LiveActive security incident?Get immediate response
CVE archive

October 2009

Browse CVE records published in October 2009, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 374 matching CVEs · Page 5 of 8.

Unknown · CVSS Not scored

CVE-2009-3609: Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler b...

Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, and CUPS pdftops, allows remote attackers to cause a denial of service (application crash) via a crafted PDF document that triggers a NULL pointer dereference or buffer over-read.

Published Oct 21, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3608: Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppl...

Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdegraphics KPDF, CUPS pdftops, and teTeX, might allow remote attackers to execute arbitrary code via a crafted PDF document that triggers a heap-based buffer overflow.

Published Oct 21, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3525: The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf...

The pyGrub boot loader in Xen 3.0.3, 3.3.0, and Xen-3.3.1 does not support the password option in grub.conf for para-virtualized guests, which allows attackers with access to the para-virtualized guest console to boot the guest or modify the guest's kernel boot parameters without providing the expected password.

Published Oct 5, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3611: common/snapshots.py in Back In Time (aka backintime) 0.9.26 changes certain permissions to 0777 before dele...

common/snapshots.py in Back In Time (aka backintime) 0.9.26 changes certain permissions to 0777 before deleting the files in an old backup snapshot, which allows local users to obtain sensitive information by reading these files, or interfere with backup integrity by modifying files that are shared across snapshots.

Published Oct 26, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3508: Multiple directory traversal vulnerabilities in MUJE CMS 1.0.4.34 allow remote attackers to include and exe...

Multiple directory traversal vulnerabilities in MUJE CMS 1.0.4.34 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) _class parameter to admin.php and the (2) url parameter to install/install.php; and allow remote authenticated administrators to read arbitrary files via a .. (dot dot) in the (3) _htmlfile parameter to admin.php.

Published Oct 1, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3569: Stack-based buffer overflow in OpenOffice.org (OOo) allows remote attackers to execute arbitrary code via u...

Stack-based buffer overflow in OpenOffice.org (OOo) allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.8, aka "Client-side stack overflow exploit." NOTE: as of 20091005, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

Published Oct 6, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3551: Off-by-one error in the dissect_negprot_response function in packet-smb.c in the SMB dissector in Wireshark...

Off-by-one error in the dissect_negprot_response function in packet-smb.c in the SMB dissector in Wireshark 1.2.0 through 1.2.2 allows remote attackers to cause a denial of service (application crash) via a file that records a malformed packet trace. NOTE: some of these details are obtained from third party information.

Published Oct 30, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3523: aavmKer4.sys in avast!

aavmKer4.sys in avast! Home and Professional for Windows before 4.8.1356 does not properly validate input to IOCTLs (1) 0xb2d6000c and (2) 0xb2d60034, which allows local users to gain privileges via IOCTL requests using crafted kernel addresses that trigger memory corruption, a different vulnerability than CVE-2008-1625.

Published Oct 1, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3570: Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demo...

Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.9. NOTE: as of 20091005, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

Published Oct 6, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3522: Stack-based buffer overflow in aswMon2.sys in avast!

Stack-based buffer overflow in aswMon2.sys in avast! Home and Professional for Windows 4.8.1351, and possibly other versions before 4.8.1356, allows local users to cause a denial of service (system crash) and possibly gain privileges via a crafted IOCTL request to IOCTL 0xb2c80018.

Published Oct 1, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3514: Multiple SQL injection vulnerabilities in d.net CMS allow remote attackers to execute arbitrary SQL command...

Multiple SQL injection vulnerabilities in d.net CMS allow remote attackers to execute arbitrary SQL commands via (1) the page parameter to index.php; and allow remote authenticated administrators to execute arbitrary SQL commands via the (2) edit_id and (3) _p parameter in a news action to dnet_admin/index.php.

Published Oct 1, 2009 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2009-3513: Multiple cross-site scripting (XSS) vulnerabilities in Pilot Group (PG) eTraining allow remote attackers to...

Multiple cross-site scripting (XSS) vulnerabilities in Pilot Group (PG) eTraining allow remote attackers to inject arbitrary web script or HTML via (1) the cat_id parameter to courses_login.php, the id parameter to (2) news_read.php or (3) lessons_login.php, or (4) the cur parameter in a start action to lessons_login.php.

Published Oct 1, 2009 · Updated Aug 7, 2024