2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-3625Stack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, all...
CVE-2011-5280Multiple stack-based buffer overflows in BOINC 6.13.x allow remote attackers to cause a denial of service (crash) via a ...
CVE-2011-2198The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated use...
CVE-2011-5249Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (...
CVE-2011-4407ppa.py in Software Properties before 0.81.13.3 does not validate the server certificate when downloading PPA GPG key fin...
CVE-2011-2514The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W...
CVE-2011-2513The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W...
CVE-2011-4970Multiple SQL injection vulnerabilities in LCG Disk Pool Manager (DPM) before 1.8.6, as used in EGI UDM, allow remote att...
CVE-2011-3603The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which...
CVE-2011-3602Directory traversal vulnerability in device-linux.c in the router advertisement daemon (radvd) before 1.8.2 allows local...
CVE-2011-3152DistUpgrade/DistUpgradeFetcherCore.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x bef...
CVE-2011-5279CRLF injection vulnerability in the CGI implementation in Microsoft Internet Information Services (IIS) 4.x and 5.x on W...
CVE-2011-3154DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before ...
CVE-2011-4406The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language...
CVE-2011-4195kiwi before 4.98.05, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1....
CVE-2011-4193Cross-site scripting (XSS) vulnerability in the overlay files tab in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio...
CVE-2011-4192kiwi before 4.85.1, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2...
CVE-2011-4089The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary file...
CVE-2011-3180kiwi before 4.98.08, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1....
CVE-2011-0993SUSE Lifecycle Management Server before 1.1 uses world readable postgres credentials, which allows local users to obtain...
CVE-2011-0460The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attac...
CVE-2011-3628Untrusted search path vulnerability in pam_motd (aka the MOTD module) in libpam-modules before 1.1.3-2ubuntu2.1 on Ubunt...
CVE-2011-5278SQL injection vulnerability in signature.php in Advanced Forum Signatures plugin (aka afsignatures) 2.0.4 for MyBB allow...
CVE-2011-5277Multiple SQL injection vulnerabilities in signature.php in the Advanced Forum Signatures (aka afsignatures) plugin 2.0.4...
CVE-2011-4958Cross-site scripting (XSS) vulnerability in the process function in SSViewer.php in SilverStripe before 2.3.13 and 2.4.x...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now