CVE-2010-0126
published 2010-08-17CVE-2010-0126: Heap-based buffer overflow in an unspecified library in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote…
PriorityP342critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
3.97%
89.3th percentile
Heap-based buffer overflow in an unspecified library in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted compound file, as demonstrated using a Quattro Pro file, which is not properly handled by the Quattro speed reader (qpssr.dll).
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| autonomy | keyview_export_sdk | — | — |
| autonomy | keyview_export_sdk | — | — |
| autonomy | keyview_filter_sdk | — | — |
| autonomy | keyview_filter_sdk | — | — |
| autonomy | keyview_viewer_sdk | — | — |
| autonomy | keyview_viewer_sdk | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
GPL FTP CWD overflow attempt
suricata·2010-09-23
CVE-1999-0219 GPL FTP CWD overflow attempt
GPL FTP CWD overflow attempt
Rule: alert ftp $EXTERNAL_NET any -> $HOME_NET any (msg:"GPL FTP CWD overflow attempt"; flow:established,to_server; content:"CWD"; nocase; isdataat:100,relative; pcre:"/^CWD\s[^\n]{100}/smi"; reference:bugtraq,11069; reference:bugtraq,1227; reference:bugtraq,1690; reference:bugtraq,6869; reference:bugtraq,7251; reference:bugtraq,7950; reference:cve,1999-0219; reference:cve,1999-1058; reference:cve,1999-1510; reference:cve,2000-1035; reference:cve,2000-1194; reference:cve,2001-0781; reference:cve,2002-0126; reference:cve,2002-0405; classtype:attempted-admin; sid:2101919; rev:25; metadata:created_at 2010_09_23, cve CVE_1999_0219, confidence Medium, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2024_03_08;)
Suricata
GPL FTP PASS overflow attempt
suricata·2010-09-23
CVE-1999-1519 GPL FTP PASS overflow attempt
GPL FTP PASS overflow attempt
Rule: alert ftp $EXTERNAL_NET any -> $HOME_NET 21 (msg:"GPL FTP PASS overflow attempt"; flow:established,to_server,no_stream; content:"PASS"; nocase; isdataat:100,relative; pcre:"/^PASS\s[^\n]{100}/smi"; reference:bugtraq,10078; reference:bugtraq,10720; reference:bugtraq,1690; reference:bugtraq,3884; reference:bugtraq,8601; reference:bugtraq,9285; reference:cve,1999-1519; reference:cve,1999-1539; reference:cve,2000-1035; reference:cve,2002-0126; reference:cve,2002-0895; classtype:attempted-admin; sid:2101972; rev:19; metadata:created_at 2010_09_23, cve CVE_1999_1519, confidence Medium, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2024_03_08;)
Suricata
GPL EXPLOIT ISAPI .idq attempt
suricata·2010-09-23
CVE-2000-0071 GPL EXPLOIT ISAPI .idq attempt
GPL EXPLOIT ISAPI .idq attempt
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"GPL EXPLOIT ISAPI .idq attempt"; flow:established,to_server; http.uri; content:".idq?"; nocase; reference:arachnids,553; reference:bugtraq,1065; reference:bugtraq,968; reference:cve,2000-0071; reference:cve,2000-0126; reference:nessus,10115; classtype:web-application-attack; sid:2101244; rev:18; metadata:created_at 2010_09_23, cve CVE_2000_0071, signature_severity Major, updated_at 2024_03_08;)
No public exploits indexed.
Bugzilla
CVE-2012-2124 squirrelmail: CVE-2010-2813 not fixed in RHSA-2012:0103
bugzilla·2012-04-20·CVSS 5.0
CVE-2012-2124 [MEDIUM] CVE-2012-2124 squirrelmail: CVE-2010-2813 not fixed in RHSA-2012:0103
CVE-2012-2124 squirrelmail: CVE-2010-2813 not fixed in RHSA-2012:0103
A Red Hat Security Advisory RHSA-2012:0103 for squirrelmail packages shipped in Red Hat Enterprise Linux 4 and 5 claim to have fixed CVE-2010-2813 issue ("CVE-2010-2813 SquirrelMail: DoS (disk space consumption) by random IMAP login attempts with 8-bit characters in the password", bug #618096). However, the patch for this issue was not applied correctly and hence the issue was not fixed as stated in the advisory.
Discussion:
CVE assignment notification:
http://www.openwall.com/lists/oss-security/2012/04/20/22
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2013:0126 https://rhn.redhat.com/errata/RHSA-2013-0126.html
Bugzilla
CVE-2009-3722 KVM: Check cpl before emulating debug register access
bugzilla·2009-10-29·CVSS 7.1
CVE-2009-3722 [HIGH] CVE-2009-3722 KVM: Check cpl before emulating debug register access
CVE-2009-3722 KVM: Check cpl before emulating debug register access
Quote from the upstream commit:
Debug registers may only be accessed from cpl 0. Unfortunately, vmx will code to emulate the instruction even though it was issued from guest userspace, possibly leading to an unexpected trap later.
Introduced in v2.6.30-rc1; Fixed in v2.6.32-rc1.
http://git.kernel.org/linus/0a79b009525b160081d75cef5dbf45817956acf2
Discussion:
None of our kernels is affected by this vulnerability. Closing this bug as NOTABUG.
---
Also fixed in 2.6.30.9 and 2.6.31.1
---
The kvm package in RHEL 5.[45] is in fact vulnerable.
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2010:0126 https://rhn.redhat.com/errata/RHSA-2010-0126.html
---
This issue has be
http://secunia.com/secunia_research/2010-16/http://www-01.ibm.com/support/docview.wss?uid=swg21440812http://www.securityfocus.com/bid/41928http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2010&suid=20100727_01http://secunia.com/secunia_research/2010-16/http://www-01.ibm.com/support/docview.wss?uid=swg21440812http://www.securityfocus.com/bid/41928http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2010&suid=20100727_01
2010-08-17
Published