2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-1021 | — | — | 0.9% | Jun 21, 2012 | drivers/acpi/debugfs.c in the Linux kernel before 3.0 allows local users to modify arbitrary kernel memory locations by ... |
| CVE-2011-0716 | — | — | 0.4% | Jun 21, 2012 | The br_multicast_add_group function in net/bridge/br_multicast.c in the Linux kernel before 2.6.38, when a certain Ether... |
| CVE-2011-0006 | — | — | 0.3% | Jun 21, 2012 | The ima_lsm_rule_init function in security/integrity/ima/ima_policy.c in the Linux kernel before 2.6.37, when the Linux ... |
| CVE-2011-4599 | — | — | 8.0% | Jun 21, 2012 | Stack-based buffer overflow in the _canonicalize function in common/uloc.c in International Components for Unicode (ICU)... |
| CVE-2011-2709 | — | — | 0.4% | Jun 21, 2012 | libgssapi and libgssglue before 0.4 do not properly check privileges, which allows local users to load untrusted configu... |
| CVE-2011-2527 | — | — | 0.4% | Jun 21, 2012 | The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when th... |
| CVE-2011-2512 | — | — | 1.9% | Jun 21, 2012 | The virtio_queue_notify in qemu-kvm 0.14.0 and earlier does not properly validate the virtqueue number, which allows gue... |
| CVE-2011-2212 | — | — | 0.7% | Jun 21, 2012 | Buffer overflow in the virtio subsystem in qemu-kvm 0.14.0 and earlier allows privileged guest users to cause a denial o... |
| CVE-2011-1751 | — | — | 0.8% | Jun 21, 2012 | The pciej_write function in hw/acpi_piix4.c in the PIIX4 Power Management emulation in qemu-kvm does not check if a devi... |
| CVE-2011-1750 | — | — | 0.7% | Jun 21, 2012 | Multiple heap-based buffer overflows in the virtio-blk driver (hw/virtio-blk.c) in qemu-kvm 0.14.0 allow local guest use... |
| CVE-2011-0011 | — | — | 1.3% | Jun 21, 2012 | qemu-kvm before 0.11.0 disables VNC authentication when the password is cleared, which allows remote attackers to bypass... |
| CVE-2011-5095 | — | — | 2.1% | Jun 20, 2012 | The Diffie-Hellman key-exchange implementation in OpenSSL 0.9.8, when FIPS mode is enabled, does not properly validate a... |
| CVE-2011-1923 | — | — | 1.3% | Jun 20, 2012 | The Diffie-Hellman key-exchange implementation in dhm.c in PolarSSL before 0.14.2 does not properly validate a public pa... |
| CVE-2011-3671 | — | — | 1.8% | Jun 18, 2012 | Use-after-free vulnerability in the nsHTMLSelectElement function in nsHTMLSelectElement.cpp in Mozilla Firefox 4.x throu... |
| CVE-2011-5094 | — | — | 2.7% | Jun 16, 2012 | Mozilla Network Security Services (NSS) 3.x, with certain settings of the SSL_ENABLE_RENEGOTIATION option, does not prop... |
| CVE-2011-1473 | — | — | 67.7% | Jun 16, 2012 | OpenSSL before 0.9.8l, and 0.9.8m through 1.x, does not properly restrict client-initiated renegotiation within the SSL ... |
| CVE-2011-4409 | — | — | 1.8% | Jun 16, 2012 | The Ubuntu One Client for Ubuntu 10.04 LTS, 11.04, 11.10, and 12.04 LTS does not properly validate SSL certificates, whi... |
| CVE-2011-4408 | — | — | 1.2% | Jun 16, 2012 | The Single Sign On Client (ubuntu-sso-client) for Ubuntu 11.04 and 11.10 does not properly validate SSL certificates whe... |
| CVE-2011-4328 | — | — | 2.1% | Jun 16, 2012 | plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable ... |
| CVE-2011-3194 | — | — | 7.3% | Jun 16, 2012 | Buffer overflow in the TIFF reader in gui/image/qtiffhandler.cpp in Qt 4.7.4 allows remote attackers to cause a denial o... |
| CVE-2011-3193 | — | — | 7.5% | Jun 16, 2012 | Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt be... |
| CVE-2011-2545 | — | — | 0.9% | Jun 13, 2012 | Cross-site scripting (XSS) vulnerability in the SIP implementation on the Cisco SPA8000 and SPA8800 before 6.1.11, SPA21... |
| CVE-2011-2496 | — | — | 0.5% | Jun 13, 2012 | Integer overflow in the vma_to_resize function in mm/mremap.c in the Linux kernel before 2.6.39 allows local users to ca... |
| CVE-2011-2495 | — | — | 0.5% | Jun 13, 2012 | fs/proc/base.c in the Linux kernel before 2.6.39.4 does not properly restrict access to /proc/#####/io files, which allo... |
| CVE-2011-2494 | — | — | 0.4% | Jun 13, 2012 | kernel/taskstats.c in the Linux kernel before 3.1 allows local users to obtain sensitive I/O statistics by sending tasks... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now