<?xml version='1.0' encoding='UTF-8'?>
<nvd xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://nvd.nist.gov/feeds/cve/1.2" nvd_xml_version="1.2" pub_date="2013-06-19" xsi:schemaLocation="http://nvd.nist.gov/feeds/cve/1.2 http://nvd.nist.gov/schema/nvdcve.xsd">
  <entry type="CVE" severity="Medium" seq="2010-0001" published="2010-01-29" name="CVE-2010-0001" modified="2011-10-25" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Integer underflow in the unlzw function in unlzw.c in gzip before 1.4 on 64-bit platforms, as used in ncompress and probably others, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted archive that uses LZW compression, leading to an array index error.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0095.html" source="REDHAT">RHSA-2010:0095</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=554418" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=554418</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1872" source="VUPEN">ADV-2010-1872</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1796" source="VUPEN">ADV-2010-1796</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0185" source="VUPEN" adv="1">ADV-2010-0185</ref>
      <ref url="http://www.ubuntu.com/usn/USN-889-1" source="UBUNTU">USN-889-1</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0061.html" source="REDHAT">RHSA-2010:0061</ref>
      <ref url="http://www.osvdb.org/61869" source="OSVDB">61869</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:152" source="MANDRIVA">MDVSA-2011:152</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:020" source="MANDRIVA">MDVSA-2010:020</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:019" source="MANDRIVA">MDVSA-2010:019</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2074" source="DEBIAN">DSA-2074</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1974" source="DEBIAN">DSA-1974</ref>
      <ref url="http://support.apple.com/kb/HT4435" source="CONFIRM">http://support.apple.com/kb/HT4435</ref>
      <ref url="http://securitytracker.com/id?1023490" source="SECTRACK">1023490</ref>
      <ref url="http://secunia.com/advisories/40689" source="SECUNIA">40689</ref>
      <ref url="http://secunia.com/advisories/40655" source="SECUNIA">40655</ref>
      <ref url="http://secunia.com/advisories/40551" source="SECUNIA">40551</ref>
      <ref url="http://secunia.com/advisories/38232" source="SECUNIA" adv="1">38232</ref>
      <ref url="http://secunia.com/advisories/38225" source="SECUNIA" adv="1">38225</ref>
      <ref url="http://secunia.com/advisories/38223" source="SECUNIA" adv="1">38223</ref>
      <ref url="http://secunia.com/advisories/38220" source="SECUNIA" adv="1">38220</ref>
      <ref url="http://savannah.gnu.org/forum/forum.php?forum_id=6153" source="CONFIRM">http://savannah.gnu.org/forum/forum.php?forum_id=6153</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7511" source="OVAL">oval:org.mitre.oval:def:7511</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10546" source="OVAL">oval:org.mitre.oval:def:10546</ref>
      <ref url="http://ncompress.sourceforge.net/#status" source="CONFIRM">http://ncompress.sourceforge.net/#status</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html" source="SUSE">SUSE-SA:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" source="APPLE">APPLE-SA-2010-11-10-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02286083" source="HP">HPSBMA02554</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02286083" source="HP">HPSBMA02554</ref>
      <ref url="http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=a3db5806d012082b9e25cc36d09f19cd736a468f" source="CONFIRM">http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=a3db5806d012082b9e25cc36d09f19cd736a468f</ref>
    </refs>
    <vuln_soft>
      <prod vendor="gnu" name="gzip">
        <vers num="1.2.4"/>
        <vers num="1.2.4a"/>
        <vers num="1.3"/>
        <vers num="1.3.1"/>
        <vers num="1.3.10"/>
        <vers num="1.3.11"/>
        <vers num="1.3.12"/>
        <vers prev="1" num="1.3.13"/>
        <vers num="1.3.2"/>
        <vers num="1.3.3"/>
        <vers num="1.3.4"/>
        <vers num="1.3.5"/>
        <vers num="1.3.6"/>
        <vers num="1.3.7"/>
        <vers num="1.3.8"/>
        <vers num="1.3.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0002" published="2010-01-14" name="CVE-2010-0002" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="2.1" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.9" CVSS_base_score="2.1">
    <desc>
      <descript source="cve">The /etc/profile.d/60alias.sh script in the Mandriva bash package for Bash 2.05b, 3.0, 3.2, 3.2.48, and 4.0 enables the --show-control-chars option in LS_OPTIONS, which allows local users to send escape sequences to terminal emulators, or hide the existence of a file, via a crafted filename.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:004" source="MANDRIVA" patch="1" adv="1">MDVSA-2010:004</ref>
      <ref url="https://qa.mandriva.com/show_bug.cgi?id=56882" source="CONFIRM">https://qa.mandriva.com/show_bug.cgi?id=56882</ref>
    </refs>
    <vuln_soft>
      <prod vendor="gnu" name="bash">
        <vers num="2.05" edition="b"/>
        <vers num="3.0"/>
        <vers num="3.2"/>
        <vers num="3.2.48"/>
        <vers num="4.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0003" published="2010-01-26" name="CVE-2010-0003" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:P/I:N/A:C)" CVSS_score="5.4" CVSS_impact_subscore="7.8" CVSS_exploit_subscore="3.4" CVSS_base_score="5.4">
    <desc>
      <descript source="cve">The print_fatal_signal function in kernel/signal.c in the Linux kernel before 2.6.32.4 on the i386 platform, when print-fatal-signals is enabled, allows local users to discover the contents of arbitrary memory locations by jumping to an address and then reading a log file, and might allow local users to cause a denial of service (system slowdown or crash) by jumping to an address.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0146.html" source="REDHAT">RHSA-2010:0146</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=554578" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=554578</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/bid/37724" source="BID">37724</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0161.html" source="REDHAT">RHSA-2010:0161</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0147.html" source="REDHAT">RHSA-2010:0147</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/13/4" source="MLIST">[oss-security] 20100113 Re: CVE request - kernel: infoleak if print-fatal-signals=1</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/12/1" source="MLIST">[oss-security] 20100112 CVE request - kernel: infoleak if print-fatal-signals=1</ref>
      <ref url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4" source="CONFIRM">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2005" source="DEBIAN">DSA-2005</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://secunia.com/advisories/43315" source="SECUNIA">43315</ref>
      <ref url="http://secunia.com/advisories/39033" source="SECUNIA">39033</ref>
      <ref url="http://secunia.com/advisories/38779" source="SECUNIA">38779</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA">38492</ref>
      <ref url="http://secunia.com/advisories/38333" source="SECUNIA" adv="1">38333</ref>
      <ref url="http://patchwork.kernel.org/patch/69752/" source="CONFIRM">http://patchwork.kernel.org/patch/69752/</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10550" source="OVAL">oval:org.mitre.oval:def:10550</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00000.html" source="SUSE">SUSE-SA:2010:014</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00005.html" source="SUSE">SUSE-SA:2010:012</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00002.html" source="SUSE">SUSE-SA:2010:010</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034250.html" source="FEDORA">FEDORA-2010-0919</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b45c6e76bc2c72f6426c14bed64fdcbc9bf37cb0" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b45c6e76bc2c72f6426c14bed64fdcbc9bf37cb0</ref>
    </refs>
    <vuln_soft>
      <prod vendor="intel" name="e1000">
        <vers num="5.2.22"/>
        <vers num="5.2.30.1"/>
        <vers num="5.2.52"/>
        <vers num="5.3.19"/>
        <vers num="5.4.11"/>
        <vers num="5.5.4"/>
        <vers num="5.6.10"/>
        <vers num="5.6.10.1"/>
        <vers num="5.7.6"/>
        <vers num="6.0.54"/>
        <vers num="6.0.60"/>
        <vers num="6.1.16"/>
        <vers num="6.2.15"/>
        <vers num="6.3.9"/>
        <vers num="7.0.33"/>
        <vers num="7.0.41"/>
        <vers num="7.1.9"/>
        <vers num="7.2.7"/>
        <vers num="7.2.9"/>
        <vers num="7.3.15"/>
        <vers num="7.3.20"/>
        <vers num="7.4.27"/>
        <vers prev="1" num="7.4.35"/>
      </prod>
      <prod vendor="linux" name="kernel">
        <vers num="2.6.24.7"/>
        <vers num="2.6.25.15"/>
      </prod>
      <prod vendor="linux" name="linux_kernel">
        <vers num="2.2.27"/>
        <vers num="2.4.36"/>
        <vers num="2.4.36.1"/>
        <vers num="2.4.36.2"/>
        <vers num="2.4.36.3"/>
        <vers num="2.4.36.4"/>
        <vers num="2.4.36.5"/>
        <vers num="2.4.36.6"/>
        <vers num="2.6"/>
        <vers num="2.6.18" edition="rc1"/>
        <vers num="2.6.18" edition="rc2"/>
        <vers num="2.6.18" edition="rc3"/>
        <vers num="2.6.18" edition="rc4"/>
        <vers num="2.6.18" edition="rc5"/>
        <vers num="2.6.18" edition="rc6"/>
        <vers num="2.6.18" edition="rc7"/>
        <vers num="2.6.19.4"/>
        <vers num="2.6.19.5"/>
        <vers num="2.6.19.6"/>
        <vers num="2.6.19.7"/>
        <vers num="2.6.20.16"/>
        <vers num="2.6.20.17"/>
        <vers num="2.6.20.18"/>
        <vers num="2.6.20.19"/>
        <vers num="2.6.20.20"/>
        <vers num="2.6.20.21"/>
        <vers num="2.6.21.5"/>
        <vers num="2.6.21.6"/>
        <vers num="2.6.21.7"/>
        <vers num="2.6.22"/>
        <vers num="2.6.22.1"/>
        <vers num="2.6.22.10"/>
        <vers num="2.6.22.11"/>
        <vers num="2.6.22.12"/>
        <vers num="2.6.22.13"/>
        <vers num="2.6.22.14"/>
        <vers num="2.6.22.15"/>
        <vers num="2.6.22.17"/>
        <vers num="2.6.22.18"/>
        <vers num="2.6.22.19"/>
        <vers num="2.6.22.2"/>
        <vers num="2.6.22.20"/>
        <vers num="2.6.22.21"/>
        <vers num="2.6.22.22"/>
        <vers num="2.6.22.8"/>
        <vers num="2.6.22.9"/>
        <vers num="2.6.22_rc1"/>
        <vers num="2.6.22_rc7"/>
        <vers num="2.6.23"/>
        <vers num="2.6.23.10"/>
        <vers num="2.6.23.11"/>
        <vers num="2.6.23.12"/>
        <vers num="2.6.23.13"/>
        <vers num="2.6.23.15"/>
        <vers num="2.6.23.16"/>
        <vers num="2.6.23.17"/>
        <vers num="2.6.23.8"/>
        <vers num="2.6.23.9"/>
        <vers num="2.6.23_rc1"/>
        <vers num="2.6.24"/>
        <vers num="2.6.24.1"/>
        <vers num="2.6.24.2"/>
        <vers num="2.6.24.3"/>
        <vers num="2.6.24.4"/>
        <vers num="2.6.24.5"/>
        <vers num="2.6.24.6"/>
        <vers num="2.6.24_rc1"/>
        <vers num="2.6.24_rc4"/>
        <vers num="2.6.24_rc5"/>
        <vers num="2.6.25" edition=""/>
        <vers num="2.6.25" edition=":x86_64"/>
        <vers num="2.6.25.1" edition=""/>
        <vers num="2.6.25.1" edition=":x86_64"/>
        <vers num="2.6.25.10" edition=""/>
        <vers num="2.6.25.10" edition=":x86_64"/>
        <vers num="2.6.25.11" edition=""/>
        <vers num="2.6.25.11" edition=":x86_64"/>
        <vers num="2.6.25.12" edition=""/>
        <vers num="2.6.25.12" edition=":x86_64"/>
        <vers num="2.6.25.13"/>
        <vers num="2.6.25.14"/>
        <vers num="2.6.25.16"/>
        <vers num="2.6.25.17"/>
        <vers num="2.6.25.2" edition=""/>
        <vers num="2.6.25.2" edition=":x86_64"/>
        <vers num="2.6.25.3" edition=""/>
        <vers num="2.6.25.3" edition=":x86_64"/>
        <vers num="2.6.25.4" edition=""/>
        <vers num="2.6.25.4" edition=":x86_64"/>
        <vers num="2.6.25.5" edition=""/>
        <vers num="2.6.25.5" edition=":x86_64"/>
        <vers num="2.6.25.6" edition=""/>
        <vers num="2.6.25.6" edition=":x86_64"/>
        <vers num="2.6.25.7" edition=""/>
        <vers num="2.6.25.7" edition=":x86_64"/>
        <vers num="2.6.25.8" edition=""/>
        <vers num="2.6.25.8" edition=":x86_64"/>
        <vers num="2.6.25.9" edition=""/>
        <vers num="2.6.25.9" edition=":x86_64"/>
        <vers num="2.6.26"/>
        <vers num="2.6.26.1"/>
        <vers num="2.6.26.2"/>
        <vers num="2.6.26.3"/>
        <vers num="2.6.26.4"/>
        <vers num="2.6.26.5"/>
        <vers num="2.6.27"/>
        <vers prev="1" num="2.6.28"/>
        <vers num="2.6.29" edition="git1"/>
        <vers num="2.6.29" edition="rc1"/>
        <vers num="2.6.29" edition="rc2"/>
        <vers num="2.6.29" edition="rc2_git7"/>
        <vers num="2.6.29" edition="rc8-kk"/>
        <vers num="2.6.29.3"/>
        <vers num="2.6.29.rc1"/>
        <vers num="2.6.29.rc2-git1"/>
        <vers prev="1" num="2.6.30" edition="rc1"/>
        <vers prev="1" num="2.6.30" edition="rc2"/>
        <vers prev="1" num="2.6.30" edition="rc3"/>
        <vers prev="1" num="2.6.30" edition="rc7-git6"/>
        <vers num="2.6.32" edition="git-6"/>
        <vers num="2.6.32" edition="rc1"/>
        <vers num="2.6.32" edition="rc3"/>
        <vers num="2.6.32" edition="rc4"/>
        <vers num="2.6.32" edition="rc5"/>
        <vers num="2.6.32" edition="rc6"/>
        <vers num="2.6.32" edition="rc7"/>
        <vers num="2.6.32" edition="rc8"/>
        <vers num="2.6.32.1"/>
        <vers num="2.6.32.2"/>
        <vers num="2.6.32.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0004" published="2010-01-29" name="CVE-2010-0004" modified="2010-02-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01464.html" source="FEDORA">FEDORA-2009-13634</ref>
      <ref url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01421.html" source="FEDORA">FEDORA-2009-13610</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/14/4" source="MLIST">[oss-security] 20100114 Re: CVE Request: viewvc</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/13/5" source="MLIST">[oss-security] 20100113 Re: CVE Request: viewvc</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/11/2" source="MLIST">[oss-security] 20100111 CVE Request: viewvc</ref>
      <ref url="http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300" source="CONFIRM">http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300</ref>
      <ref url="http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD" source="CONFIRM">http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD</ref>
      <ref url="http://viewvc.tigris.org/source/browse/%2Acheckout%2A/viewvc/trunk/docs/release-notes/1.1.0.html?revision=2222" source="CONFIRM">http://viewvc.tigris.org/source/browse/*checkout*/viewvc/trunk/docs/release-notes/1.1.0.html?revision=2222</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html" source="SUSE">SUSE-SA:2010:008</ref>
    </refs>
    <vuln_soft>
      <prod vendor="viewvc" name="viewvc">
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0005" published="2010-01-29" name="CVE-2010-0005" modified="2010-02-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">query.py in the query interface in ViewVC before 1.1.3 does not reject configurations that specify an unsupported authorizer for a root, which might allow remote attackers to bypass intended access restrictions via a query.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD" source="CONFIRM" patch="1">http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD</ref>
      <ref url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01464.html" source="FEDORA">FEDORA-2009-13634</ref>
      <ref url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01421.html" source="FEDORA">FEDORA-2009-13610</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/13/5" source="MLIST">[oss-security] 20100113 Re: CVE Request: viewvc</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/11/2" source="MLIST">[oss-security] 20100111 CVE Request: viewvc</ref>
      <ref url="http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300" source="CONFIRM">http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html" source="SUSE">SUSE-SA:2010:008</ref>
    </refs>
    <vuln_soft>
      <prod vendor="viewvc" name="viewvc">
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers prev="1" num="1.1.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0006" published="2010-01-26" name="CVE-2010-0006" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:C)" CVSS_score="7.1" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="8.6" CVSS_base_score="7.1">
    <desc>
      <descript source="cve">The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.32.4, when network namespaces are enabled, allows remote attackers to cause a denial of service (NULL pointer dereference) via an invalid IPv6 jumbogram, a related issue to CVE-2007-4567.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=555217" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=555217</ref>
      <ref url="http://www.securityfocus.com/bid/37810" source="BID">37810</ref>
      <ref url="http://www.osvdb.org/61876" source="OSVDB">61876</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/14/2" source="MLIST">[oss-security] 20100114 CVE-2010-0006 - kernel: ipv6: skb_dst() can be NULL in ipv6_hop_jumbo()</ref>
      <ref url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4" source="CONFIRM">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4</ref>
      <ref url="http://security-tracker.debian.org/tracker/CVE-2010-0006" source="CONFIRM">http://security-tracker.debian.org/tracker/CVE-2010-0006</ref>
      <ref url="http://secunia.com/advisories/38333" source="SECUNIA" adv="1">38333</ref>
      <ref url="http://secunia.com/advisories/38168" source="SECUNIA" adv="1">38168</ref>
      <ref url="http://marc.info/?l=linux-netdev&amp;m=126343325807340&amp;w=2" source="MLIST">[linux-netdev] 20100114 [PATCH]: ipv6: skb_dst() can be NULL in ipv6_hop_jumbo().</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00002.html" source="SUSE">SUSE-SA:2010:010</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034250.html" source="FEDORA">FEDORA-2010-0919</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2570a4f5428bcdb1077622342181755741e7fa60" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2570a4f5428bcdb1077622342181755741e7fa60</ref>
      <ref url="http://cert.fi/en/reports/2010/vulnerability341748.html" source="MISC">http://cert.fi/en/reports/2010/vulnerability341748.html</ref>
      <ref url="http://bugs.gentoo.org/show_bug.cgi?id=300951" source="CONFIRM">http://bugs.gentoo.org/show_bug.cgi?id=300951</ref>
    </refs>
    <vuln_soft>
      <prod vendor="intel" name="e1000">
        <vers num="5.2.22"/>
        <vers num="5.2.30.1"/>
        <vers num="5.2.52"/>
        <vers num="5.3.19"/>
        <vers num="5.4.11"/>
        <vers num="5.5.4"/>
        <vers num="5.6.10"/>
        <vers num="5.6.10.1"/>
        <vers num="5.7.6"/>
        <vers num="6.0.54"/>
        <vers num="6.0.60"/>
        <vers num="6.1.16"/>
        <vers num="6.2.15"/>
        <vers num="6.3.9"/>
        <vers num="7.0.33"/>
        <vers num="7.0.41"/>
        <vers num="7.1.9"/>
        <vers num="7.2.7"/>
        <vers num="7.2.9"/>
        <vers num="7.3.15"/>
        <vers num="7.3.20"/>
        <vers num="7.4.27"/>
        <vers prev="1" num="7.4.35"/>
      </prod>
      <prod vendor="linux" name="kernel">
        <vers num="2.6.24.7"/>
        <vers num="2.6.25.15"/>
      </prod>
      <prod vendor="linux" name="linux_kernel">
        <vers num="2.2.27"/>
        <vers num="2.4.36"/>
        <vers num="2.4.36.1"/>
        <vers num="2.4.36.2"/>
        <vers num="2.4.36.3"/>
        <vers num="2.4.36.4"/>
        <vers num="2.4.36.5"/>
        <vers num="2.4.36.6"/>
        <vers num="2.6"/>
        <vers num="2.6.18" edition="rc1"/>
        <vers num="2.6.18" edition="rc2"/>
        <vers num="2.6.18" edition="rc3"/>
        <vers num="2.6.18" edition="rc4"/>
        <vers num="2.6.18" edition="rc5"/>
        <vers num="2.6.18" edition="rc6"/>
        <vers num="2.6.18" edition="rc7"/>
        <vers num="2.6.19.4"/>
        <vers num="2.6.19.5"/>
        <vers num="2.6.19.6"/>
        <vers num="2.6.19.7"/>
        <vers num="2.6.20.16"/>
        <vers num="2.6.20.17"/>
        <vers num="2.6.20.18"/>
        <vers num="2.6.20.19"/>
        <vers num="2.6.20.20"/>
        <vers num="2.6.20.21"/>
        <vers num="2.6.21.5"/>
        <vers num="2.6.21.6"/>
        <vers num="2.6.21.7"/>
        <vers num="2.6.22"/>
        <vers num="2.6.22.1"/>
        <vers num="2.6.22.10"/>
        <vers num="2.6.22.11"/>
        <vers num="2.6.22.12"/>
        <vers num="2.6.22.13"/>
        <vers num="2.6.22.14"/>
        <vers num="2.6.22.15"/>
        <vers num="2.6.22.17"/>
        <vers num="2.6.22.18"/>
        <vers num="2.6.22.19"/>
        <vers num="2.6.22.2"/>
        <vers num="2.6.22.20"/>
        <vers num="2.6.22.21"/>
        <vers num="2.6.22.22"/>
        <vers num="2.6.22.8"/>
        <vers num="2.6.22.9"/>
        <vers num="2.6.22_rc1"/>
        <vers num="2.6.22_rc7"/>
        <vers num="2.6.23"/>
        <vers num="2.6.23.10"/>
        <vers num="2.6.23.11"/>
        <vers num="2.6.23.12"/>
        <vers num="2.6.23.13"/>
        <vers num="2.6.23.15"/>
        <vers num="2.6.23.16"/>
        <vers num="2.6.23.17"/>
        <vers num="2.6.23.8"/>
        <vers num="2.6.23.9"/>
        <vers num="2.6.23_rc1"/>
        <vers num="2.6.24"/>
        <vers num="2.6.24.1"/>
        <vers num="2.6.24.2"/>
        <vers num="2.6.24.3"/>
        <vers num="2.6.24.4"/>
        <vers num="2.6.24.5"/>
        <vers num="2.6.24.6"/>
        <vers num="2.6.24_rc1"/>
        <vers num="2.6.24_rc4"/>
        <vers num="2.6.24_rc5"/>
        <vers num="2.6.25" edition=""/>
        <vers num="2.6.25" edition=":x86_64"/>
        <vers num="2.6.25.1" edition=""/>
        <vers num="2.6.25.1" edition=":x86_64"/>
        <vers num="2.6.25.10" edition=""/>
        <vers num="2.6.25.10" edition=":x86_64"/>
        <vers num="2.6.25.11" edition=""/>
        <vers num="2.6.25.11" edition=":x86_64"/>
        <vers num="2.6.25.12" edition=""/>
        <vers num="2.6.25.12" edition=":x86_64"/>
        <vers num="2.6.25.13"/>
        <vers num="2.6.25.14"/>
        <vers num="2.6.25.16"/>
        <vers num="2.6.25.17"/>
        <vers num="2.6.25.2" edition=""/>
        <vers num="2.6.25.2" edition=":x86_64"/>
        <vers num="2.6.25.3" edition=""/>
        <vers num="2.6.25.3" edition=":x86_64"/>
        <vers num="2.6.25.4" edition=""/>
        <vers num="2.6.25.4" edition=":x86_64"/>
        <vers num="2.6.25.5" edition=""/>
        <vers num="2.6.25.5" edition=":x86_64"/>
        <vers num="2.6.25.6" edition=""/>
        <vers num="2.6.25.6" edition=":x86_64"/>
        <vers num="2.6.25.7" edition=""/>
        <vers num="2.6.25.7" edition=":x86_64"/>
        <vers num="2.6.25.8" edition=""/>
        <vers num="2.6.25.8" edition=":x86_64"/>
        <vers num="2.6.25.9" edition=""/>
        <vers num="2.6.25.9" edition=":x86_64"/>
        <vers num="2.6.26"/>
        <vers num="2.6.26.1"/>
        <vers num="2.6.26.2"/>
        <vers num="2.6.26.3"/>
        <vers num="2.6.26.4"/>
        <vers num="2.6.26.5"/>
        <vers num="2.6.27"/>
        <vers prev="1" num="2.6.28"/>
        <vers num="2.6.29" edition="git1"/>
        <vers num="2.6.29" edition="rc1"/>
        <vers num="2.6.29" edition="rc2"/>
        <vers num="2.6.29" edition="rc2_git7"/>
        <vers num="2.6.29" edition="rc8-kk"/>
        <vers num="2.6.29.3"/>
        <vers num="2.6.29.rc1"/>
        <vers num="2.6.29.rc2-git1"/>
        <vers prev="1" num="2.6.30" edition="rc1"/>
        <vers prev="1" num="2.6.30" edition="rc2"/>
        <vers prev="1" num="2.6.30" edition="rc3"/>
        <vers prev="1" num="2.6.30" edition="rc7-git6"/>
        <vers num="2.6.32" edition="git-6"/>
        <vers num="2.6.32" edition="rc1"/>
        <vers num="2.6.32" edition="rc3"/>
        <vers num="2.6.32" edition="rc4"/>
        <vers num="2.6.32" edition="rc5"/>
        <vers num="2.6.32" edition="rc6"/>
        <vers num="2.6.32" edition="rc7"/>
        <vers num="2.6.32" edition="rc8"/>
        <vers num="2.6.32.1"/>
        <vers num="2.6.32.2"/>
        <vers num="2.6.32.3"/>
        <vers prev="1" num="2.6.32.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0007" published="2010-01-19" name="CVE-2010-0007" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:P/A:N)" CVSS_score="2.1" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.9" CVSS_base_score="2.1">
    <desc>
      <descript source="cve">net/bridge/netfilter/ebtables.c in the ebtables module in the netfilter framework in the Linux kernel before 2.6.33-rc4 does not require the CAP_NET_ADMIN capability for setting or modifying rules, which allows local users to bypass intended access restrictions and configure arbitrary network-traffic filtering via a modified ebtables application.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0109" source="VUPEN" patch="1" adv="1">ADV-2010-0109</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0146.html" source="REDHAT">RHSA-2010:0146</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=555238" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=555238</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55602" source="XF">kernel-ebtables-security-bypass(55602)</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/bid/37762" source="BID">37762</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0161.html" source="REDHAT">RHSA-2010:0161</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0147.html" source="REDHAT">RHSA-2010:0147</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/14/3" source="MLIST">[oss-security] 20100114 Re: CVE Request: kernel ebtables perm check</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/14/1" source="MLIST">[oss-security] 20100113 CVE Request: kernel ebtables perm check</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:051" source="MANDRIVA">MDVSA-2011:051</ref>
      <ref url="http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.33-rc4" source="CONFIRM">http://www.kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.33-rc4</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2005" source="DEBIAN">DSA-2005</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://secunia.com/advisories/43315" source="SECUNIA">43315</ref>
      <ref url="http://secunia.com/advisories/39033" source="SECUNIA">39033</ref>
      <ref url="http://secunia.com/advisories/38779" source="SECUNIA">38779</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA">38492</ref>
      <ref url="http://secunia.com/advisories/38333" source="SECUNIA">38333</ref>
      <ref url="http://secunia.com/advisories/38296" source="SECUNIA">38296</ref>
      <ref url="http://secunia.com/advisories/38133" source="SECUNIA" adv="1">38133</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9630" source="OVAL">oval:org.mitre.oval:def:9630</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00000.html" source="SUSE">SUSE-SA:2010:014</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00007.html" source="SUSE">SUSE-SA:2010:013</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00005.html" source="SUSE">SUSE-SA:2010:012</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00002.html" source="SUSE">SUSE-SA:2010:010</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00008.html" source="SUSE">SUSE-SA:2010:007</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034250.html" source="FEDORA">FEDORA-2010-0919</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=dce766af541f6605fa9889892c0280bab31c66ab" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=dce766af541f6605fa9889892c0280bab31c66ab</ref>
    </refs>
    <vuln_soft>
      <prod vendor="linux" name="linux_kernel">
        <vers num="2.6.0"/>
        <vers num="2.6.1"/>
        <vers num="2.6.10"/>
        <vers num="2.6.11"/>
        <vers num="2.6.11.1"/>
        <vers num="2.6.11.10"/>
        <vers num="2.6.11.11"/>
        <vers num="2.6.11.12"/>
        <vers num="2.6.11.2"/>
        <vers num="2.6.11.3"/>
        <vers num="2.6.11.4"/>
        <vers num="2.6.11.5"/>
        <vers num="2.6.11.6"/>
        <vers num="2.6.11.7"/>
        <vers num="2.6.11.8"/>
        <vers num="2.6.11.9"/>
        <vers num="2.6.12"/>
        <vers num="2.6.12.1"/>
        <vers num="2.6.12.2"/>
        <vers num="2.6.12.3"/>
        <vers num="2.6.12.4"/>
        <vers num="2.6.12.5"/>
        <vers num="2.6.12.6"/>
        <vers num="2.6.13"/>
        <vers num="2.6.13.1"/>
        <vers num="2.6.13.2"/>
        <vers num="2.6.13.3"/>
        <vers num="2.6.13.4"/>
        <vers num="2.6.13.5"/>
        <vers num="2.6.14"/>
        <vers num="2.6.14.1"/>
        <vers num="2.6.14.3"/>
        <vers num="2.6.14.4"/>
        <vers num="2.6.14.5"/>
        <vers num="2.6.14.6"/>
        <vers num="2.6.14.7"/>
        <vers num="2.6.15"/>
        <vers num="2.6.15.1"/>
        <vers num="2.6.15.2"/>
        <vers num="2.6.15.3"/>
        <vers num="2.6.15.4"/>
        <vers num="2.6.15.5"/>
        <vers num="2.6.15.6"/>
        <vers num="2.6.15.7"/>
        <vers num="2.6.16"/>
        <vers num="2.6.16.1"/>
        <vers num="2.6.16.10"/>
