Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2011-06-09 CVE-2011-2471 Permissions, Privileges, and Access Controls vulnerability in Maynard Johnson Oprofile
utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to gain privileges via shell metacharacters in the (1) --vmlinux, (2) --session-dir, or (3) --xen argument, related to the daemonrc file and the do_save_setup and do_load_setup functions, a different vulnerability than CVE-2011-1760.
local
low complexity
maynard-johnson CWE-264
7.2
2011-06-09 CVE-2011-1708 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Stack-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted op-printer-list-all-jobs cookie.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1760 Code Injection vulnerability in Maynard Johnson Oprofile
utils/opcontrol in OProfile 0.9.6 and earlier might allow local users to conduct eval injection attacks and gain privileges via shell metacharacters in the -e argument.
local
low complexity
maynard-johnson CWE-94
7.2
2011-06-09 CVE-2011-1707 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Stack-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted op-printer-list-all-jobs parameter in a printer-url.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1706 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Stack-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted iprint-client-config-info parameter in a printer-url.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1705 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted client-file-name parameter in a printer-url.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1704 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted core-package parameter in a printer-url.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1703 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted driver-version parameter in a printer-url.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1702 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted file-date-time parameter in a printer-url.
network
novell CWE-119
critical
9.3
2011-06-09 CVE-2011-1701 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Novell Iprint
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.64 allows remote attackers to execute arbitrary code via a crafted profile-name parameter in a printer-url.
network
novell CWE-119
critical
9.3