Creditee: Dan Rosenberg
| Disc. Date | OSVDB ID | CVEID | Title |
|---|---|---|---|
| 2013-04-09 | 92267 | 2013-2596 | Google Android on Motorola USB Debugging Mode Local Privilege Escalation |
| 2012-09-20 | 85627 | 2012-3729 | Apple iOS Kernel Berkeley Packet Filter (BPF) Interpreter Local Memory Disclosure |
| 2012-09-04 | 88667 | Ubuntu AppArmor Unconfined Ux Rules PATH Subversion Application Sandbox Bypass | |
| 2012-09-04 | 88666 | Ubuntu AppArmor Unconfined Cx Rules sanitized_helper Profile Application Sandbox Bypass | |
| 2012-06-21 | 84682 | 2012-3364 | Linux Kernel nci/ntf.c Incoming Frame Packet Parsing Multiple Overflow |
| 2012-04-20 | 81548 | 2012-2217 | HTC IQRD Carrier IQ Message Parsing Multiple Remote Issues |
| 2012-04-08 | 92282 | 2013-3051 | Google Android on Motorola TrustZone Kernel Crafted SMC Operation Bootloader Unlock |
| 2011-11-27 | 83342 | 2011-4913 | Linux Kernel net/rose/rose_subr.c rose_parse_ccitt Function ROSE Socket Data Handling Remote Overflow |
| 2011-07-26 | 74152 | 2011-2707 | Linux Kernel Xtensa arch/xtensa/kernel/ptrace.c ptrace_setxregs() Function Pointer Verification Weakness Local Kernel Memory Disclosure |
| 2011-07-11 | 82468 | 2011-2906 | Linux Kernel drivers/scsi/pmcraid.c pmcraid_ioctl_passthrough Function Local DoS |
| 2011-06-15 | 83125 | 2011-2210 | Linux Kernel arch/alpha/kernel/osf_sys.c osf_getsysinfo Function Local Kernel Memory Disclosure |
| 2011-06-15 | 73116 | NetBSD / FreeBSD sys/net80211/ieee80211_ioctl.c 802.11 IEEE80211_IOC_CHANINFO IOCTL Signedness Weakness Information Disclosure | |
| 2011-06-02 | 73240 | 2011-1787 | VMware Multiple Products mount.vmhgfs Race Condition Filesystem Mounting Local Privilege Escalation |
| 2011-06-02 | 73241 | 2011-2145 | VMware Multiple Products mount.vmhgfs Symlink Arbitrary Guest OS File Manipulation |
| 2011-06-02 | 73242 | 2011-2146 | VMware Multiple Products mount.vmhgfs Host File Existence Disclosure |
| 2011-04-27 | 72209 | 2011-1444 | Google Chrome Setuid Sandbox Launcher Race Condition Privilege Escalation |
| 2011-03-20 | 78622 | 2011-4914 | Linux Kernel ROSE Protocol Multiple Field Memory Corruption |
| 2011-02-14 | 70950 | 2011-0711 | Linux Kernel fs/xfs/xfs_fsops.c xfs_fs_geometry() Local Memory Disclosure |
| 2011-01-30 | 70698 | 2011-0531 | VLC Media Player MKV Demuxer modules/demux/mkv/mkv.hpp MKV_IS_ID Macro Arbitrary Code Execution |
| 2011-01-26 | 70712 | 2010-3451 | OpenOffice.org (OOo) oowriter RTF Document Malformed Table Use-after-free Overflow |
| 2011-01-26 | 70713 | 2010-3452 | OpenOffice.org (OOo) oowriter RTF Document Crafted Tags Use-after-free Overflow |
| 2011-01-26 | 70714 | 2010-3453 | OpenOffice.org (OOo) oowriter WW8ListManager::WW8ListManager Function Crafted DOC File Out-of-bounds Write Overflow |
| 2011-01-26 | 70715 | 2010-3454 | OpenOffice.org (OOo) oowriter WW8DopTypography::ReadFromMem Function Crafted DOC File Typography Information Off-by-one Overflow |
| 2011-01-21 | 70596 | 2011-0020 | Pango pango/pangoft2-render.c pango_ft2_font_render_box_glyph() Function Overflow DoS |
| 2011-01-07 | 70656 | 2011-0021 | VLC Media Player CDG Decoder cdg.c Crafted Video File Handling Overflow DoS |