        <vers num="2.6.16.11"/>
        <vers num="2.6.16.12"/>
        <vers num="2.6.16.13"/>
        <vers num="2.6.16.14"/>
        <vers num="2.6.16.15"/>
        <vers num="2.6.16.16"/>
        <vers num="2.6.16.17"/>
        <vers num="2.6.16.18"/>
        <vers num="2.6.16.19"/>
        <vers num="2.6.16.2"/>
        <vers num="2.6.16.20"/>
        <vers num="2.6.16.21"/>
        <vers num="2.6.16.22"/>
        <vers num="2.6.16.23"/>
        <vers num="2.6.16.24"/>
        <vers num="2.6.16.25"/>
        <vers num="2.6.16.26"/>
        <vers num="2.6.16.27"/>
        <vers num="2.6.16.28"/>
        <vers num="2.6.16.29"/>
        <vers num="2.6.16.3"/>
        <vers num="2.6.16.30"/>
        <vers num="2.6.16.31"/>
        <vers num="2.6.16.4"/>
        <vers num="2.6.16.5"/>
        <vers num="2.6.16.6"/>
        <vers num="2.6.16.7"/>
        <vers num="2.6.16.8"/>
        <vers num="2.6.16.9"/>
        <vers num="2.6.17"/>
        <vers num="2.6.17.1"/>
        <vers num="2.6.17.10"/>
        <vers num="2.6.17.11"/>
        <vers num="2.6.17.12"/>
        <vers num="2.6.17.13"/>
        <vers num="2.6.17.14"/>
        <vers num="2.6.17.2"/>
        <vers num="2.6.17.3"/>
        <vers num="2.6.17.4"/>
        <vers num="2.6.17.5"/>
        <vers num="2.6.17.6"/>
        <vers num="2.6.17.7"/>
        <vers num="2.6.17.8"/>
        <vers num="2.6.17.9"/>
        <vers num="2.6.18.1"/>
        <vers num="2.6.18.2"/>
        <vers num="2.6.18.3"/>
        <vers num="2.6.18.4"/>
        <vers num="2.6.18.5"/>
        <vers num="2.6.18.6"/>
        <vers num="2.6.18.7"/>
        <vers num="2.6.18.8"/>
        <vers num="2.6.2"/>
        <vers num="2.6.22"/>
        <vers num="2.6.22.2"/>
        <vers num="2.6.22.3"/>
        <vers num="2.6.22.4"/>
        <vers num="2.6.22.5"/>
        <vers num="2.6.22.6"/>
        <vers num="2.6.22.7"/>
        <vers num="2.6.23" edition="rc1"/>
        <vers num="2.6.23" edition="rc2"/>
        <vers num="2.6.23.1"/>
        <vers num="2.6.23.2"/>
        <vers num="2.6.23.3"/>
        <vers num="2.6.23.4"/>
        <vers num="2.6.23.5"/>
        <vers num="2.6.23.6"/>
        <vers num="2.6.23.7"/>
        <vers num="2.6.24" edition="rc1"/>
        <vers num="2.6.24" edition="rc2"/>
        <vers num="2.6.24" edition="rc3"/>
        <vers num="2.6.24" edition="rc4"/>
        <vers num="2.6.24" edition="rc5"/>
        <vers num="2.6.3"/>
        <vers num="2.6.32"/>
        <vers num="2.6.32.1"/>
        <vers num="2.6.32.2"/>
        <vers num="2.6.32.3"/>
        <vers num="2.6.32.4"/>
        <vers prev="1" num="2.6.33" edition="rc1"/>
        <vers prev="1" num="2.6.33" edition="rc2"/>
        <vers prev="1" num="2.6.33" edition="rc3"/>
        <vers num="2.6.4"/>
        <vers num="2.6.5"/>
        <vers num="2.6.6"/>
        <vers num="2.6.7"/>
        <vers num="2.6.8"/>
        <vers num="2.6.8.1"/>
        <vers num="2.6.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0008" published="2010-03-19" name="CVE-2010-0008" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The sctp_rcv_ootb function in the SCTP implementation in the Linux kernel before 2.6.23 allows remote attackers to cause a denial of service (infinite loop) via (1) an Out Of The Blue (OOTB) chunk or (2) a chunk of zero length.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.openwall.com/lists/oss-security/2010/03/17/2" source="MLIST" patch="1">[oss-security] 20100317 CVE-2010-0008 kernel: sctp remote denial of service</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ece25dfa0991f65c4e1d26beb1c3c45bda4239b8" source="CONFIRM" patch="1">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ece25dfa0991f65c4e1d26beb1c3c45bda4239b8</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0146.html" source="REDHAT">RHSA-2010:0146</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=555658" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=555658</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0342.html" source="REDHAT">RHSA-2010:0342</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0147.html" source="REDHAT">RHSA-2010:0147</ref>
      <ref url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23" source="CONFIRM">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23</ref>
      <ref url="http://secunia.com/advisories/43315" source="SECUNIA" adv="1">43315</ref>
      <ref url="http://secunia.com/advisories/39295" source="SECUNIA" adv="1">39295</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11160" source="OVAL">oval:org.mitre.oval:def:11160</ref>
    </refs>
    <vuln_soft>
      <prod vendor="linux" name="linux_kernel">
        <vers num="2.6"/>
        <vers num="2.6.0"/>
        <vers num="2.6.1"/>
        <vers num="2.6.10"/>
        <vers num="2.6.11"/>
        <vers num="2.6.11.1"/>
        <vers num="2.6.11.10"/>
        <vers num="2.6.11.11"/>
        <vers num="2.6.11.12"/>
        <vers num="2.6.11.2"/>
        <vers num="2.6.11.3"/>
        <vers num="2.6.11.4"/>
        <vers num="2.6.11.5"/>
        <vers num="2.6.11.6"/>
        <vers num="2.6.11.7"/>
        <vers num="2.6.11.8"/>
        <vers num="2.6.11.9"/>
        <vers num="2.6.12"/>
        <vers num="2.6.12.1"/>
        <vers num="2.6.12.2"/>
        <vers num="2.6.12.3"/>
        <vers num="2.6.12.4"/>
        <vers num="2.6.12.5"/>
        <vers num="2.6.12.6"/>
        <vers num="2.6.13"/>
        <vers num="2.6.13.1"/>
        <vers num="2.6.13.2"/>
        <vers num="2.6.13.3"/>
        <vers num="2.6.13.4"/>
        <vers num="2.6.13.5"/>
        <vers num="2.6.14"/>
        <vers num="2.6.14.1"/>
        <vers num="2.6.14.2"/>
        <vers num="2.6.14.3"/>
        <vers num="2.6.14.4"/>
        <vers num="2.6.14.5"/>
        <vers num="2.6.14.6"/>
        <vers num="2.6.14.7"/>
        <vers num="2.6.15"/>
        <vers num="2.6.15.1"/>
        <vers num="2.6.15.2"/>
        <vers num="2.6.15.3"/>
        <vers num="2.6.15.4"/>
        <vers num="2.6.15.5"/>
        <vers num="2.6.15.6"/>
        <vers num="2.6.15.7"/>
        <vers num="2.6.16"/>
        <vers num="2.6.16.1"/>
        <vers num="2.6.16.10"/>
        <vers num="2.6.16.11"/>
        <vers num="2.6.16.12"/>
        <vers num="2.6.16.13"/>
        <vers num="2.6.16.14"/>
        <vers num="2.6.16.15"/>
        <vers num="2.6.16.16"/>
        <vers num="2.6.16.17"/>
        <vers num="2.6.16.18"/>
        <vers num="2.6.16.19"/>
        <vers num="2.6.16.2"/>
        <vers num="2.6.16.20"/>
        <vers num="2.6.16.21"/>
        <vers num="2.6.16.22"/>
        <vers num="2.6.16.23"/>
        <vers num="2.6.16.24"/>
        <vers num="2.6.16.25"/>
        <vers num="2.6.16.26"/>
        <vers num="2.6.16.27"/>
        <vers num="2.6.16.28"/>
        <vers num="2.6.16.29"/>
        <vers num="2.6.16.3"/>
        <vers num="2.6.16.30"/>
        <vers num="2.6.16.31"/>
        <vers num="2.6.16.32"/>
        <vers num="2.6.16.33"/>
        <vers num="2.6.16.34"/>
        <vers num="2.6.16.35"/>
        <vers num="2.6.16.36"/>
        <vers num="2.6.16.37"/>
        <vers num="2.6.16.38"/>
        <vers num="2.6.16.39"/>
        <vers num="2.6.16.4"/>
        <vers num="2.6.16.40"/>
        <vers num="2.6.16.41"/>
        <vers num="2.6.16.42"/>
        <vers num="2.6.16.43"/>
        <vers num="2.6.16.44"/>
        <vers num="2.6.16.45"/>
        <vers num="2.6.16.46"/>
        <vers num="2.6.16.47"/>
        <vers num="2.6.16.48"/>
        <vers num="2.6.16.49"/>
        <vers num="2.6.16.5"/>
        <vers num="2.6.16.50"/>
        <vers num="2.6.16.51"/>
        <vers num="2.6.16.52"/>
        <vers num="2.6.16.53"/>
        <vers num="2.6.16.54"/>
        <vers num="2.6.16.55"/>
        <vers num="2.6.16.56"/>
        <vers num="2.6.16.57"/>
        <vers num="2.6.16.58"/>
        <vers num="2.6.16.59"/>
        <vers num="2.6.16.6"/>
        <vers num="2.6.16.60"/>
        <vers num="2.6.16.61"/>
        <vers num="2.6.16.62"/>
        <vers num="2.6.16.7"/>
        <vers num="2.6.16.8"/>
        <vers num="2.6.16.9"/>
        <vers num="2.6.17"/>
        <vers num="2.6.17.1"/>
        <vers num="2.6.17.10"/>
        <vers num="2.6.17.11"/>
        <vers num="2.6.17.12"/>
        <vers num="2.6.17.13"/>
        <vers num="2.6.17.14"/>
        <vers num="2.6.17.2"/>
        <vers num="2.6.17.3"/>
        <vers num="2.6.17.4"/>
        <vers num="2.6.17.5"/>
        <vers num="2.6.17.6"/>
        <vers num="2.6.17.7"/>
        <vers num="2.6.17.8"/>
        <vers num="2.6.17.9"/>
        <vers num="2.6.18" edition="rc1"/>
        <vers num="2.6.18" edition="rc2"/>
        <vers num="2.6.18" edition="rc3"/>
        <vers num="2.6.18" edition="rc4"/>
        <vers num="2.6.18" edition="rc5"/>
        <vers num="2.6.18" edition="rc6"/>
        <vers num="2.6.18" edition="rc7"/>
        <vers num="2.6.18.1"/>
        <vers num="2.6.18.2"/>
        <vers num="2.6.18.3"/>
        <vers num="2.6.18.4"/>
        <vers num="2.6.18.5"/>
        <vers num="2.6.18.6"/>
        <vers num="2.6.18.7"/>
        <vers num="2.6.18.8"/>
        <vers num="2.6.19"/>
        <vers num="2.6.19.1"/>
        <vers num="2.6.19.2"/>
        <vers num="2.6.19.3"/>
        <vers num="2.6.19.4"/>
        <vers num="2.6.19.5"/>
        <vers num="2.6.19.6"/>
        <vers num="2.6.19.7"/>
        <vers num="2.6.2"/>
        <vers num="2.6.20"/>
        <vers num="2.6.20.1"/>
        <vers num="2.6.20.10"/>
        <vers num="2.6.20.11"/>
        <vers num="2.6.20.12"/>
        <vers num="2.6.20.13"/>
        <vers num="2.6.20.14"/>
        <vers num="2.6.20.15"/>
        <vers num="2.6.20.16"/>
        <vers num="2.6.20.17"/>
        <vers num="2.6.20.18"/>
        <vers num="2.6.20.19"/>
        <vers num="2.6.20.2"/>
        <vers num="2.6.20.20"/>
        <vers num="2.6.20.21"/>
        <vers num="2.6.20.3"/>
        <vers num="2.6.20.4"/>
        <vers num="2.6.20.5"/>
        <vers num="2.6.20.6"/>
        <vers num="2.6.20.7"/>
        <vers num="2.6.20.8"/>
        <vers num="2.6.20.9"/>
        <vers num="2.6.21"/>
        <vers num="2.6.21.1"/>
        <vers num="2.6.21.2"/>
        <vers num="2.6.21.3"/>
        <vers num="2.6.21.4"/>
        <vers num="2.6.21.5"/>
        <vers num="2.6.21.6"/>
        <vers num="2.6.21.7"/>
        <vers num="2.6.22"/>
        <vers num="2.6.22.1"/>
        <vers num="2.6.22.10"/>
        <vers num="2.6.22.11"/>
        <vers num="2.6.22.12"/>
        <vers num="2.6.22.13"/>
        <vers num="2.6.22.14"/>
        <vers num="2.6.22.15"/>
        <vers num="2.6.22.16"/>
        <vers num="2.6.22.17"/>
        <vers num="2.6.22.18"/>
        <vers prev="1" num="2.6.22.19"/>
        <vers num="2.6.22.2"/>
        <vers num="2.6.22.3"/>
        <vers num="2.6.22.4"/>
        <vers num="2.6.22.5"/>
        <vers num="2.6.22.6"/>
        <vers num="2.6.22.7"/>
        <vers num="2.6.22.8"/>
        <vers num="2.6.22.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0009" published="2010-04-05" name="CVE-2010-0009" modified="2010-06-07" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Apache CouchDB 0.8.0 through 0.10.1 allows remote attackers to obtain sensitive information by measuring the completion time of operations that verify (1) hashes or (2) passwords.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://couchdb.apache.org/security.html" source="CONFIRM" patch="1" adv="1">http://couchdb.apache.org/security.html</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=578572" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=578572</ref>
      <ref url="http://www.securityfocus.com/bid/39116" source="BID">39116</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510427/100/0/threaded" source="BUGTRAQ">20100331 [SECURITY] CVE-2008-2370: Apache CouchDB Timing Attack Vulnerability</ref>
      <ref url="http://www.osvdb.org/63350" source="OSVDB">63350</ref>
      <ref url="http://secunia.com/advisories/39146" source="SECUNIA" adv="1">39146</ref>
      <ref url="http://archives.neohapsis.com/archives/bugtraq/2010-03/0267.html" source="BUGTRAQ">20100331 [SECURITY] CVE-2008-2370: Apache CouchDB Timing Attack Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apache" name="couchdb">
        <vers num="0.10.0"/>
        <vers num="0.10.1"/>
        <vers num="0.8.0"/>
        <vers num="0.8.1"/>
        <vers num="0.9.0"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0010" published="2010-02-02" name="CVE-2010-0010" modified="2011-09-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55941" source="XF">modproxy-approxysendfb-bo(55941)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1001" source="VUPEN">ADV-2010-1001</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0240" source="VUPEN" adv="1">ADV-2010-0240</ref>
      <ref url="http://www.securitytracker.com/id?1023533" source="SECTRACK">1023533</ref>
      <ref url="http://www.securityfocus.com/bid/37966" source="BID">37966</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509185/100/0/threaded" source="BUGTRAQ">20100127 Mod_proxy from apache 1.3 - Integer overflow which causes heap overflow.</ref>
      <ref url="http://site.pi3.com.pl/adv/mod_proxy.txt" source="MISC">http://site.pi3.com.pl/adv/mod_proxy.txt</ref>
      <ref url="http://secunia.com/advisories/39656" source="SECUNIA">39656</ref>
      <ref url="http://secunia.com/advisories/38319" source="SECUNIA" adv="1">38319</ref>
      <ref url="http://packetstormsecurity.org/1001-exploits/modproxy-overflow.txt" source="MISC">http://packetstormsecurity.org/1001-exploits/modproxy-overflow.txt</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7923" source="OVAL">oval:org.mitre.oval:def:7923</ref>
      <ref url="http://marc.info/?l=bugtraq&amp;m=130497311408250&amp;w=2" source="HP">SSRT090208</ref>
      <ref url="http://marc.info/?l=bugtraq&amp;m=130497311408250&amp;w=2" source="HP">HPSBOV02683</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.html" source="SUSE">SUSE-SR:2010:010</ref>
      <ref url="http://httpd.apache.org/dev/dist/CHANGES_1.3.42" source="CONFIRM">http://httpd.apache.org/dev/dist/CHANGES_1.3.42</ref>
      <ref url="http://blog.pi3.com.pl/?p=69" source="MISC">http://blog.pi3.com.pl/?p=69</ref>
      <ref url="http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0589.html" source="FULLDISC">20100127 Mod_proxy from apache 1.3 - Integer overflow which causes heap overflow.</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apache" name="http_server">
        <vers num="0.8.11"/>
        <vers num="0.8.14"/>
        <vers num="1.0"/>
        <vers num="1.0.3"/>
        <vers num="1.0.5"/>
        <vers num="1.1"/>
        <vers num="1.2"/>
        <vers num="1.2.4"/>
        <vers num="1.2.5"/>
        <vers num="1.2.6"/>
        <vers num="1.3"/>
        <vers num="1.3.0"/>
        <vers num="1.3.1"/>
        <vers num="1.3.10"/>
        <vers num="1.3.11"/>
        <vers num="1.3.12"/>
        <vers num="1.3.13"/>
        <vers num="1.3.14"/>
        <vers num="1.3.15"/>
        <vers num="1.3.17"/>
        <vers num="1.3.18"/>
        <vers num="1.3.19"/>
        <vers num="1.3.2"/>
        <vers num="1.3.20"/>
        <vers num="1.3.22"/>
        <vers num="1.3.23"/>
        <vers num="1.3.24"/>
        <vers num="1.3.25"/>
        <vers num="1.3.26"/>
        <vers num="1.3.27"/>
        <vers num="1.3.28"/>
        <vers num="1.3.29"/>
        <vers num="1.3.3"/>
        <vers num="1.3.30"/>
        <vers num="1.3.31"/>
        <vers num="1.3.32"/>
        <vers num="1.3.33"/>
        <vers num="1.3.34"/>
        <vers num="1.3.35"/>
        <vers num="1.3.36"/>
        <vers num="1.3.37"/>
        <vers num="1.3.38"/>
        <vers num="1.3.39"/>
        <vers num="1.3.4"/>
        <vers num="1.3.40"/>
        <vers prev="1" num="1.3.41"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0011" published="2010-02-25" name="CVE-2010-0011" modified="2010-04-28" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">The eval_js function in uzbl-core.c in Uzbl before 2010.01.05 exposes the run method of the Uzbl object, which allows remote attackers to execute arbitrary commands via JavaScript code.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://github.com/Dieterbe/uzbl/downloads" source="CONFIRM" patch="1">http://github.com/Dieterbe/uzbl/downloads</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56612" source="XF">uzbl-evaljs-command-execution(56612)</ref>
      <ref url="http://www.uzbl.org/news.php?id=22" source="CONFIRM">http://www.uzbl.org/news.php?id=22</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/06/3" source="MLIST">[oss-security] 20100106 Re: CVE request - uzbl remote code execution</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/06/1" source="MLIST">[oss-security] 20100106 CVE request - uzbl remote code execution</ref>
      <ref url="http://lists.uzbl.org/pipermail/uzbl-dev-uzbl.org/2010-January/000586.html" source="MLIST">[uzbl-dev] 20100102 Fw: Uzbl: security issue</ref>
      <ref url="http://github.com/Dieterbe/uzbl/commit/1958b52d41cba96956dc1995660de49525ed1047" source="CONFIRM">http://github.com/Dieterbe/uzbl/commit/1958b52d41cba96956dc1995660de49525ed1047</ref>
    </refs>
    <vuln_soft>
      <prod vendor="uzbl" name="uzbl">
        <vers prev="1" num="2009.12.22"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0012" published="2010-01-08" name="CVE-2010-0012" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Directory traversal vulnerability in libtransmission/metainfo.c in Transmission 1.22, 1.34, 1.75, and 1.76 allows remote attackers to overwrite arbitrary files via a .. (dot dot) in a pathname within a .torrent file.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://launchpad.net/bugs/500625" source="CONFIRM">https://launchpad.net/bugs/500625</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55454" source="XF">transmission-name-directory-traversal(55454)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0071" source="VUPEN">ADV-2010-0071</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/06/4" source="MLIST">[oss-security] 20100106 Re: CVE Request: Transmission</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/06/2" source="MLIST">[oss-security] 20100106 CVE Request: Transmission</ref>
      <ref url="http://www.mail-archive.com/debian-devel-changes@lists.debian.org/msg264483.html" source="MLIST">[debian-devel-changes] 20100105 Accepted transmission 1.77-1 (source all amd64)</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1967" source="DEBIAN">DSA-1967</ref>
      <ref url="http://trac.transmissionbt.com/wiki/Changes#version-1.77" source="CONFIRM">http://trac.transmissionbt.com/wiki/Changes#version-1.77</ref>
      <ref url="http://trac.transmissionbt.com/changeset/9829/" source="CONFIRM">http://trac.transmissionbt.com/changeset/9829/</ref>
      <ref url="http://security.debian.org/pool/updates/main/t/transmission/transmission_1.22-1+lenny2.diff.gz" source="CONFIRM">http://security.debian.org/pool/updates/main/t/transmission/transmission_1.22-1+lenny2.diff.gz</ref>
      <ref url="http://secunia.com/advisories/38005" source="SECUNIA">38005</ref>
      <ref url="http://secunia.com/advisories/37993" source="SECUNIA">37993</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html" source="SUSE">SUSE-SA:2010:008</ref>
    </refs>
    <vuln_soft>
      <prod vendor="transmissionbt" name="transmission">
        <vers num="1.22"/>
        <vers num="1.34"/>
        <vers num="1.75"/>
        <vers num="1.76"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0013" published="2010-01-09" name="CVE-2010-0013" modified="2013-01-04" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Directory traversal vulnerability in slp.c in the MSN protocol plugin in libpurple in Pidgin 2.6.4 and Adium 1.3.8 allows remote attackers to read arbitrary files via a .. (dot dot) in an application/x-msnmsgrp2p MSN emoticon (aka custom smiley) request, a related issue to CVE-2004-0122.  NOTE: it could be argued that this is resultant from a vulnerability in which an emoticon download request is processed even without a preceding text/x-mms-emoticon message that announced availability of the emoticon.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=552483" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=552483</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1020" source="VUPEN">ADV-2010-1020</ref>
      <ref url="http://www.vupen.com/english/advisories/2009/3663" source="VUPEN" adv="1">ADV-2009-3663</ref>
      <ref url="http://www.vupen.com/english/advisories/2009/3662" source="VUPEN" adv="1">ADV-2009-3662</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/07/2" source="MLIST">[oss-security] 20100107 Re: CVE request - pidgin MSN arbitrary file upload</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/07/1" source="MLIST">[oss-security] 20100107 Re: CVE request - pidgin MSN arbitrary file upload</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/02/1" source="MLIST">[oss-security] 20100102 CVE request - pidgin MSN arbitrary file upload</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:085" source="MANDRIVA">MDVSA-2010:085</ref>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-77-1022203.1-1" source="SUNALERT">1022203</ref>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-277450-1" source="SUNALERT">277450</ref>
      <ref url="http://secunia.com/advisories/38915" source="SECUNIA">38915</ref>
      <ref url="http://secunia.com/advisories/37961" source="SECUNIA">37961</ref>
      <ref url="http://secunia.com/advisories/37954" source="SECUNIA" adv="1">37954</ref>
      <ref url="http://secunia.com/advisories/37953" source="SECUNIA" adv="1">37953</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10333" source="OVAL">oval:org.mitre.oval:def:10333</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html" source="SUSE">SUSE-SR:2010:006</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/033848.html" source="FEDORA">FEDORA-2010-0429</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/033771.html" source="FEDORA">FEDORA-2010-0368</ref>
      <ref url="http://events.ccc.de/congress/2009/Fahrplan/events/3596.en.html" source="MISC">http://events.ccc.de/congress/2009/Fahrplan/events/3596.en.html</ref>
      <ref url="http://developer.pidgin.im/viewmtn/revision/diff/3d02401cf232459fc80c0837d31e05fae7ae5467/with/c64a1adc8bda2b4aeaae1f273541afbc4f71b810/libpurple/protocols/msn/slp.c" source="CONFIRM">http://developer.pidgin.im/viewmtn/revision/diff/3d02401cf232459fc80c0837d31e05fae7ae5467/with/c64a1adc8bda2b4aeaae1f273541afbc4f71b810/libpurple/protocols/msn/slp.c</ref>
      <ref url="http://d.pidgin.im/viewmtn/revision/info/c64a1adc8bda2b4aeaae1f273541afbc4f71b810" source="CONFIRM">http://d.pidgin.im/viewmtn/revision/info/c64a1adc8bda2b4aeaae1f273541afbc4f71b810</ref>
      <ref url="http://d.pidgin.im/viewmtn/revision/info/4be2df4f72bd8a55cdae7f2554b73342a497c92f" source="MISC">http://d.pidgin.im/viewmtn/revision/info/4be2df4f72bd8a55cdae7f2554b73342a497c92f</ref>
      <ref url="http://d.pidgin.im/viewmtn/revision/info/3d02401cf232459fc80c0837d31e05fae7ae5467" source="MISC">http://d.pidgin.im/viewmtn/revision/info/3d02401cf232459fc80c0837d31e05fae7ae5467</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adium" name="adium">
        <vers num="1.3.8"/>
      </prod>
      <prod vendor="pidgin" name="pidgin">
        <vers num="2.6.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0014" published="2010-01-14" name="CVE-2010-0014" modified="2010-01-15" CVSS_version="2.0" CVSS_vector="(AV:L/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="3.7" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="1.9" CVSS_base_score="3.7">
    <desc>
      <descript source="cve">System Security Services Daemon (SSSD) before 1.0.1, when the krb5 auth_provider is configured but the KDC is unreachable, allows physically proximate attackers to authenticate, via an arbitrary password, to the screen-locking program on a workstation that has any user's Kerberos ticket-granting ticket (TGT); and might allow remote attackers to bypass intended access restrictions via vectors involving an arbitrary password in conjunction with a valid TGT.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://fedorahosted.org/sssd/wiki/Releases/Notes-1.0.1" source="CONFIRM" patch="1">https://fedorahosted.org/sssd/wiki/Releases/Notes-1.0.1</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=553233" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=553233</ref>
      <ref url="http://www.securityfocus.com/bid/37747" source="BID">37747</ref>
      <ref url="http://secunia.com/advisories/38160" source="SECUNIA" adv="1">38160</ref>
    </refs>
    <vuln_soft>
      <prod vendor="fedoraproject" name="sssd">
        <vers num="0.2.1"/>
        <vers num="0.3.0"/>
        <vers num="0.3.1"/>
        <vers num="0.3.2"/>
        <vers num="0.3.3"/>
        <vers num="0.4.0"/>
        <vers num="0.4.1"/>
        <vers num="0.5.0"/>
        <vers num="0.6.0"/>
        <vers num="0.6.1"/>
        <vers num="0.7.0"/>
        <vers num="0.7.1"/>
        <vers num="0.99.0"/>
        <vers num="0.99.1"/>
        <vers prev="1" num="1.0.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0015" published="2010-01-14" name="CVE-2010-0015" modified="2010-06-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">nis/nss_nis/nis-pwd.c in the GNU C Library (aka glibc or libc6) 2.7 and Embedded GLIBC (EGLIBC) 2.10.2 adds information from the passwd.adjunct.byname map to entries in the passwd map, which allows remote attackers to obtain the encrypted passwords of NIS accounts by calling the getpwnam function.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/11/6" source="MLIST">[oss-security] 20100111 Re: CVE id request: GNU libc: NIS shadow password leakage</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/08/2" source="MLIST">[oss-security] 20100109 Re: CVE id request: GNU libc: NIS shadow password leakage</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/08/1" source="MLIST">[oss-security] 20100108 Re: CVE id request: GNU libc: NIS shadow password leakage</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/07/3" source="MLIST">[oss-security] 20100107 CVE id request: GNU libc: NIS shadow password leakage</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:112" source="MANDRIVA">MDVSA-2010:112</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:111" source="MANDRIVA">MDVSA-2010:111</ref>
      <ref url="http://svn.debian.org/viewsvn/pkg-glibc/glibc-package/trunk/debian/patches/any/submitted-nis-shadow.diff?revision=4062&amp;view=markup" source="CONFIRM">http://svn.debian.org/viewsvn/pkg-glibc/glibc-package/trunk/debian/patches/any/submitted-nis-shadow.diff?revision=4062&amp;view=markup</ref>
      <ref url="http://sourceware.org/bugzilla/show_bug.cgi?id=11134" source="MISC">http://sourceware.org/bugzilla/show_bug.cgi?id=11134</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126320570505651&amp;w=2" source="MLIST">[oss-security] 20100111 Re: CVE id request: GNU libc: NIS shadow password leakage</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126320356003425&amp;w=2" source="MLIST">[oss-security] 20100111 Re: CVE id request: GNU libc: NIS shadow password leakage</ref>
      <ref url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=560333" source="CONFIRM">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=560333</ref>
    </refs>
    <vuln_soft>
      <prod vendor="gnu" name="glibc">
        <vers num="2.10.2"/>
        <vers num="2.7"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0016" published="2010-02-10" name="CVE-2010-0016" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">The SMB client implementation in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly validate response fields, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted response, aka "SMB Client Pool Corruption Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-006.mspx" source="MS">MS10-006</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8278" source="OVAL">oval:org.mitre.oval:def:8278</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="-" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:professional_x64"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:home"/>
        <vers num="-" edition="sp3"/>
        <vers num="-" edition="sp3:home"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0017" published="2010-02-10" name="CVE-2010-0017" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Race condition in the SMB client implementation in Microsoft Windows Server 2008 R2 and Windows 7 allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code, and in the SMB client implementation in Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 allows local users to gain privileges, via a crafted SMB Negotiate response, aka "SMB Client Race Condition Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-006.mspx" source="MS" patch="1" adv="1">MS10-006</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8298" source="OVAL">oval:org.mitre.oval:def:8298</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="-" edition="r2"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0018" published="2010-01-13" name="CVE-2010-0018" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer overflow in the Embedded OpenType (EOT) Font Engine (t2embed.dll) in Microsoft Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows remote attackers to execute arbitrary code via compressed data that represents a crafted EOT font, aka "Microtype Express Compressed Fonts Integer Flaw in the LZCOMP Decompressor Vulnerability."</descript>
      <descript source="nvd">Per: http://www.microsoft.com/technet/security/Bulletin/MS10-001.mspx


