CVE-2010-0780
published 2011-10-29CVE-2010-0780: IBM WebSphere MQ 7.x before 7.0.1.4 allows remote attackers to cause a denial of service (disk consumption) via multiple connection attempts to a stopped queue…
PriorityP418medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.87%
76.8th percentile
IBM WebSphere MQ 7.x before 7.0.1.4 allows remote attackers to cause a denial of service (disk consumption) via multiple connection attempts to a stopped queue manager.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | websphere_mq | — | — |
| ibm | websphere_mq | — | — |
| ibm | websphere_mq | — | — |
| ibm | websphere_mq | — | — |
| ibm | websphere_mq | — | — |
| ibm | websphere_mq | — | — |
| ibm | websphere_mq | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-3176 Mozilla miscellaneous memory safety hazards
bugzilla·2010-10-12·CVSS 9.3
CVE-2010-3176 [CRITICAL] CVE-2010-3176 Mozilla miscellaneous memory safety hazards
CVE-2010-3176 Mozilla miscellaneous memory safety hazards
Mozilla developers identified and fixed several memory safety bugs in the
browser engine used in Firefox and other Mozilla-based products. Some of
these bugs showed evidence of memory corruption under certain
circumstances, and we presume that with enough effort at least some of
these could be exploited to run arbitrary code.
Paul Nickerson, Jesse Ruderman, Olli Pettay, Igor Bukanov and Josh Soref
reported memory safety problems that affected Firefox 3.6 and Firefox 3.5.
Discussion:
This is now public:
http://www.mozilla.org/security/announce/2010/mfsa2010-64.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Via RHSA-2010:0780 https://rhn.redhat.com/errata/RHS
Bugzilla
CVE-2010-3180 Mozilla use-after-free error in nsBarProp
bugzilla·2010-10-12·CVSS 9.3
CVE-2010-3180 [CRITICAL] CVE-2010-3180 Mozilla use-after-free error in nsBarProp
CVE-2010-3180 Mozilla use-after-free error in nsBarProp
Security researcher Sergey Glazunov reported that it was possible to access
the locationbar property of a window object after it had been closed. Since
the closed window's memory could have been subsequently reused by the
system it was possible that an attempt to access the locationbar property
could result in the execution of attacker-controlled memory.
Discussion:
This is now public:
http://www.mozilla.org/security/announce/2010/mfsa2010-66.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Via RHSA-2010:0780 https://rhn.redhat.com/errata/RHSA-2010-0780.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 3
Red Hat Enterprise
Bugzilla
CVE-2010-3182 Mozilla unsafe library loading flaw
bugzilla·2010-10-12·CVSS 6.9
CVE-2010-3182 [MEDIUM] CVE-2010-3182 Mozilla unsafe library loading flaw
CVE-2010-3182 Mozilla unsafe library loading flaw
Dmitri Gribenko reported that the script used to launch Mozilla
applications on Linux was effectively including the current working
directory in the LD_LIBRARY_PATH environment variable. If an attacker was
able to place into the current working directory a malicious shared library
with the same name as a library that the bootstrapping script depends on
the attacker could have their library loaded instead of the legitimate
library.
Discussion:
This is now public:
http://www.mozilla.org/security/announce/2010/mfsa2010-71.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Via RHSA-2010:0780 https://rhn.redhat.com/errata/RHSA-2010-0780.html
---
This issue has been address
http://www-01.ibm.com/support/docview.wss?uid=swg27014224http://www.ibm.com/support/docview.wss?uid=swg1IZ75124https://exchange.xforce.ibmcloud.com/vulnerabilities/60638http://www-01.ibm.com/support/docview.wss?uid=swg27014224http://www.ibm.com/support/docview.wss?uid=swg1IZ75124https://exchange.xforce.ibmcloud.com/vulnerabilities/60638
2011-10-29
Published