2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-2083Multiple cross-site scripting (XSS) vulnerabilities in Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0....
CVE-2011-2082The vulnerable-passwords script in Best Practical Solutions RT 3.x before 3.8.12 and 4.x before 4.0.6 does not update th...
CVE-2011-3048The png_set_text_2 function in pngset.c in libpng 1.0.x before 1.0.59, 1.2.x before 1.2.49, 1.4.x before 1.4.11, and 1.5...
CVE-2011-2722The send_data_to_stdout function in prnt/hpijs/hpcupsfax.cpp in HP Linux Imaging and Printing (HPLIP) 3.x before 3.11.10...
CVE-2011-4081MEDIUM5.5crypto/ghash-generic.c in the Linux kernel before 3.1 allows local users to cause a denial of service (NULL pointer dere...
CVE-2011-4080The sysrq_sysctl_handler function in kernel/sysctl.c in the Linux kernel before 2.6.39 does not require the CAP_SYS_ADMI...
CVE-2011-3363MEDIUM6.5The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals...
CVE-2011-3359HIGH7.5The dma_rx function in drivers/net/wireless/b43/dma.c in the Linux kernel before 2.6.39 does not properly allocate recei...
CVE-2011-3353MEDIUM5.5Buffer overflow in the fuse_notify_inval_entry function in fs/fuse/dev.c in the Linux kernel before 3.1 allows local use...
CVE-2011-3191HIGH8.8Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote ...
CVE-2011-3188CRITICAL9.1The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequen...
CVE-2011-2918MEDIUM5.5The Performance Events subsystem in the Linux kernel before 3.1 does not properly handle event overflows associated with...
CVE-2011-2906MEDIUM5.5Integer signedness error in the pmcraid_ioctl_passthrough function in drivers/scsi/pmcraid.c in the Linux kernel before ...
CVE-2011-2898MEDIUM5.5net/packet/af_packet.c in the Linux kernel before 2.6.39.3 does not properly restrict user-space access to certain packe...
CVE-2011-2707MEDIUM6The ptrace_setxregs function in arch/xtensa/kernel/ptrace.c in the Linux kernel before 3.1 does not validate user-space ...
CVE-2011-2699HIGH7.5The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for e...
CVE-2011-2521The x86_assign_hw_event function in arch/x86/kernel/cpu/perf_event.c in the Performance Events subsystem in the Linux ke...
CVE-2011-2518The tomoyo_mount_acl function in security/tomoyo/mount.c in the Linux kernel before 2.6.39.2 calls the kern_path functio...
CVE-2011-2517Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privil...
CVE-2011-3115Google V8, as used in Google Chrome before 19.0.1084.52, allows remote attackers to cause a denial of service or possibl...
CVE-2011-3114Multiple buffer overflows in the PDF functionality in Google Chrome before 19.0.1084.52 allow remote attackers to cause ...
CVE-2011-3113The PDF functionality in Google Chrome before 19.0.1084.52 does not properly perform a cast of an unspecified variable d...
CVE-2011-3112Use-after-free vulnerability in the PDF functionality in Google Chrome before 19.0.1084.52 allows remote attackers to ca...
CVE-2011-3111Google V8, as used in Google Chrome before 19.0.1084.52, allows remote attackers to cause a denial of service (invalid r...
CVE-2011-3110The PDF functionality in Google Chrome before 19.0.1084.52 allows remote attackers to cause a denial of service or possi...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now