This security update is rated Critical for Microsoft Windows 2000, and is rated Low for Windows XP, Windows Server 2003, Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2. For more information, see the subsection, Affected and Non-Affected Software, in this section.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012B.html" source="CERT">TA10-012B</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-001.mspx" source="MS" patch="1" adv="1">MS10-001</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0095" source="VUPEN" adv="1">ADV-2010-0095</ref>
      <ref url="http://www.securitytracker.com/id?1023432" source="SECTRACK">1023432</ref>
      <ref url="http://www.securityfocus.com/bid/37671" source="BID">37671</ref>
      <ref url="http://secunia.com/advisories/35457" source="SECUNIA" adv="1">35457</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8324" source="OVAL">oval:org.mitre.oval:def:8324</ref>
      <ref url="http://osvdb.org/61651" source="OSVDB">61651</ref>
      <ref url="http://blogs.technet.com/srd/archive/2010/01/12/ms10-001-font-file-decompression-vulnerability.aspx" source="MISC">http://blogs.technet.com/srd/archive/2010/01/12/ms10-001-font-file-decompression-vulnerability.aspx</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0019" published="2010-08-11" name="CVE-2010-0019" modified="2010-09-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Silverlight 3 before 3.0.50611.0 on Windows, and before 3.0.41130.0 on Mac OS X, does not properly handle pointers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and framework outage) via a crafted web site, aka "Microsoft Silverlight Memory Corruption Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-222A.html" source="CERT">TA10-222A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-060.mspx" source="MS" patch="1" adv="1">MS10-060</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="silverlight">
        <vers num="3.0.40624.00"/>
        <vers num="3.0.40723.0"/>
        <vers prev="1" num="3.0.40818.0"/>
        <vers prev="1" num="3.0.50106.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0020" published="2010-02-10" name="CVE-2010-0020" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:C/I:C/A:C)" CVSS_score="9.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.0" CVSS_base_score="9.0">
    <desc>
      <descript source="cve">The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate request fields, which allows remote authenticated users to execute arbitrary code via a malformed request, aka "SMB Pathname Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-012.mspx" source="MS" patch="1" adv="1">MS10-012</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8438" source="OVAL">oval:org.mitre.oval:def:8438</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:pro_x64"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0021" published="2010-02-10" name="CVE-2010-0021" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:C)" CVSS_score="7.1" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="8.6" CVSS_base_score="7.1">
    <desc>
      <descript source="cve">Multiple race conditions in the SMB implementation in the Server service in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allow remote attackers to cause a denial of service (system hang) via a crafted (1) SMBv1 or (2) SMBv2 Negotiate packet, aka "SMB Memory Corruption Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-012.mspx" source="MS" patch="1" adv="1">MS10-012</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8524" source="OVAL">oval:org.mitre.oval:def:8524</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:pro_x64"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0022" published="2010-02-10" name="CVE-2010-0022" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate the share and servername fields in SMB packets, which allows remote attackers to cause a denial of service (system hang) via a crafted packet, aka "SMB Null Pointer Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-012.mspx" source="MS" patch="1" adv="1">MS10-012</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8314" source="OVAL">oval:org.mitre.oval:def:8314</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:pro_x64"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0023" published="2010-02-10" name="CVE-2010-0023" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="6.9" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.4" CVSS_base_score="6.9">
    <desc>
      <descript source="cve">The Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly kill processes after a logout, which allows local users to obtain sensitive information or gain privileges via a crafted application that continues to execute throughout the logout of one user and the login session of the next user, aka "CSRSS Local Privilege Elevation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <local/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-011.mspx" source="MS" patch="1" adv="1">MS10-011</ref>
      <ref url="http://secunia.com/advisories/38509" source="SECUNIA">38509</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8304" source="OVAL">oval:org.mitre.oval:def:8304</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0024" published="2010-04-14" name="CVE-2010-0024" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The SMTP component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Server 2008 Gold, SP2, and R2, and Exchange Server 2003 SP2, does not properly parse MX records, which allows remote DNS servers to cause a denial of service (service outage) via a crafted response to a DNS MX record query, aka "SMTP Server MX Record Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-024.mspx" source="MS" patch="1" adv="1">MS10-024</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7067" source="OVAL">oval:org.mitre.oval:def:7067</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="exchange_server">
        <vers num="2000" edition="sp3"/>
        <vers num="2003" edition="sp2"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2010" edition="-"/>
        <vers num="2010" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":x64"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
        <vers num="-" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0025" published="2010-04-14" name="CVE-2010-0025" modified="2011-07-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The SMTP component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Server 2008 Gold, SP2, and R2, and Exchange Server 2000 SP3, does not properly allocate memory for SMTP command replies, which allows remote attackers to read fragments of e-mail messages by sending a series of invalid commands and then sending a STARTTLS command, aka "SMTP Memory Allocation Vulnerability."</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-024.mspx" source="MS" patch="1" adv="1">MS10-024</ref>
      <ref url="http://secunia.com/advisories/39253" source="SECUNIA">39253</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:12175" source="OVAL">oval:org.mitre.oval:def:12175</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="exchange_server">
        <vers num="2000" edition="sp3"/>
        <vers num="2003" edition="sp2"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2010" edition="-"/>
        <vers num="2010" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":x64"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
        <vers num="-" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0026" published="2010-02-10" name="CVE-2010-0026" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:H/Au:N/C:N/I:N/A:C)" CVSS_score="4.0" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="1.9" CVSS_base_score="4.0">
    <desc>
      <descript source="cve">The Hyper-V server implementation in Microsoft Windows Server 2008 Gold, SP2, and R2 on the x64 platform allows guest OS users to cause a denial of service (host OS hang) via a crafted application that executes a malformed series of machine instructions, aka "Hyper-V Instruction Set Validation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-010.mspx" source="MS" adv="1">MS10-010</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8006" source="OVAL">oval:org.mitre.oval:def:8006</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":x64"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0027" published="2010-01-22" name="CVE-2010-0027" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, does not properly process input parameters, which allows remote attackers to execute arbitrary local programs via a crafted URL, aka "URL Validation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-007.mspx" source="MS" patch="1" adv="1">MS10-007</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS" patch="1" adv="1">MS10-002</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55773" source="XF">ie-url-code-execution(55773)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-016/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-016/</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509470/100/0/threaded" source="BUGTRAQ">20100209 ZDI-10-016: Microsoft Windows ShellExecute Improper Sanitization Code Execution Vulnerability</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8464" source="OVAL">oval:org.mitre.oval:def:8464</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="5.01" edition="sp4"/>
        <vers num="6" edition="sp1"/>
        <vers num="7"/>
        <vers num="7.0"/>
        <vers num="7.0.5730" edition="unknown"/>
        <vers num="7.0.5730" edition="unknown:gold"/>
        <vers num="7.0.5730.11"/>
        <vers num="7.00.5730.1100"/>
        <vers num="7.00.6000.16386"/>
        <vers num="7.00.6000.16441"/>
        <vers num="8"/>
        <vers num="8.0.6001"/>
      </prod>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":x32"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0028" published="2010-02-10" name="CVE-2010-0028" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted JPEG (.JPG) file, aka "MS Paint Integer Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-005.mspx" source="MS" patch="1" adv="1">MS10-005</ref>
      <ref url="http://secunia.com/advisories/36634" source="SECUNIA">36634</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8429" source="OVAL">oval:org.mitre.oval:def:8429</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0029" published="2010-02-10" name="CVE-2010-0029" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Microsoft Office PowerPoint 2002 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "PowerPoint File Path Handling Buffer Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-004.mspx" source="MS" patch="1" adv="1">MS10-004</ref>
      <ref url="http://www.securitytracker.com/id?1023563" source="SECTRACK">1023563</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8410" source="OVAL">oval:org.mitre.oval:def:8410</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="powerpoint">
        <vers num="2002" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0030" published="2010-02-10" name="CVE-2010-0030" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "PowerPoint LinkedSlideAtom Heap Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-004.mspx" source="MS" patch="1" adv="1">MS10-004</ref>
      <ref url="http://www.securitytracker.com/id?1023563" source="SECTRACK">1023563</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8050" source="OVAL">oval:org.mitre.oval:def:8050</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="powerpoint">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0031" published="2010-02-10" name="CVE-2010-0031" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Array index error in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3, and PowerPoint in Office 2004 for Mac, allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "PowerPoint OEPlaceholderAtom 'placementId' Invalid Array Indexing Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-004.mspx" source="MS" patch="1" adv="1">MS10-004</ref>
      <ref url="http://www.securitytracker.com/id?1023563" source="SECTRACK">1023563</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8081" source="OVAL">oval:org.mitre.oval:def:8081</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="powerpoint">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0032" published="2010-02-10" name="CVE-2010-0032" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "OEPlaceholderAtom Use After Free Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-004.mspx" source="MS" patch="1" adv="1">MS10-004</ref>
      <ref url="http://www.securitytracker.com/id?1023563" source="SECTRACK">1023563</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8303" source="OVAL">oval:org.mitre.oval:def:8303</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="powerpoint">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0033" published="2010-02-10" name="CVE-2010-0033" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Stack-based buffer overflow in Microsoft Office PowerPoint 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "PowerPoint Viewer TextBytesAtom Record Stack Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-004.mspx" source="MS" patch="1" adv="1">MS10-004</ref>
      <ref url="http://www.securitytracker.com/id?1023563" source="SECTRACK">1023563</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7711" source="OVAL">oval:org.mitre.oval:def:7711</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="powerpoint">
        <vers num="2003" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0034" published="2010-02-10" name="CVE-2010-0034" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Stack-based buffer overflow in Microsoft Office PowerPoint 2003 SP3 allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka "Office PowerPoint Viewer TextCharsAtom Record Stack Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-004.mspx" source="MS" patch="1" adv="1">MS10-004</ref>
      <ref url="http://www.securitytracker.com/id?1023563" source="SECTRACK">1023563</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8268" source="OVAL">oval:org.mitre.oval:def:8268</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="powerpoint">
        <vers num="2003" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0035" published="2010-02-10" name="CVE-2010-0035" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:N/I:N/A:C)" CVSS_score="6.3" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="6.8" CVSS_base_score="6.3">
    <desc>
      <descript source="cve">The Key Distribution Center (KDC) in Kerberos in Microsoft Windows 2000 SP4, Server 2003 SP2, and Server 2008 Gold and SP2, when a trust relationship with a non-Windows Kerberos realm exists, allows remote authenticated users to cause a denial of service (NULL pointer dereference and domain controller outage) via a crafted Ticket Granting Ticket (TGT) renewal request, aka "Kerberos Null Pointer Dereference Vulnerability."</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.microsoft.com/technet/security/Bulletin/MS10-014.mspx


