2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-2083 | — | — | 1.8% | Jun 4, 2012 | Multiple cross-site scripting (XSS) vulnerabilities in Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.... |
| CVE-2011-2082 | — | — | 1.2% | Jun 4, 2012 | The vulnerable-passwords script in Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 does not update th... |
| CVE-2011-3048 | — | — | 6.6% | May 29, 2012 | The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5... |
| CVE-2011-2722 | — | — | 0.4% | May 25, 2012 | The send_data_to_stdout function in prnt/hpijs/hpcupsfax.cpp in HP Linux Imaging and Printing (HPLIP) 3.x before 3.11.10... |
| CVE-2011-4081 | MEDIUM | 5.5 | 0.5% | May 24, 2012 | crypto/ghash-generic.c in the Linux kernel before 3.1 allows local users to cause a denial of service (NULL pointer dere... |
| CVE-2011-4080 | — | — | 0.3% | May 24, 2012 | The sysrq_sysctl_handler function in kernel/sysctl.c in the Linux kernel before 2.6.39 does not require the CAP_SYS_ADMI... |
| CVE-2011-3363 | MEDIUM | 6.5 | 0.8% | May 24, 2012 | The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals... |
| CVE-2011-3359 | HIGH | 7.5 | 3.3% | May 24, 2012 | The dma_rx function in drivers/net/wireless/b43/dma.c in the Linux kernel before 2.6.39 does not properly allocate recei... |
| CVE-2011-3353 | MEDIUM | 5.5 | 0.4% | May 24, 2012 | Buffer overflow in the fuse_notify_inval_entry function in fs/fuse/dev.c in the Linux kernel before 3.1 allows local use... |
| CVE-2011-3191 | HIGH | 8.8 | 1.1% | May 24, 2012 | Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote ... |
| CVE-2011-3188 | CRITICAL | 9.1 | 5.7% | May 24, 2012 | The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequen... |
| CVE-2011-2918 | MEDIUM | 5.5 | 0.9% | May 24, 2012 | The Performance Events subsystem in the Linux kernel before 3.1 does not properly handle event overflows associated with... |
| CVE-2011-2906 | MEDIUM | 5.5 | 0.5% | May 24, 2012 | Integer signedness error in the pmcraid_ioctl_passthrough function in drivers/scsi/pmcraid.c in the Linux kernel before ... |
| CVE-2011-2898 | MEDIUM | 5.5 | 0.4% | May 24, 2012 | net/packet/af_packet.c in the Linux kernel before 2.6.39.3 does not properly restrict user-space access to certain packe... |
| CVE-2011-2707 | MEDIUM | 6 | 0.4% | May 24, 2012 | The ptrace_setxregs function in arch/xtensa/kernel/ptrace.c in the Linux kernel before 3.1 does not validate user-space ... |
| CVE-2011-2699 | HIGH | 7.5 | 5.6% | May 24, 2012 | The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for e... |
| CVE-2011-2521 | — | — | 0.4% | May 24, 2012 | The x86_assign_hw_event function in arch/x86/kernel/cpu/perf_event.c in the Performance Events subsystem in the Linux ke... |
| CVE-2011-2518 | — | — | 0.4% | May 24, 2012 | The tomoyo_mount_acl function in security/tomoyo/mount.c in the Linux kernel before 2.6.39.2 calls the kern_path functio... |
| CVE-2011-2517 | — | — | 0.4% | May 24, 2012 | Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privil... |
| CVE-2011-3115 | — | — | 1.8% | May 24, 2012 | Google V8, as used in Google Chrome before 19.0.1084.52, allows remote attackers to cause a denial of service or possibl... |
| CVE-2011-3114 | — | — | 1.5% | May 24, 2012 | Multiple buffer overflows in the PDF functionality in Google Chrome before 19.0.1084.52 allow remote attackers to cause ... |
| CVE-2011-3113 | — | — | 1.4% | May 24, 2012 | The PDF functionality in Google Chrome before 19.0.1084.52 does not properly perform a cast of an unspecified variable d... |
| CVE-2011-3112 | — | — | 1.4% | May 24, 2012 | Use-after-free vulnerability in the PDF functionality in Google Chrome before 19.0.1084.52 allows remote attackers to ca... |
| CVE-2011-3111 | — | — | 1.5% | May 24, 2012 | Google V8, as used in Google Chrome before 19.0.1084.52, allows remote attackers to cause a denial of service (invalid r... |
| CVE-2011-3110 | — | — | 1.6% | May 24, 2012 | The PDF functionality in Google Chrome before 19.0.1084.52 allows remote attackers to cause a denial of service or possi... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now