2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-2760 | — | — | 1.0% | Jul 25, 2012 | mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local us... |
| CVE-2012-2677 | — | — | 3.9% | Jul 25, 2012 | Integer overflow in the ordered_malloc function in boost/pool/pool.hpp in Boost Pool before 3.9 makes it easier for cont... |
| CVE-2012-2676 | — | — | 1.1% | Jul 25, 2012 | Multiple integer overflows in the (1) malloc and (2) calloc functions in Hoard before 3.9 make it easier for context-dep... |
| CVE-2012-2675 | — | — | 1.3% | Jul 25, 2012 | Multiple integer overflows in the (1) CallMalloc (malloc) and (2) nedpcalloc (calloc) functions in nedmalloc (nedmalloc.... |
| CVE-2012-2674 | — | — | 0.8% | Jul 25, 2012 | Multiple integer overflows in the (1) chk_malloc, (2) leak_malloc, and (3) leak_memalign functions in libc/bionic/malloc... |
| CVE-2012-2673 | — | — | 2.8% | Jul 25, 2012 | Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_mal... |
| CVE-2012-0680 | — | — | 2.0% | Jul 25, 2012 | Apple Safari before 6.0 does not properly handle the autocomplete attribute of a password input element, which allows re... |
| CVE-2012-0679 | — | — | 1.5% | Jul 25, 2012 | Apple Safari before 6.0 allows remote attackers to read arbitrary files via a feed:// URL. |
| CVE-2012-0678 | — | — | 0.9% | Jul 25, 2012 | Cross-site scripting (XSS) vulnerability in Apple Safari before 6.0 allows remote attackers to inject arbitrary web scri... |
| CVE-2012-3954 | — | — | 4.3% | Jul 25, 2012 | Multiple memory leaks in ISC DHCP 4.1.x and 4.2.x before 4.2.4-P1 and 4.1-ESV before 4.1-ESV-R6 allow remote attackers t... |
| CVE-2012-3868 | — | — | 2.7% | Jul 25, 2012 | Race condition in the ns_client structure management in ISC BIND 9.9.x before 9.9.1-P2 allows remote attackers to cause ... |
| CVE-2012-3817 | — | — | 27.4% | Jul 25, 2012 | ISC BIND 9.4.x, 9.5.x, 9.6.x, and 9.7.x before 9.7.6-P2; 9.8.x before 9.8.3-P2; 9.9.x before 9.9.1-P2; and 9.6-ESV befor... |
| CVE-2012-3571 | — | — | 13.0% | Jul 25, 2012 | ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinit... |
| CVE-2012-3570 | — | — | 2.6% | Jul 25, 2012 | Buffer overflow in ISC DHCP 4.2.x before 4.2.4-P1, when DHCPv6 mode is enabled, allows remote attackers to cause a denia... |
| CVE-2012-2646 | — | — | 1.9% | Jul 25, 2012 | The Sleipnir Mobile application before 2.1.0 and Sleipnir Mobile Black Edition application before 2.1.0 for Android do n... |
| CVE-2012-2197 | — | — | 4.5% | Jul 25, 2012 | Stack-based buffer overflow in the Java Stored Procedure infrastructure in IBM DB2 9.1 before FP12, 9.5 through FP9, 9.7... |
| CVE-2012-2196 | — | — | 2.4% | Jul 25, 2012 | IBM DB2 9.1 before FP12, 9.5 through FP9, 9.7 through FP6, 9.8 through FP5, and 10.1 allows remote attackers to read arb... |
| CVE-2012-2194 | — | — | 3.1% | Jul 25, 2012 | Directory traversal vulnerability in the SQLJ.DB2_INSTALL_JAR stored procedure in IBM DB2 9.1 before FP12, 9.5 through F... |
| CVE-2012-4050 | — | — | 0.7% | Jul 24, 2012 | Multiple unspecified vulnerabilities in Google Chrome OS before 21.0.1180.50 on the Cr-48 and Samsung Series 5 and 5 550... |
| CVE-2012-4049 | — | — | 1.6% | Jul 24, 2012 | epan/dissectors/packet-nfs.c in the NFS dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before... |
| CVE-2012-4048 | — | — | 1.4% | Jul 24, 2012 | The PPP dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers t... |
| CVE-2012-3398 | — | — | 1.3% | Jul 23, 2012 | Algorithmic complexity vulnerability in Moodle 1.9.x before 1.9.19, 2.0.x before 2.0.10, 2.1.x before 2.1.7, and 2.2.x b... |
| CVE-2012-3397 | — | — | 1.1% | Jul 23, 2012 | lib/modinfolib.php in Moodle 2.0.x before 2.0.10, 2.1.x before 2.1.7, 2.2.x before 2.2.4, and 2.3.x before 2.3.1 does no... |
| CVE-2012-3396 | — | — | 1.4% | Jul 23, 2012 | Cross-site scripting (XSS) vulnerability in cohort/edit_form.php in Moodle 2.0.x before 2.0.10, 2.1.x before 2.1.7, 2.2.... |
| CVE-2012-3395 | — | — | 1.6% | Jul 23, 2012 | SQL injection vulnerability in mod/feedback/complete.php in Moodle 2.0.x before 2.0.10, 2.1.x before 2.1.7, and 2.2.x be... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now