"This vulnerability only affects domain controllers. Servers that do not perform the role of domain controllers are not affected."</impact>
    </impacts>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-014.mspx" source="MS" patch="1" adv="1">MS10-014</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8428" source="OVAL">oval:org.mitre.oval:def:8428</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
        <vers num="" edition="sp4:server"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0036" published="2010-01-20" name="CVE-2010-0036" modified="2010-02-05" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in CoreAudio in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MP4 audio file.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/37868" source="BID" patch="1">37868</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55746" source="XF">macos-coreaudio-mp4-bo(55746)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0173" source="VUPEN">ADV-2010-0173</ref>
      <ref url="http://www.securitytracker.com/id?1023472" source="SECTRACK">1023472</ref>
      <ref url="http://support.apple.com/kb/HT4013" source="CONFIRM">http://support.apple.com/kb/HT4013</ref>
      <ref url="http://support.apple.com/kb/HT4004" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4004</ref>
      <ref url="http://secunia.com/advisories/38241" source="SECUNIA">38241</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jan/msg00000.html" source="APPLE">APPLE-SA-2010-01-19-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Feb/msg00000.html" source="APPLE">APPLE-SA-2010-02-02-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5.8"/>
        <vers num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5.8"/>
        <vers num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0037" published="2010-01-20" name="CVE-2010-0037" modified="2010-01-23" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Image RAW in Apple Mac OS X 10.5.8 and 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted DNG image.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55747" source="XF">macos-imageraw-dng-bo(55747)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0173" source="VUPEN">ADV-2010-0173</ref>
      <ref url="http://www.securitytracker.com/id?1023473" source="SECTRACK">1023473</ref>
      <ref url="http://www.securityfocus.com/bid/37869" source="BID">37869</ref>
      <ref url="http://support.apple.com/kb/HT4004" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4004</ref>
      <ref url="http://secunia.com/advisories/38241" source="SECUNIA">38241</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jan/msg00000.html" source="APPLE">APPLE-SA-2010-01-19-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5.8"/>
        <vers num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5.8"/>
        <vers num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0038" published="2010-02-03" name="CVE-2010-0038" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">Recovery Mode in Apple iPhone OS 1.0 through 3.1.2, and iPhone OS for iPod touch 1.1 through 3.1.2, allows physically proximate attackers to bypass device locking, and read or modify arbitrary data, via a USB control message that triggers memory corruption.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38040" source="BID">38040</ref>
      <ref url="http://support.apple.com/kb/HT4013" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4013</ref>
      <ref url="http://osvdb.org/62128" source="OSVDB">62128</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Feb/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-02-02-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="iphone_os">
        <vers num="1.0"/>
        <vers num="1.0.0" edition="-"/>
        <vers num="1.0.0" edition="-:iphone"/>
        <vers num="1.0.1" edition="-"/>
        <vers num="1.0.1" edition="-:iphone"/>
        <vers num="1.0.2" edition="-"/>
        <vers num="1.0.2" edition="-:iphone"/>
        <vers num="1.1"/>
        <vers num="1.1.0" edition="-"/>
        <vers num="1.1.0" edition="-:ipodtouch"/>
        <vers num="1.1.0" edition="-:iphone"/>
        <vers num="1.1.1" edition="-"/>
        <vers num="1.1.1" edition="-:ipodtouch"/>
        <vers num="1.1.1" edition="-:iphone"/>
        <vers num="1.1.2" edition="-"/>
        <vers num="1.1.2" edition="-:ipodtouch"/>
        <vers num="1.1.2" edition="-:iphone"/>
        <vers num="1.1.3" edition="-"/>
        <vers num="1.1.3" edition="-:iphone"/>
        <vers num="1.1.3" edition="-:ipodtouch"/>
        <vers num="1.1.4" edition="-"/>
        <vers num="1.1.4" edition="-:ipodtouch"/>
        <vers num="1.1.4" edition="-:iphone"/>
        <vers num="1.1.5" edition="-"/>
        <vers num="1.1.5" edition="-:iphone"/>
        <vers num="1.1.5" edition="-:ipodtouch"/>
        <vers num="2.0"/>
        <vers num="2.0.0" edition="-"/>
        <vers num="2.0.0" edition="-:iphone"/>
        <vers num="2.0.0" edition="-:ipodtouch"/>
        <vers num="2.0.1" edition="-"/>
        <vers num="2.0.1" edition="-:ipodtouch"/>
        <vers num="2.0.1" edition="-:iphone"/>
        <vers num="2.0.2" edition="-"/>
        <vers num="2.0.2" edition="-:iphone"/>
        <vers num="2.0.2" edition="-:ipodtouch"/>
        <vers num="2.1" edition="-"/>
        <vers num="2.1" edition="-:ipodtouch"/>
        <vers num="2.1" edition="-:iphone"/>
        <vers num="2.1.1"/>
        <vers num="2.2" edition="-"/>
        <vers num="2.2" edition="-:iphone"/>
        <vers num="2.2" edition="-:ipodtouch"/>
        <vers num="2.2.1" edition="-"/>
        <vers num="2.2.1" edition="-:iphone"/>
        <vers num="2.2.1" edition="-:ipodtouch"/>
        <vers num="3.0" edition="-"/>
        <vers num="3.0" edition="-:ipodtouch"/>
        <vers num="3.0.1" edition="-"/>
        <vers num="3.0.1" edition="-:iphone"/>
        <vers num="3.1.2" edition="-"/>
        <vers num="3.1.2" edition="-:ipodtouch"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0039" published="2010-12-21" name="CVE-2010-0039" modified="2011-01-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:N/A:N)" CVSS_score="2.6" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="4.9" CVSS_base_score="2.6">
    <desc>
      <descript source="cve">The Application-Level Gateway (ALG) on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 modifies PORT commands in incoming FTP traffic, which allows remote attackers to use the device's IP address for arbitrary intranet TCP traffic by leveraging write access to an intranet FTP server.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4298" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4298</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Dec/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-12-16-1</ref>
      <ref url="http://www.securitytracker.com/id?1024907" source="SECTRACK">1024907</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="airport_express">
        <vers num=""/>
      </prod>
      <prod vendor="apple" name="airport_express_base_station_firmware">
        <vers num="3.84"/>
        <vers num="4.0.9"/>
        <vers num="6.1"/>
        <vers num="6.3"/>
        <vers num="7.3.2"/>
        <vers num="7.4.1"/>
        <vers prev="1" num="7.4.2"/>
      </prod>
      <prod vendor="apple" name="airport_extreme">
        <vers num=""/>
      </prod>
      <prod vendor="apple" name="airport_extreme_base_station_firmware">
        <vers num="5.5"/>
        <vers num="5.7"/>
      </prod>
      <prod vendor="apple" name="time_capsule">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0040" published="2010-03-15" name="CVE-2010-0040" modified="2010-08-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer overflow in ColorSync in Apple Safari before 4.0.5 on Windows, and iTunes before 9.1, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an image with a crafted color profile that triggers a heap-based buffer overflow.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html