| 2011-01-05 | 74338 | Linux Kernel CAP_SYS_ADMIN Phonet Protocol Negative Protocol Index Local Privilege Escalation | |
| 2010-12-29 | 70242 | 2010-3907 | VLC Media Player modules/demux/real.c Array Indexing Error Code Execution |
| 2010-12-25 | 70239 | 2010-4527 | Linux Kernel sound/oss/soundcard.c load_mixer_volumes() Function SOUND_MIXER_SETLEVELS IOCTL Local Overflow |
| 2010-12-25 | 70240 | 2010-4527 | Linux Kernel sound/oss/soundcard.c load_mixer_volumes() Function SOUND_MIXER_SETLEVELS IOCTL Local Kernel Memory Disclosure |
| 2010-12-22 | 70166 | 2010-4529 | Linux Kernel net/irda/af_irda.c irda_getsockopt() Integer Underflow Kernel Memory Disclosure |
| 2010-12-03 | 69585 | 2010-4295 | VMware Multiple Products vmware-mount Mounting Process Race Condition Privilege Escalation |
| 2010-12-01 | 70265 | 2010-4258 | Linux Kernel kernel/exit.c do_exit Function KERNEL_DS get_fs Value Handling Local Privilege Escalation |
| 2010-11-17 | 70376 | 2010-4175 | Linux Kernel net/rds/rdma.c rds_cmsg_rdma_args Function RDS Request Local Overflow DoS |
| 2010-11-11 | 70291 | 2010-4164 | Linux Kernel net/x25/x25_facilities.c x25_parse_facilities Function Facility Data Remote Underflow DoS |
| 2010-11-10 | 70264 | 2010-4161 | Linux Kernel on RHEL net/ipv4/udp.c udp_queue_rcv_skb Function Socket Filter Remote DoS |
| 2010-11-10 | 69452 | 2010-4162 | Linux Kernel fs/bio.c Multiple Function Page Allocation Crafted IOCTL Local Overflow DoS |
| 2010-11-09 | 69190 | 2010-4158 | Linux Kernel net/core/filter.c sk_run_filter() Function Stack Memory Disclosure |
| 2010-11-04 | 69017 | 2010-3873 | Linux Kernel net/x25/x25_facilities.c x25_parse_facilities() Function Memory Corruption DoS |
| 2010-11-02 | 70227 | 2010-3874 | Linux Kernel on 64-bit Controller Area Network net/can/bcm.c bcm_connect Function Local Overflow DoS |
| 2010-11-02 | 70229 | 2010-4565 | Linux Kernel Controller Area Network net/can/bcm.c bcm_connect Function Kernel Memory Address Filename Local Information Disclosure |
| 2010-10-31 | 70335 | 2010-4160 | Linux Kernel net/l2tp/l2tp_ppp.c pppol2tp_sendmsg Function Crafted sendto Call Local Overflow |
| 2010-10-31 | 70336 | 2010-4160 | Linux Kernel net/l2tp/l2tp_ip.c l2tp_ip_sendmsg Function Crafted sendto Call Local Overflow |
| 2010-10-29 | 69453 | 2010-4163 2010-4668 |
Linux Kernel block/blk-map.c blk_rq_map_user_iov() Function Zero-length I/O Request Local DoS |
| 2010-10-21 | 68771 | NetBSD netsmb File System Kernel Module SMBIOC_OPENSESSION IOCTL Memory Exhaustion DoS | |
| 2010-10-21 | 70226 | 2010-3859 | Linux Kernel TIPC Implementation Crafted sendmsg Call Integer Signedness Local Overflow |
| 2010-10-20 | 69117 | 2010-3904 | Linux Kernel net/rds/page.c rds_page_copy_user() Function Local Privilege Escalation |
| 2010-10-19 | 68840 | 2010-4039 | Google Chrome on Linux PATH Environment Variable Setting Unsafe Library Loading |
| 2010-10-07 | 68865 | 2010-3843 | Ettercap tmp/.ettercap_gtk Temporary File Symlink Arbitrary File Overwrite |
| 2010-10-07 | 68866 | 2010-3844 | Ettercap src/interfaces/gtk/ec_gtk_conf.c gtkui_conf_read() Function Local Overflow |
| 2010-10-06 | 69530 | 2010-4073 | Linux Kernel ipc Subsystem ipc/compat.c Multiple Function Local Memory Disclosure |
