2012 CVE Vulnerabilities

5,939 CVEs published in 2012.

CVE IDSeverityCVSSDescription
CVE-2012-6546The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users t...
CVE-2012-6545The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, whic...
CVE-2012-6544The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allow...
CVE-2012-6543The l2tp_ip6_getname function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.6 does not initialize a certain struct...
CVE-2012-6542The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain ...
CVE-2012-6541The ccid3_hc_tx_getsockopt function in net/dccp/ccids/ccid3.c in the Linux kernel before 3.6 does not initialize a certa...
CVE-2012-6540The do_ip_vs_get_ctl function in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 3.6 does not initialize a cer...
CVE-2012-6539The dev_ifconf function in net/socket.c in the Linux kernel before 3.6 does not initialize a certain structure, which al...
CVE-2012-6538The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library functi...
CVE-2012-6537net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to ...
CVE-2012-6536net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not verify that the actual Netlink message length is consistent...
CVE-2012-6138Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6536, CVE-2012-6537, CVE-2012-6538, CVE-2012-65...
CVE-2012-4462aviary/jobcontrol.py in Condor, as used in Red Hat Enterprise MRG 2.3, when removing a job, allows remote attackers to c...
CVE-2012-4460The serializing/deserializing functions in the qpid::framing::Buffer class in Apache Qpid 0.20 and earlier allow remote ...
CVE-2012-4459Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote att...
CVE-2012-4458The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consu...
CVE-2012-4446The default configuration for Apache Qpid 0.20 and earlier, when the federation_tag attribute is enabled, accepts AMQP c...
CVE-2012-6115The domain management tool (rhevm-manage-domains) in Red Hat Enterprise Virtualization Manager (RHEV-M) 3.1 and earlier,...
CVE-2012-5660abrt-action-install-debuginfo in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to set world-w...
CVE-2012-5659Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting ...
CVE-2012-5633The URIMappingInterceptor in Apache CXF before 2.5.8, 2.6.x before 2.6.5, and 2.7.x before 2.7.2, when using the WSS4JIn...
CVE-2012-5629The default configuration of the (1) LdapLoginModule and (2) LdapExtLoginModule modules in JBoss Enterprise Application ...
CVE-2012-6118The Administer tab in Aeolus Conductor allows remote authenticated users to bypass intended quota restrictions by updati...
CVE-2012-6117Aeolus Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions fo...
CVE-2012-6076Inkscape before 0.48.4 reads .eps files from /tmp instead of the current directory, which might cause Inkspace to proces...

Check if your code is affected by 2012 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now