ColorSync
CVE-ID:  CVE-2010-0040
Available for:  Windows 7, Vista, XP
Impact:  Viewing a maliciously crafted image with an embedded color
profile may lead to an unexpected application termination or
arbitrary code execution
Description:  An integer overflow, that could result in a heap buffer
overflow, exists in the handling of images with an embedded color
profile. Opening a maliciously crafted image with an embedded color
profile may lead to an unexpected application termination or
arbitrary code execution. The issue is addressed by performing
additional validation of color profiles. This issue does not affect
Mac OS X systems. Credit to Sebastien Renaud of VUPEN Vulnerability
Research Team for reporting this issue.
</descript>
    </desc>
    <sols>
      <sol source="nvd">Per:   http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html



'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'
</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38674" source="BID" patch="1">38674</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56826" source="XF">safari-colorsync-bo(56826)</ref>
      <ref url="http://www.securitytracker.com/id?1023706" source="SECTRACK">1023706</ref>
      <ref url="http://support.apple.com/kb/HT4105" source="CONFIRM">http://support.apple.com/kb/HT4105</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/39135" source="SECUNIA">39135</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6741" source="OVAL">oval:org.mitre.oval:def:6741</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00003.html" source="APPLE">APPLE-SA-2010-03-30-2</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0041" published="2010-03-15" name="CVE-2010-0041" modified="2010-08-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted BMP image.</descript>
      <descript source="nvd">Per:   http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html