| 2010-10-06 | 69531 | 2010-4073 | Linux Kernel ipc Subsystem ipc/compat_mq.c Multiple Function Local Memory Disclosure |
| 2010-10-01 | 69515 | 2010-3705 | Linux Kernel net/sctp/auth.c sctp_auth_asoc_get_hmac Function SCTP Peer hmac_ids Array Remote DoS |
| 2010-09-25 | 69552 | 2010-4080 | Linux Kernel sound/pci/rme9652/hdsp.c snd_hdsp_hwdep_ioctl Function SNDRV_HDSP_IOCTL_GET_CONFIG_INFO IOCTL Call Local Memory Disclosure |
| 2010-09-25 | 69553 | 2010-4081 | Linux Kernel sound/pci/rme9652/hdspm.c snd_hdspm_hwdep_ioctl Function SNDRV_HDSPM_IOCTL_GET_CONFIG_INFO IOCTL Call Local Memory Disclosure |
| 2010-09-23 | 69577 | 2010-4083 | Linux Kernel ipc/sem.c copy_semid_to_user Function semctl Call Local Memory Disclosure |
| 2010-09-22 | 69525 | 2010-4078 | Linux Kernel drivers/video/sis/sis_main.c sisfb_ioctl Function FBIOGET_VBLANK IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69522 | 2010-4075 | Linux Kernel drivers/serial/serial_core.c uart_get_count Function TIOCGICOUNT IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69523 | 2010-4076 | Linux Kernel drivers/char/amiserial.c rs_ioctl Function TIOCGICOUNT IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69524 | 2010-4077 | Linux Kernel drivers/char/nozomi.c ntty_ioctl_tiocgicount Function TIOCGICOUNT IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69526 | 2010-4079 | Linux Kernel drivers/media/video/ivtv/ivtvfb.c ivtvfb_ioctl Function FBIOGET_VBLANK IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69528 | 2010-4074 | Linux Kernel USB Subsystem drivers/usb/serial/mos7720.c mos7720_ioctl Function TIOCGICOUNT IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69529 | 2010-4074 | Linux Kernel USB Subsystem drivers/usb/serial/mos7840.c mos7840_ioctl Function TIOCGICOUNT IOCTL Call Local Memory Disclosure |
| 2010-09-15 | 69554 | 2010-4082 | Linux Kernel drivers/video/via/ioctl.c viafb_ioctl_get_viafb_info VIAFB_GET_INFO IOCTL Call Local Memory Disclosure |
| 2010-06-21 | 65676 | 2010-2067 | LibTIFF tif_dirread.c TIFFFetchSubjectDistance Function SubjectDistance Field Overflow |
| 2010-03-12 | 63097 | 2009-1299 | PulseAudio core-util.c pa_make_secure_dir Function Temporary File Symlink Arbitrary File Permission Modification |
| 2010-03-09 | 63549 | 2010-0750 | PolicyKit libpolkit pkexec pkexec.c Arbitrary Local File Enumeration |
| 2010-03-05 | 62910 | 2010-0791 | ncpfs Multiple Programs File Locking Weakness Local DoS |
| 2010-03-05 | 62909 | 2010-0790 | ncpfs ncpumount sutil/ncpumount.c Mountpoint Name Local File Disclosure |
| 2010-03-03 | 62718 | 2010-0792 | Fcron fcrontab Symlink Race Condition Arbitrary File Access |
| 2010-02-16 | 62551 | 2010-0424 | cronie crontab.c edit_cmd Function Temporary File Symlink Local Privilege Escalation |
| 2010-01-29 | 62376 | 2010-0789 | FUSE fusermount Unmount Operation Race Condition DoS |
| 2010-01-29 | 62378 | 2010-0788 | ncpfs Utilities ncpumount Symlink Race Condition DoS |
| 2010-01-26 | 62155 | 2010-0547 | Samba smbfs mount.cifs client/mount.cifs.c Crafted String mtab Corruption Local DoS |
| 2010-01-05 | 61479 | 2009-4497 | LXR Cross Referencer /ident i Parameter XSS |
| 2010-01-04 | 61601 | 2010-0012 | Transmission libtransmission/metainfo.c Torrent File Traversal Arbitrary File Overwrite |