiple heap-based buffer overflows in VideoLAN VLC media player before 1.0.6 allow remote attackers to cause a denial ...
CVE-2010-5313——Race condition in arch/x86/kvm/x86.c in the Linux kernel before 2.6.38 allows L2 guest OS users to cause a denial of ser...
CVE-2010-5077——server/sv_main.c in Quake3 Arena, as used in ioquake3 before r1762, OpenArena, Tremulous, and other products, allows rem...
CVE-2010-4820——Untrusted search path vulnerability in Ghostscript 8.62 allows local users to execute arbitrary PostScript code via a Tr...
CVE-2010-5110——DCTStream.cc in Poppler before 0.13.3 allows remote attackers to cause a denial of service (crash) via a crafted PDF fil...
CVE-2010-5303——Cross-site scripting (XSS) vulnerability in the displayError function in timthumb.php in TimThumb before 1.15 (r85), as ...
CVE-2010-5302——Cross-site scripting (XSS) vulnerability in timthumb.php in TimThumb before 1.15 as of 20100908 (r88), as used in multip...
CVE-2010-5111——Multiple buffer overflows in readline.c in Echoping 6.0.2 allow remote attackers to cause a denial of service (crash) an...
CVE-2010-5301——Stack-based buffer overflow in Kolibri 2.0 allows remote attackers to execute arbitrary code via a long URI in a HEAD re...
CVE-2010-5300——Stack-based buffer overflow in Jzip 1.3 through 2.0.0.132900 allows remote attackers to cause a denial of service (crash...
CVE-2010-5299——Stack-based buffer overflow in MicroP 0.1.1.1600 allows remote attackers to execute arbitrary code via a crafted .mppl f...
CVE-2010-4832——Android OS before 2.2 does not display the correct SSL certificate in certain cases, which might allow remote attackers ...
CVE-2010-5109——Off-by-one error in the DecompressRTF function in ytnef.c in Yerase's TNEF Stream Reader allows remote attackers to caus...
CVE-2010-5105——The undo save quit routine in the kernel in Blender 2.5, 2.63a, and earlier allows local users to overwrite arbitrary fi...
CVE-2010-2236——The monitoring probe display in spacewalk-java before 2.1.148-1 and Red Hat Network (RHN) Satellite 4.0.0 through 4.2.0 ...
CVE-2010-5298——Race condition in the ssl3_read_bytes function in s3_pkt.c in OpenSSL through 1.0.1g, when SSL_MODE_RELEASE_BUFFERS is e...
CVE-2010-4777——The Perl_reg_numbered_buff_fetch function in Perl 5.10.0, 5.12.0, 5.14.0, and other versions, when running with debuggin...
CVE-2010-3090——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-3089. Reason: This issue was MERGED into CVE-201...
CVE-2010-5297——WordPress before 3.0.1, when a Multisite installation is used, permanently retains the "site administrators can add user...
CVE-2010-5296——wp-includes/capabilities.php in WordPress before 3.0.2, when a Multisite configuration is used, does not require the Sup...
CVE-2010-5295——Cross-site scripting (XSS) vulnerability in wp-admin/plugins.php in WordPress before 3.0.2 might allow remote attackers ...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now