ImageIO
CVE-ID:  CVE-2010-0041
Available for:  Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may result in sending
data from Safari's memory to the website
Description:  An uninitialized memory access issue exists in
ImageIO's handling of BMP images. Visiting a maliciously crafted
website may result in sending data from Safari's memory to the
website. This issue is addressed through improved memory handling and
additional validation of BMP images. Credit to Matthew 'j00ru'
Jurczyk of Hispasec for reporting this issue.

</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38676" source="BID" patch="1">38676</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.securitytracker.com/id?1023706" source="SECTRACK">1023706</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4105" source="CONFIRM">http://support.apple.com/kb/HT4105</ref>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/39135" source="SECUNIA">39135</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6885" source="OVAL">oval:org.mitre.oval:def:6885</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00003.html" source="APPLE">APPLE-SA-2010-03-30-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0042" published="2010-03-15" name="CVE-2010-0042" modified="2010-12-10" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated with initialized memory, which allows remote attackers to obtain potentially sensitive information from process memory via a crafted TIFF image.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html


'ImageIO
CVE-ID:  CVE-2010-0042
Available for:  Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may result in sending
data from Safari's memory to the website
Description:  An uninitialized memory access issue exists in
ImageIO's handling of TIFF images. Visiting a maliciously crafted
website may result in sending data from Safari's memory to the
website. This issue is addressed through improved memory handling and
additional validation of TIFF images. Credit to Matthew 'j00ru'
Jurczyk of Hispasec for reporting this issue.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38677" source="BID" patch="1">38677</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.securitytracker.com/id?1023706" source="SECTRACK">1023706</ref>
      <ref url="http://support.apple.com/kb/HT4456" source="CONFIRM">http://support.apple.com/kb/HT4456</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4105" source="CONFIRM">http://support.apple.com/kb/HT4105</ref>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/42314" source="SECUNIA">42314</ref>
      <ref url="http://secunia.com/advisories/39135" source="SECUNIA">39135</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7561" source="OVAL">oval:org.mitre.oval:def:7561</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html" source="APPLE">APPLE-SA-2010-11-22-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00003.html" source="APPLE">APPLE-SA-2010-03-30-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0043" published="2010-03-15" name="CVE-2010-0043" modified="2010-08-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted TIFF image.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html


'ImageIO
CVE-ID:  CVE-2010-0043
Available for:  Windows 7, Vista, XP
Impact:  Processing a maliciously crafted TIFF image may lead to an
unexpected application termination or arbitrary code execution
Description:  A memory corruption issue exists in the handling of
TIFF images. Processing a maliciously crafted TIFF image may lead to
an unexpected application termination or arbitrary code execution.
This issue is addressed through improved memory handling. Credit to
Gus Mueller of Flying Meat for reporting this issue.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38673" source="BID" patch="1">38673</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.securitytracker.com/id?1023706" source="SECTRACK">1023706</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4105" source="CONFIRM">http://support.apple.com/kb/HT4105</ref>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/39135" source="SECUNIA">39135</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6901" source="OVAL">oval:org.mitre.oval:def:6901</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00003.html" source="APPLE">APPLE-SA-2010-03-30-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0044" published="2010-03-15" name="CVE-2010-0044" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">PubSub in Apple Safari before 4.0.5 does not properly implement use of the Accept Cookies preference to block cookies, which makes it easier for remote web servers to track users by setting a cookie in a (1) RSS or (2) Atom feed.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'PubSub
CVE-ID:  CVE-2010-0044
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting or updating a feed may result in a cookie being
set, even if Safari is configured to block cookies
Description:  An implementation issue exists in the handling of
cookies set by RSS and Atom feeds. Visiting or updating a feed may
result in a cookie being set, even if Safari is configured to block
cookies via the "Accept Cookies" preference. This update addresses
the issue by respecting the preference while updating or viewing
feeds.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38675" source="BID" patch="1">38675</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56830" source="XF">safari-pubsub-security-bypass(56830)</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7051" source="OVAL">oval:org.mitre.oval:def:7051</ref>
      <ref url="http://osvdb.org/62937" source="OSVDB">62937</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0045" published="2010-03-15" name="CVE-2010-0045" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Apple Safari before 4.0.5 on Windows does not properly validate external URL schemes, which allows remote attackers to open local files and execute arbitrary code via a crafted HTML document.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

CVE-ID:  CVE-2010-0045
Available for:  Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to arbitrary
code execution
Description:  An issue in Safari's handling of external URL schemes
may cause a local file to be opened in response to a URL encountered
on a web page. Visiting a maliciously crafted website may lead to
arbitrary code execution. This update addresses the issue through
improved validation of external URLs. This issue does not affect Mac
OS X systems. Credit to Billy Rios and Microsoft Vulnerability
Research (MSVR) for reporting this issue.
</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.securitytracker.com/id?1023706" source="SECTRACK">1023706</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6817" source="OVAL">oval:org.mitre.oval:def:6817</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0" edition="beta"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0046" published="2010-03-15" name="CVE-2010-0046" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted format arguments.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'WebKit
CVE-ID:  CVE-2010-0046
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A memory corruption issue exists in WebKit's handling
of CSS format() arguments. Visiting a maliciously crafted website may
lead to an unexpected application termination or arbitrary code
execution. This issue is addressed through improved handling of CSS
format() arguments. Credit to Robert Swiecki of Google Inc. for
reporting this issue.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7053" source="OVAL">oval:org.mitre.oval:def:7053</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0047" published="2010-03-15" name="CVE-2010-0047" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to "HTML object element fallback content."</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'WebKit
CVE-ID:  CVE-2010-0047
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in the handling of HTML
object element fallback content. Visiting a maliciously crafted
website may lead to an unexpected application termination or
arbitrary code execution. This issue is addressed through improved
memory reference tracking. Credit to wushi of team509, working with
TippingPoint's Zero Day Initiative for reporting this issue.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6882" source="OVAL">oval:org.mitre.oval:def:6882</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0048" published="2010-03-15" name="CVE-2010-0048" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted XML document.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

CVE-ID:  CVE-2010-0048
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in WebKit's parsing of
XML documents. Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution. This
issue is addressed through improved memory reference tracking.
</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID">38671</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7135" source="OVAL">oval:org.mitre.oval:def:7135</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0" edition="beta"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0049" published="2010-03-15" name="CVE-2010-0049" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via HTML elements with right-to-left (RTL) text directionality.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.

CVE-ID:  CVE-2010-0049
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in the handling of HTML
elements containing right-to-left displayed text. Visiting a
maliciously crafted website may lead to an unexpected application
termination or arbitrary code execution. This issue is addressed
through improved memory reference tracking. Credit to wushi&amp;Z of
team509 for reporting this issue.
</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6810" source="OVAL">oval:org.mitre.oval:def:6810</ref>
      <ref url="http://osvdb.org/62942" source="OSVDB">62942</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=863" source="IDEFENSE">20100311 Multiple Vendor WebKit HTML Element Use After Free Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0" edition="beta"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0050" published="2010-03-15" name="CVE-2010-0050" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an HTML document with improperly nested tags.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html


'WebKit
CVE-ID:  CVE-2010-0050
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in WebKit's handling of
incorrectly nested HTML tags. Visiting a maliciously crafted website
may lead to an unexpected application termination or arbitrary code
execution. This issue is addressed through improved memory reference
tracking. Credit to wushi&amp;Z of team509 working with TippingPoint's
Zero Day Initiative for reporting this issue.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56836" source="XF">safari-nested-html-code-exec(56836)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7587" source="OVAL">oval:org.mitre.oval:def:7587</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0051" published="2010-03-15" name="CVE-2010-0051" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">WebKit in Apple Safari before 4.0.5 does not properly validate the cross-origin loading of stylesheets, which allows remote attackers to obtain sensitive information via a crafted HTML document.  NOTE: this might overlap CVE-2010-0651.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'WebKit
CVE-ID:  CVE-2010-0051
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to the
disclosure of sensitive information
Description:  An implementation issue exists in WebKit's handling of
cross-origin stylesheet requests. Visiting a maliciously crafted
website may disclose the content of protected resources on another
website. This update addresses the issue by performing additional
validation on stylesheets that are loaded during a cross-origin
request.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56837" source="XF">safari-stylesheet-info-disclosure(56837)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://websec.sv.cmu.edu/css/css.pdf" source="MISC">http://websec.sv.cmu.edu/css/css.pdf</ref>
      <ref url="http://support.apple.com/kb/HT4456" source="CONFIRM">http://support.apple.com/kb/HT4456</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/42314" source="SECUNIA">42314</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://scarybeastsecurity.blogspot.com/2009/12/generic-cross-browser-cross-domain.html" source="MISC">http://scarybeastsecurity.blogspot.com/2009/12/generic-cross-browser-cross-domain.html</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7554" source="OVAL">oval:org.mitre.oval:def:7554</ref>
      <ref url="http://osvdb.org/62944" source="OSVDB">62944</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html" source="APPLE">APPLE-SA-2010-11-22-1</ref>
      <ref url="http://code.google.com/p/chromium/issues/detail?id=9877" source="MISC">http://code.google.com/p/chromium/issues/detail?id=9877</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0052" published="2010-03-15" name="CVE-2010-0052" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to "callbacks for HTML elements."</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

CVE-ID:  CVE-2010-0052
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in WebKit's handling of
callbacks for HTML elements. Visiting a maliciously crafted website
may lead to an unexpected application termination or arbitrary code
execution. This issue is addressed through improved memory reference
tracking. Credit: Apple.

</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7403" source="OVAL">oval:org.mitre.oval:def:7403</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0" edition="beta"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0053" published="2010-03-15" name="CVE-2010-0053" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the run-in Cascading Style Sheets (CSS) display property.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

CVE-ID:  CVE-2010-0053
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in the rendering of
content with a CSS display property set to 'run-in'. Visiting a
maliciously crafted website may lead to an unexpected application
termination or arbitrary code execution. This issue is addressed
through improved memory reference tracking. Credit to wushi of
team509, working with TippingPoint's Zero Day Initiative for
reporting this issue.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID">38671</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7323" source="OVAL">oval:org.mitre.oval:def:7323</ref>
      <ref url="http://osvdb.org/62948" source="OSVDB">62948</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0" edition="beta"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0054" published="2010-03-15" name="CVE-2010-0054" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving HTML IMG elements.</descript>
      <descript source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'WebKit
CVE-ID:  CVE-2010-0054
Available for:  Mac OS X v10.4.11, Mac OS X Server v10.4.11,
Mac OS X v10.5.8, Mac OS X Server v10.5.8,
Mac OS X v10.6.1 or later, Mac OS X Server v10.6.1 or later,
Windows 7, Vista, XP
Impact:  Visiting a maliciously crafted website may lead to an
unexpected application termination or arbitrary code execution
Description:  A use-after-free issue exists in WebKit's handling of
HTML image elements. Visiting a maliciously crafted website may lead
to an unexpected application termination or arbitrary code execution.
This issue is addressed through improved memory reference tracking.
Credit: Apple.'</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html

