2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-3589The Red Hat mkdumprd script for kexec-tools, as distributed in the kexec-tools 1.x before 1.102pre-154 and 2.x before 2....
CVE-2011-3588The SSH configuration in the Red Hat mkdumprd script for kexec-tools, as distributed in the kexec-tools 1.x before 1.102...
CVE-2011-2909The do_devinfo_ioctl function in drivers/staging/comedi/comedi_fops.c in the Linux kernel before 3.1 allows local users ...
CVE-2011-2500The host_reliable_addrinfo function in support/export/hostname.c in nfs-utils before 1.2.4 does not properly use DNS to ...
CVE-2011-1837The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to over...
CVE-2011-1836utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, whic...
CVE-2011-1835The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not prope...
CVE-2011-1834utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly maintain the mtab file during error conditi...
CVE-2011-1832utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows ...
CVE-2011-1831utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows ...
CVE-2011-4610JBoss Web, as used in Red Hat JBoss Communications Platform before 5.1.3, Enterprise Web Platform before 5.1.2, Enterpri...
CVE-2011-4930Multiple format string vulnerabilities in Condor 7.2.0 through 7.6.4, and possibly certain 7.7.x versions, as used in Re...
CVE-2011-4093Integer overflow in inc/server.hpp in libnet6 (aka net6) before 1.3.14 might allow remote attackers to hijack connection...
CVE-2011-4092obby (aka libobby) does not verify SSL server certificates, which allows remote attackers to spoof servers via an arbitr...
CVE-2011-4091The libobby server in inc/server.hpp in libnet6 (aka net6) before 1.3.14 does not perform authentication before checking...
CVE-2011-4099The capsh program in libcap before 2.22 does not change the current working directory when the --chroot option is specif...
CVE-2011-1773virt-v2v before 0.8.4 does not preserve the VNC console password when converting a guest, which allows local users to by...
CVE-2011-4613The X.Org X wrapper (xserver-wrapper.c) in Debian GNU/Linux and Ubuntu Linux does not properly verify the TTY of a user ...
CVE-2011-3377The web browser plug-in in IcedTea-Web 1.0.x before 1.0.6 and 1.1.x before 1.1.4 allows remote attackers to bypass the S...
CVE-2011-3344MEDIUM5.4A flaw was found in Spacewalk. A remote attacker can exploit a cross-site scripting (XSS) vulnerability in the Lookup Lo...
CVE-2011-2927MEDIUM5.4A flaw was found in Spacewalk and Red Hat Network Satellite. This vulnerability, known as cross-site scripting (XSS), al...
CVE-2011-2920MEDIUM5.5A flaw was found in Spacewalk and Red Hat Network Satellite. This cross-site scripting (XSS) vulnerability allows a remo...
CVE-2011-2919Cross-site scripting (XSS) vulnerability in Spacewalk 1.6, as used in Red Hat Network (RHN) Satellite, allows remote att...
CVE-2011-1594MEDIUM6.5A flaw was found in Spacewalk, as used in Red Hat Network Satellite. This open redirect vulnerability allows remote atta...
CVE-2011-2725Directory traversal vulnerability in Ark 4.7.x and earlier allows remote attackers to delete and force the display of ar...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now