2012 CVE Vulnerabilities
5,939 CVEs published in 2012.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2012-1109 | HIGH | 7.5 | 2.1% | Nov 12, 2019 | mwlib 0.13 through 0.13.4 has a denial of service vulnerability when parsing #iferror magic functions |
| CVE-2012-0051 | HIGH | 7.4 | 1.7% | Nov 7, 2019 | Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon re... |
| CVE-2012-2979 | HIGH | 7.5 | 1.7% | Nov 1, 2019 | FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of se... |
| CVE-2012-6122 | HIGH | 7.5 | 2.2% | Oct 31, 2019 | Buffer overflow in the thread scheduler in Chicken before 4.8.0.1 allows attackers to cause a denial of service (crash) ... |
| CVE-2012-2945 | HIGH | 7.5 | 2.7% | Oct 29, 2019 | Hadoop 1.0.3 contains a symlink vulnerability. |
| CVE-2012-0046 | HIGH | 7.5 | 1.4% | Oct 29, 2019 | mediawiki allows deleted text to be exposed |
| CVE-2012-5577 | HIGH | 7.5 | 1.5% | Oct 28, 2019 | Python keyring lib before 0.10 created keyring files with world-readable permissions. |
| CVE-2012-6711 | HIGH | 7 | 0.5% | Jun 18, 2019 | A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set... |
| CVE-2012-6704 | HIGH | 7.8 | 0.4% | Dec 28, 2016 | The sock_setsockopt function in net/core/sock.c in the Linux kernel before 3.5 mishandles negative values of sk_sndbuf a... |
| CVE-2012-6703 | HIGH | 7.8 | 0.3% | Jun 29, 2016 | Integer overflow in the snd_compr_allocate_buffer function in sound/core/compress_offload.c in the ALSA subsystem in the... |
| CVE-2012-6701 | HIGH | 7.8 | 0.4% | May 2, 2016 | Integer overflow in fs/aio.c in the Linux kernel before 3.4.1 allows local users to cause a denial of service or possibl... |
| CVE-2012-6689 | HIGH | 7.8 | 0.3% | May 2, 2016 | The netlink_sendmsg function in net/netlink/af_netlink.c in the Linux kernel before 3.5.5 does not validate the dst_pid ... |
| CVE-2012-6442 | HIGH | 7.5 | 32.8% | Jan 24, 2013 | When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2... |
| CVE-2012-6438 | HIGH | 7.5 | 32.7% | Jan 24, 2013 | The device does not properly validate the data being sent to the buffer. An attacker can send a malformed CIP packet to ... |
| CVE-2012-6436 | HIGH | 7.5 | 32.7% | Jan 24, 2013 | The device does not properly validate the data being sent to the buffer. An attacker can send a malformed CIP packet to ... |
| CVE-2012-6435 | HIGH | 7.5 | 41.9% | Jan 24, 2013 | When an affected product receives a valid CIP message from an unauthorized or unintended source to Port 2222/TCP, Port 2... |
| CVE-2012-4792 | HIGH | 8.8 | 78.8% | Dec 30, 2012 | Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary cod... |
| CVE-2012-2539 | HIGH | 7.8 | 53.2% | Dec 12, 2012 | Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; and Office ... |
| CVE-2012-5830 | HIGH | 8.8 | 3.8% | Nov 21, 2012 | Use-after-free vulnerability in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, T... |
| CVE-2012-4775 | HIGH | 8.8 | 22.4% | Nov 14, 2012 | Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a cr... |
| CVE-2012-1539 | HIGH | 8.1 | 25.4% | Nov 14, 2012 | Use-after-free vulnerability in Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code via a cr... |
| CVE-2012-5822 | HIGH | 7.4 | 0.6% | Nov 4, 2012 | The contribution feature in Zamboni does not verify that the server hostname matches a domain name in the subject's Comm... |
| CVE-2012-5819 | HIGH | 7.4 | 0.6% | Nov 4, 2012 | FilesAnywhere does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjec... |
| CVE-2012-5817 | HIGH | 7.4 | 0.8% | Nov 4, 2012 | Codehaus XFire 1.2.6 and earlier, as used in the Amazon EC2 API Tools Java library and other products, does not verify t... |
| CVE-2012-5379 | HIGH | 7.3 | 1.2% | Oct 11, 2012 | Untrusted search path vulnerability in the installation functionality in ActivePython 3.2.2.3, when installed in the top... |
Check if your code is affected by 2012 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now