'Safari 4.0.5 is available via the Apple Software Update application,
or Apple's Safari download site at:
http://www.apple.com/safari/download/'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38671" source="BID" patch="1">38671</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.securitytracker.com/id?1023708" source="SECTRACK">1023708</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://support.apple.com/kb/HT4225" source="CONFIRM">http://support.apple.com/kb/HT4225</ref>
      <ref url="http://support.apple.com/kb/HT4070" source="CONFIRM" adv="1">http://support.apple.com/kb/HT4070</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA">43068</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6915" source="OVAL">oval:org.mitre.oval:def:6915</ref>
      <ref url="http://osvdb.org/62949" source="OSVDB">62949</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041436.html" source="FEDORA">FEDORA-2010-8423</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041432.html" source="FEDORA">FEDORA-2010-8379</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041383.html" source="FEDORA">FEDORA-2010-8360</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Mar/msg00000.html" source="APPLE" adv="1">APPLE-SA-2010-03-11-1</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010/Jun/msg00003.html" source="APPLE">APPLE-SA-2010-06-21-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num="4.0"/>
        <vers num="4.0.0b"/>
        <vers num="4.0.1"/>
        <vers num="4.0.2"/>
        <vers num="4.0.3"/>
        <vers prev="1" num="4.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0055" published="2010-03-30" name="CVE-2010-0055" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5.8"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5.8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0056" published="2010-03-30" name="CVE-2010-0056" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Buffer overflow in Cocoa spell checking in AppKit in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted document.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5.8"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5.8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0057" published="2010-03-30" name="CVE-2010-0057" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">AFP Server in Apple Mac OS X before 10.6.3 does not prevent guest use of AFP shares when guest access is disabled, which allows remote attackers to bypass intended access restrictions via a mount request.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5"/>
        <vers num="10.5.0"/>
        <vers num="10.5.1"/>
        <vers num="10.5.2"/>
        <vers num="10.5.3"/>
        <vers num="10.5.4"/>
        <vers num="10.5.5"/>
        <vers num="10.5.6"/>
        <vers num="10.5.7"/>
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers prev="1" num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5"/>
        <vers num="10.5.0"/>
        <vers num="10.5.1"/>
        <vers num="10.5.2"/>
        <vers num="10.5.3"/>
        <vers num="10.5.4"/>
        <vers num="10.5.5"/>
        <vers num="10.5.6"/>
        <vers num="10.5.7"/>
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers prev="1" num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0058" published="2010-03-30" name="CVE-2010-0058" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:P)" CVSS_score="6.4" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="10.0" CVSS_base_score="6.4">
    <desc>
      <descript source="cve">freshclam in ClamAV in Apple Mac OS X 10.5.8 with Security Update 2009-005 has an incorrect launchd.plist ProgramArguments key and consequently does not run, which might allow remote attackers to introduce viruses into the system.</descript>
    </desc>
    <loss_types>
      <avail/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5.8"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5.8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0059" published="2010-03-30" name="CVE-2010-0059" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDM2 encoding, which triggers a buffer overflow due to inconsistent length fields, related to QDCA.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-041" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-041</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510517/100/0/threaded" source="BUGTRAQ">20100402 ZDI-10-041: Apple QuickTime QDM2/QDCA Atom Remote Code Execution Vulnerability</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6922" source="OVAL">oval:org.mitre.oval:def:6922</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00002.html" source="APPLE">APPLE-SA-2010-03-30-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0060" published="2010-03-30" name="CVE-2010-0060" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDMC encoding.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7513" source="OVAL">oval:org.mitre.oval:def:7513</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00002.html" source="APPLE">APPLE-SA-2010-03-30-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0062" published="2010-03-30" name="CVE-2010-0062" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Heap-based buffer overflow in quicktime.qts in CoreMedia and QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed .3g2 movie file with H.263 encoding that triggers an incorrect buffer length calculation.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-036" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-036</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510510/100/0/threaded" source="BUGTRAQ">20100402 ZDI-10-036: Apple QuickTime H.263 PictureHeader Remote Code Execution Vulnerability</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6626" source="OVAL">oval:org.mitre.oval:def:6626</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00002.html" source="APPLE">APPLE-SA-2010-03-30-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0063" published="2010-03-30" name="CVE-2010-0063" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X before 10.6.3 makes it easier for user-assisted remote attackers to execute arbitrary JavaScript via a web page that offers a download with a Content-Type value that is not on the list of possibly unsafe content types for Safari, as demonstrated by the values for the (1) .ibplugin and (2) .url extensions.</descript>
      <descript source="nvd">Per: http://cwe.mitre.org/data/slices/2000.html

'Incomplete Blacklist - CWE-184'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5"/>
        <vers num="10.5.0"/>
        <vers num="10.5.1"/>
        <vers num="10.5.2"/>
        <vers num="10.5.3"/>
        <vers num="10.5.4"/>
        <vers num="10.5.5"/>
        <vers num="10.5.6"/>
        <vers num="10.5.7"/>
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers prev="1" num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5"/>
        <vers num="10.5.0"/>
        <vers num="10.5.1"/>
        <vers num="10.5.2"/>
        <vers num="10.5.3"/>
        <vers num="10.5.4"/>
        <vers num="10.5.5"/>
        <vers num="10.5.6"/>
        <vers num="10.5.7"/>
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers prev="1" num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0064" published="2010-03-30" name="CVE-2010-0064" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="6.9" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.4" CVSS_base_score="6.9">
    <desc>
      <descript source="cve">DesktopServices in Apple Mac OS X 10.6 before 10.6.3 preserves file ownership during an authenticated Finder copy, which might allow local users to bypass intended disk-quota restrictions and have unspecified other impact by copying files owned by other users.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0065" published="2010-03-30" name="CVE-2010-0065" modified="2010-03-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Disk Images in Apple Mac OS X before 10.6.3 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted disk image with bzip2 compression.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://support.apple.com/kb/HT4077" source="CONFIRM" patch="1" adv="1">http://support.apple.com/kb/HT4077</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" source="APPLE" patch="1" adv="1">APPLE-SA-2010-03-29-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5"/>
        <vers num="10.5.0"/>
        <vers num="10.5.1"/>
        <vers num="10.5.2"/>
        <vers num="10.5.3"/>
        <vers num="10.5.4"/>
        <vers num="10.5.5"/>
        <vers num="10.5.6"/>
        <vers num="10.5.7"/>
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers prev="1" num="10.6.2"/>
      </prod>
      <prod vendor="apple" name="mac_os_x_server">
        <vers num="10.5"/>
        <vers num="10.5.0"/>
        <vers num="10.5.1"/>
        <vers num="10.5.2"/>
        <vers num="10.5.3"/>
        <vers num="10.5.4"/>
        <vers num="10.5.5"/>
        <vers num="10.5.6"/>
        <vers num="10.5.7"/>
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers prev="1" num="10.6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0066" published="2010-01-12" name="CVE-2010-0066" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Access Manager Identity Server component in Oracle Application Server 7.0.4.3 and 10.1.4.2 allows remote attackers to affect integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.securitytracker.com/id?1023438" source="SECTRACK">1023438</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="application_server">
        <vers num="10.1.4.2"/>
        <vers num="7.0.4.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0067" published="2010-01-12" name="CVE-2010-0067" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect confidentiality via unknown vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.securitytracker.com/id?1023438" source="SECTRACK">1023438</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="application_server">
        <vers num="10.1.2.3"/>
        <vers num="10.1.3.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0068" published="2010-01-12" name="CVE-2010-0068" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.0, 9.1, 9.2MP2, and 10.0 allows remote attackers to affect confidentiality via unknown vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="bea_product_suite">
        <vers num="10.0"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.2" edition="mp2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0069" published="2010-01-12" name="CVE-2010-0069" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 7.0, SP7, 8.1SP6, 9.0, 9.1, 9.2MP3, 10.0MP1, and 10.3.0 allows remote attackers to affect integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT" patch="1">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="bea_product_suite">
        <vers num="10.0" edition="mp1"/>
        <vers num="10.3.0"/>
        <vers num="7.0" edition="sp7"/>
        <vers num="8.1" edition="sp6"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.2" edition="mp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0070" published="2010-01-12" name="CVE-2010-0070" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.securitytracker.com/id?1023438" source="SECTRACK">1023438</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="application_server">
        <vers num="10.1.2.3"/>
        <vers num="10.1.3.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0071" published="2010-01-12" name="CVE-2010-0071" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="database_server">
        <vers num="10.1.0.5"/>
        <vers num="10.2.0.4"/>
        <vers num="11.1.0.7"/>
        <vers num="9.2.0.8"/>
        <vers num="9.2.0.8dv"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0072" published="2010-01-12" name="CVE-2010-0072" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Oracle Secure Backup component in Oracle Secure Backup 10.2.0.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is a buffer overflow in observiced.exe that allows remote attackers to execute arbitrary code via vectors related to a "reverse lookup of connections" to TCP port 10000.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="secure_backup">
        <vers num="10.2.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0073" published="2010-04-14" name="CVE-2010-0073" modified="2010-04-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, and 10.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103B.html" source="CERT">TA10-103B</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0216" source="VUPEN" patch="1" adv="1">ADV-2010-0216</ref>
      <ref url="http://www.oracle.com/technology/deploy/security/alerts/alert-cve-2010-0073.html" source="CONFIRM" patch="1" adv="1">http://www.oracle.com/technology/deploy/security/alerts/alert-cve-2010-0073.html</ref>
      <ref url="http://secunia.com/advisories/39439" source="SECUNIA">39439</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="weblogic_server">
        <vers num="10.3"/>
      </prod>
      <prod vendor="oracle" name="weblogic_server_component">
        <vers num="10.0" edition="mp1"/>
        <vers num="10.3"/>
        <vers num="6.1" edition="sp7"/>
        <vers num="7.0" edition="sp7"/>
        <vers num="8.1" edition="sp6"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.2" edition="mp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0074" published="2010-01-12" name="CVE-2010-0074" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 7.0SP7, 8.1SP6, 9.0, 9.1, 9.2MP3, 10.0MP2, and 10.3.1 allows remote attackers to affect availability via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="bea_product_suite">
        <vers num="10.0" edition="mp2"/>
        <vers num="10.3.1"/>
        <vers num="7.0" edition="sp7"/>
        <vers num="8.1" edition="sp6"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.2" edition="mp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0075" published="2010-01-12" name="CVE-2010-0075" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Oracle HRMS (Self Service) component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.1 allows remote attackers to affect confidentiality via unknown vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="e-business_suite">
        <vers num="11.5.10.2"/>
        <vers num="12.0.6"/>
        <vers num="12.1.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0076" published="2010-01-12" name="CVE-2010-0076" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:P)" CVSS_score="6.0" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="6.8" CVSS_base_score="6.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Application Express Application Builder component in Oracle Database 3.2.1.00.10 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="database">
        <vers num="3.2.1.00.10"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0077" published="2010-01-12" name="CVE-2010-0077" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_score="6.4" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="10.0" CVSS_base_score="6.4">
    <desc>
      <descript source="cve">Unspecified vulnerability in the CRM Technical Foundation (mobile) component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="e-business_suite">
        <vers num="11.5.10.2"/>
        <vers num="12.0.6"/>
        <vers num="12.1.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0078" published="2010-01-12" name="CVE-2010-0078" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.0, 9.1, 9.2MP3, 10.0MP2, and 10.3.1 allows remote attackers to affect availability via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="bea_product_suite">
        <vers num="10.0" edition="mp2"/>
        <vers num="10.3.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.2" edition="mp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0079" published="2010-01-12" name="CVE-2010-0079" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Multiple vulnerabilities in the JRockit component in BEA Product Suite R27.6.5 using JRE/JDK 1.4.2, 5, and 6 allow remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: this CVE identifier overlaps CVE-2009-3867, CVE-2009-3868, CVE-2009-3869, CVE-2009-3871, CVE-2009-3872, CVE-2009-3873, CVE-2009-3874, CVE-2009-3875, CVE-2009-3876, and CVE-2009-3877.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="bea_product_suite">
        <vers num="r27.6.5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0080" published="2010-01-12" name="CVE-2010-0080" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:N)" CVSS_score="4.9" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="6.8" CVSS_base_score="4.9">
    <desc>
      <descript source="cve">Unspecified vulnerability in the PeopleSoft Enterprise HCM - eProfile component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.9 Bundle, #21 and 9.0 Bundle #11 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-012A.html" source="CERT">TA10-012A</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpujan2010-084891.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="jd_edwards_enterpriseone">
        <vers num="8.9" edition="bundle21"/>
        <vers num="9.0" edition="bundle11"/>
      </prod>
      <prod vendor="oracle" name="peoplesoft_enterprise">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0081" published="2010-07-13" name="CVE-2010-0081" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:N/I:P/A:N)" CVSS_score="3.5" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="6.8" CVSS_base_score="3.5">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Application Server Control component in Oracle Fusion Middleware 10.1.2.3 and 10.1.4.0.1 allows remote authenticated users to affect integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="fusion_middleware">
        <vers num="10.1.2.3"/>
        <vers num="10.1.4.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0082" published="2010-04-01" name="CVE-2010-0082" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">Unspecified vulnerability in the HotSpot Server component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:13934" source="OVAL">oval:org.mitre.oval:def:13934</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11576" source="OVAL">oval:org.mitre.oval:def:11576</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.3.0" edition="update1"/>
        <vers num="1.3.0" edition="update2"/>
        <vers num="1.3.0" edition="update3"/>
        <vers num="1.3.0" edition="update4"/>
        <vers num="1.3.0" edition="update5"/>
        <vers num="1.3.1" edition="update1"/>
        <vers num="1.3.1" edition="update2"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_2"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0083" published="2010-07-13" name="CVE-2010-0083" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_score="7.6" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="4.9" CVSS_base_score="7.6">
    <desc>
      <descript source="cve">Unspecified vulnerability in Oracle OpenSolaris 8, 9, and 10 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="opensolaris">
        <vers num="10"/>
        <vers num="8"/>
        <vers num="9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0084" published="2010-04-01" name="CVE-2010-0084" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14061" source="OVAL">oval:org.mitre.oval:def:14061</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11120" source="OVAL">oval:org.mitre.oval:def:11120</ref>
      <ref url="http://osvdb.org/63482" source="OSVDB">63482</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0085" published="2010-04-01" name="CVE-2010-0085" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:13803" source="OVAL">oval:org.mitre.oval:def:13803</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10474" source="OVAL">oval:org.mitre.oval:def:10474</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.3.0" edition="update1"/>
        <vers num="1.3.0" edition="update2"/>
        <vers num="1.3.0" edition="update3"/>
        <vers num="1.3.0" edition="update4"/>
        <vers num="1.3.0" edition="update5"/>
        <vers num="1.3.1" edition="update1"/>
        <vers num="1.3.1" edition="update2"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_2"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0086" published="2010-04-13" name="CVE-2010-0086" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Portal component in Oracle Fusion Middleware 10.1.2.3 allows remote attackers to affect integrity via unknown vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103B.html" source="CERT">TA10-103B</ref>
      <ref url="http://www.securitytracker.com/id?1023869" source="SECTRACK">1023869</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuapr2010-099504.html</ref>
      <ref url="http://secunia.com/advisories/39439" source="SECUNIA">39439</ref>
    </refs>
    <vuln_soft>
      <prod vendor="oracle" name="fusion_middleware">
        <vers num="10.1.2.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0087" published="2010-04-01" name="CVE-2010-0087" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:13959" source="OVAL">oval:org.mitre.oval:def:13959</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.3.0" edition="update1"/>
        <vers num="1.3.0" edition="update2"/>
        <vers num="1.3.0" edition="update3"/>
        <vers num="1.3.0" edition="update4"/>
        <vers num="1.3.0" edition="update5"/>
        <vers num="1.3.1" edition="update1"/>
        <vers num="1.3.1" edition="update2"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_2"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0088" published="2010-04-01" name="CVE-2010-0088" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14321" source="OVAL">oval:org.mitre.oval:def:14321</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11173" source="OVAL">oval:org.mitre.oval:def:11173</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.3.0" edition="update1"/>
        <vers num="1.3.0" edition="update2"/>
        <vers num="1.3.0" edition="update3"/>
        <vers num="1.3.0" edition="update4"/>
        <vers num="1.3.0" edition="update5"/>
        <vers num="1.3.1" edition="update1"/>
        <vers num="1.3.1" edition="update2"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_2"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.3.0"/>
        <vers num="1.3.0_01"/>
        <vers num="1.3.0_02"/>
        <vers num="1.3.0_03"/>
        <vers num="1.3.0_04"/>
        <vers num="1.3.0_05"/>
        <vers num="1.3.1"/>
        <vers num="1.3.1_01"/>
        <vers num="1.3.1_01a"/>
        <vers num="1.3.1_02"/>
        <vers num="1.3.1_03"/>
        <vers num="1.3.1_04"/>
        <vers num="1.3.1_05"/>
        <vers num="1.3.1_06"/>
        <vers num="1.3.1_07"/>
        <vers num="1.3.1_08"/>
        <vers num="1.3.1_09"/>
        <vers num="1.3.1_10"/>
        <vers num="1.3.1_11"/>
        <vers num="1.3.1_12"/>
        <vers num="1.3.1_13"/>
        <vers num="1.3.1_14"/>
        <vers num="1.3.1_15"/>
        <vers num="1.3.1_16"/>
        <vers num="1.3.1_17"/>
        <vers num="1.3.1_18"/>
        <vers num="1.3.1_19"/>
        <vers num="1.3.1_20"/>
        <vers num="1.3.1_21"/>
        <vers num="1.3.1_22"/>
        <vers num="1.3.1_23"/>
        <vers num="1.3.1_24"/>
        <vers num="1.3.1_25"/>
        <vers num="1.3.1_26"/>
        <vers prev="1" num="1.3.1_27"/>
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0089" published="2010-04-01" name="CVE-2010-0089" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'
</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14208" source="OVAL">oval:org.mitre.oval:def:14208</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0090" published="2010-04-01" name="CVE-2010-0090" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_score="5.8" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="8.6" CVSS_base_score="5.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18 allows remote attackers to affect integrity and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN" adv="1">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN" adv="1">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN" adv="1">ADV-2010-1191</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA" adv="1">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA" adv="1">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA" adv="1">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA" adv="1">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA" adv="1">39317</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14237" source="OVAL">oval:org.mitre.oval:def:14237</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0091" published="2010-04-01" name="CVE-2010-0091" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9855" source="OVAL">oval:org.mitre.oval:def:9855</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:13492" source="OVAL">oval:org.mitre.oval:def:13492</ref>
      <ref url="http://osvdb.org/63481" source="OSVDB">63481</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0092" published="2010-04-01" name="CVE-2010-0092" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, and 5.0 Update 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN" adv="1">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN" adv="1">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN" adv="1">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN" adv="1">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA" adv="1">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA" adv="1">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA" adv="1">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA" adv="1">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA" adv="1">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA" adv="1">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14210" source="OVAL">oval:org.mitre.oval:def:14210</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10057" source="OVAL">oval:org.mitre.oval:def:10057</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0093" published="2010-04-01" name="CVE-2010-0093" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9877" source="OVAL">oval:org.mitre.oval:def:9877</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14288" source="OVAL">oval:org.mitre.oval:def:14288</ref>
      <ref url="http://osvdb.org/63485" source="OSVDB">63485</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0094" published="2010-04-01" name="CVE-2010-0094" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18 and 5.0 Update 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.  NOTE: the previous information was obtained from the March 2010 CPU.  Oracle has not commented on claims from a reliable researcher that this is due to missing privilege checks during deserialization of RMIConnectionImpl objects, which allows remote attackers to call system-level Java functions via the ClassLoader of a constructor that is being deserialized.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-051" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-051</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN" adv="1">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN" adv="1">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN" adv="1">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN" adv="1">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510527/100/0/threaded" source="BUGTRAQ">20100405 ZDI-10-051: Sun Java Runtime RMIConnectionImpl Privileged Context Remote Code Execution Vulnerability</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA" adv="1">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA" adv="1">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA" adv="1">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA" adv="1">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA" adv="1">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA" adv="1">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14351" source="OVAL">oval:org.mitre.oval:def:14351</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10851" source="OVAL">oval:org.mitre.oval:def:10851</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">SSRT100179</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0095" published="2010-04-01" name="CVE-2010-0095" modified="2012-10-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.</descript>
      <descript source="nvd">Per: http://www.oracle.com/technology/deploy/security/critical-patch-updates/javacpumar2010.html



'Affected product releases and versions:
• Java SE: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris, and Linux
	    

        • JDK 5.0 Update 23 and earlier for Solaris
	  

        • SDK 1.4.2_25 and earlier for Solaris
	  
• Java for Business: 	 

        • JDK and JRE 6 Update 18 and earlier for Windows, Solaris and Linux
	  

        • JDK and JRE 5.0 Update 23 and earlier for Windows, Solaris and Linux
	  

        • SDK and JRE 1.4.2_25 and earlier for Windows, Solaris and Linux'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1793" source="VUPEN">ADV-2010-1793</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1454" source="VUPEN">ADV-2010-1454</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1191" source="VUPEN">ADV-2010-1191</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html" source="CONFIRM">http://www.vmware.com/support/vsphere4/doc/vsp_vc41_u1_rel_notes.html</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0471.html" source="REDHAT">RHSA-2010:0471</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0383.html" source="REDHAT">RHSA-2010:0383</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0339.html" source="REDHAT">RHSA-2010:0339</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0338.html" source="REDHAT">RHSA-2010:0338</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0337.html" source="REDHAT">RHSA-2010:0337</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/javacpumar2010-083341.html</ref>
      <ref url="http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html" source="CONFIRM">http://www.oracle.com/technetwork/topics/security/cpuoct2010-175626.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:084" source="MANDRIVA">MDVSA-2010:084</ref>
      <ref url="http://ubuntu.com/usn/usn-923-1" source="UBUNTU">USN-923-1</ref>
      <ref url="http://support.apple.com/kb/HT4171" source="CONFIRM">http://support.apple.com/kb/HT4171</ref>
      <ref url="http://support.apple.com/kb/HT4170" source="CONFIRM">http://support.apple.com/kb/HT4170</ref>
      <ref url="http://secunia.com/advisories/43308" source="SECUNIA">43308</ref>
      <ref url="http://secunia.com/advisories/40545" source="SECUNIA">40545</ref>
      <ref url="http://secunia.com/advisories/39819" source="SECUNIA">39819</ref>
      <ref url="http://secunia.com/advisories/39659" source="SECUNIA">39659</ref>
      <ref url="http://secunia.com/advisories/39317" source="SECUNIA">39317</ref>
      <ref url="http://secunia.com/advisories/39292" source="SECUNIA">39292</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14105" source="OVAL">oval:org.mitre.oval:def:14105</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11621" source="OVAL">oval:org.mitre.oval:def:11621</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html" source="SUSE">SUSE-SR:2010:017</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.html" source="SUSE">SUSE-SR:2010:008</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00002.html" source="APPLE">APPLE-SA-2010-05-18-2</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//May/msg00001.html" source="APPLE">APPLE-SA-2010-05-18-1</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
      <ref url="http://itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c02273751" source="HP">HPSBMA02547</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="jdk">
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update1"/>
        <vers prev="1" num="1.6.0" edition="update1_b06"/>
        <vers prev="1" num="1.6.0" edition="update2"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="jre">
        <vers num="1.4.2" edition="update1"/>
        <vers num="1.4.2" edition="update2"/>
        <vers num="1.4.2" edition="update3"/>
        <vers num="1.4.2" edition="update4"/>
        <vers num="1.4.2" edition="update5"/>
        <vers num="1.4.2" edition="update6"/>
        <vers num="1.4.2" edition="update7"/>
        <vers num="1.4.2" edition="update8"/>
        <vers num="1.4.2" edition="update9"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers prev="1" num="1.5.0" edition="update1"/>
        <vers prev="1" num="1.5.0" edition="update10"/>
        <vers prev="1" num="1.5.0" edition="update11"/>
        <vers prev="1" num="1.5.0" edition="update12"/>
        <vers prev="1" num="1.5.0" edition="update13"/>
        <vers prev="1" num="1.5.0" edition="update14"/>
        <vers prev="1" num="1.5.0" edition="update15"/>
        <vers prev="1" num="1.5.0" edition="update16"/>
        <vers prev="1" num="1.5.0" edition="update17"/>
        <vers prev="1" num="1.5.0" edition="update18"/>
        <vers prev="1" num="1.5.0" edition="update19"/>
        <vers prev="1" num="1.5.0" edition="update2"/>
        <vers prev="1" num="1.5.0" edition="update20"/>
        <vers prev="1" num="1.5.0" edition="update21"/>
        <vers prev="1" num="1.5.0" edition="update23"/>
        <vers prev="1" num="1.5.0" edition="update3"/>
        <vers prev="1" num="1.5.0" edition="update4"/>
        <vers prev="1" num="1.5.0" edition="update5"/>
        <vers prev="1" num="1.5.0" edition="update6"/>
        <vers prev="1" num="1.5.0" edition="update7"/>
        <vers prev="1" num="1.5.0" edition="update8"/>
        <vers prev="1" num="1.5.0" edition="update9"/>
        <vers prev="1" num="1.6.0" edition="update_1"/>
        <vers prev="1" num="1.6.0" edition="update_10"/>
        <vers prev="1" num="1.6.0" edition="update_11"/>
        <vers prev="1" num="1.6.0" edition="update_12"/>
        <vers prev="1" num="1.6.0" edition="update_13"/>
        <vers prev="1" num="1.6.0" edition="update_14"/>
        <vers prev="1" num="1.6.0" edition="update_15"/>
        <vers prev="1" num="1.6.0" edition="update_16"/>
        <vers prev="1" num="1.6.0" edition="update_17"/>
        <vers prev="1" num="1.6.0" edition="update_18"/>
        <vers prev="1" num="1.6.0" edition="update_2"/>
        <vers prev="1" num="1.6.0" edition="update_3"/>
        <vers prev="1" num="1.6.0" edition="update_4"/>
        <vers prev="1" num="1.6.0" edition="update_5"/>
        <vers prev="1" num="1.6.0" edition="update_6"/>
        <vers prev="1" num="1.6.0" edition="update_7"/>
      </prod>
      <prod vendor="sun" name="sdk">
        <vers num="1.4.2"/>
        <vers num="1.4.2_02"/>
        <vers num="1.4.2_1"/>
        <vers num="1.4.2_10"/>
        <vers num="1.4.2_11"/>
        <vers num="1.4.2_12"/>
        <vers num="1.4.2_13"/>
        <vers num="1.4.2_14"/>
        <vers num="1.4.2_15"/>
        <vers num="1.4.2_16"/>
        <vers num="1.4.2_17"/>
        <vers num="1.4.2_18"/>
        <vers num="1.4.2_19"/>
        <vers num="1.4.2_20"/>
        <vers num="1.4.2_21"/>
        <vers num="1.4.2_22"/>
        <vers num="1.4.2_23"/>
        <vers num="1.4.2_24"/>
        <vers prev="1" num="1.4.2_25"/>
        <vers num="1.4.2_3"/>
        <vers num="1.4.2_4"/>
        <vers num="1.4.2_5"/>
        <vers num="1.4.2_6"/>
        <vers num="1.4.2_7"/>
        <vers num="1.4.2_8"/>
        <vers num="1.4.2_9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0097" published="2010-01-22" name="CVE-2010-0097" modified="2011-10-20" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta does not properly validate DNSSEC (1) NSEC and (2) NSEC3 records, which allows remote attackers to add the Authenticated Data (AD) flag to a forged NXDOMAIN response for an existing domain.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/360341" source="CERT-VN">VU#360341</ref>
      <ref url="https://www.isc.org/advisories/CVE-2010-0097" source="CONFIRM">https://www.isc.org/advisories/CVE-2010-0097</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0095.html" source="REDHAT">RHSA-2010:0095</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0062.html" source="REDHAT">RHSA-2010:0062</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=554851" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=554851</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55753" source="XF">bind-dnssecnsec-cache-poisoning(55753)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1352" source="VUPEN">ADV-2010-1352</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0981" source="VUPEN">ADV-2010-0981</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0622" source="VUPEN">ADV-2010-0622</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0176" source="VUPEN" adv="1">ADV-2010-0176</ref>
      <ref url="http://www.ubuntu.com/usn/USN-888-1" source="UBUNTU">USN-888-1</ref>
      <ref url="http://www.securityfocus.com/bid/37865" source="BID">37865</ref>
      <ref url="http://www.osvdb.org/61853" source="OSVDB">61853</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:021" source="MANDRIVA">MDVSA-2010:021</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2054" source="DEBIAN">DSA-2054</ref>
      <ref url="http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018" source="CONFIRM">http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018</ref>
      <ref url="http://support.apple.com/kb/HT5002" source="CONFIRM">http://support.apple.com/kb/HT5002</ref>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021798.1-1" source="SUNALERT">1021798</ref>
      <ref url="http://securitytracker.com/id?1023474" source="SECTRACK">1023474</ref>
      <ref url="http://secunia.com/advisories/40086" source="SECUNIA">40086</ref>
      <ref url="http://secunia.com/advisories/39582" source="SECUNIA">39582</ref>
      <ref url="http://secunia.com/advisories/39334" source="SECUNIA">39334</ref>
      <ref url="http://secunia.com/advisories/38240" source="SECUNIA" adv="1">38240</ref>
      <ref url="http://secunia.com/advisories/38219" source="SECUNIA" adv="1">38219</ref>
      <ref url="http://secunia.com/advisories/38169" source="SECUNIA" adv="1">38169</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9357" source="OVAL">oval:org.mitre.oval:def:9357</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7430" source="OVAL">oval:org.mitre.oval:def:7430</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7212" source="OVAL">oval:org.mitre.oval:def:7212</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:12205" source="OVAL">oval:org.mitre.oval:def:12205</ref>
      <ref url="http://marc.info/?l=bugtraq&amp;m=127195582210247&amp;w=2" source="HP">SSRT100004</ref>
      <ref url="http://marc.info/?l=bugtraq&amp;m=127195582210247&amp;w=2" source="HP">SSRT100004</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html" source="SUSE">SUSE-SA:2010:008</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034202.html" source="FEDORA">FEDORA-2010-0868</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034196.html" source="FEDORA">FEDORA-2010-0861</ref>
      <ref url="http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html" source="APPLE">APPLE-SA-2011-10-12-3</ref>
      <ref url="ftp://ftp.sco.com/pub/unixware7/714/security/p535243_uw7/p535243b.txt" source="CONFIRM">ftp://ftp.sco.com/pub/unixware7/714/security/p535243_uw7/p535243b.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="isc" name="bind">
        <vers num="9.0"/>
        <vers num="9.0.1"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.2.0"/>
        <vers num="9.2.1"/>
        <vers num="9.2.2" edition="p3"/>
        <vers num="9.2.3"/>
        <vers num="9.2.4"/>
        <vers num="9.2.5"/>
        <vers num="9.2.6"/>
        <vers num="9.2.7"/>
        <vers num="9.2.9"/>
        <vers num="9.3"/>
        <vers num="9.3.0"/>
        <vers num="9.3.1"/>
        <vers num="9.3.2"/>
        <vers num="9.3.3"/>
        <vers num="9.4"/>
        <vers num="9.4.0" edition="rc1"/>
        <vers num="9.4.0a1"/>
        <vers num="9.4.0a2"/>
        <vers num="9.4.0a3"/>
        <vers num="9.4.0a4"/>
        <vers num="9.4.0a5"/>
        <vers num="9.4.0a6"/>
        <vers num="9.4.0b1"/>
        <vers num="9.4.0b2"/>
        <vers num="9.4.0b4"/>
        <vers num="9.4.1"/>
        <vers num="9.4.2"/>
        <vers num="9.4.3"/>
        <vers num="9.4.3p1"/>
        <vers num="9.4.3p2"/>
        <vers num="9.4.3p3"/>
        <vers num="9.4.3p4"/>
        <vers num="9.5"/>
        <vers num="9.5.0" edition="rc1"/>
        <vers num="9.5.0-p1"/>
        <vers num="9.5.0-p2"/>
        <vers num="9.5.0a1"/>
        <vers num="9.5.0a2"/>
        <vers num="9.5.0a3"/>
        <vers num="9.5.0a4"/>
        <vers num="9.5.0a5"/>
        <vers num="9.5.0a6"/>
        <vers num="9.5.0b1"/>
        <vers num="9.5.0b2"/>
        <vers num="9.5.0b3"/>
        <vers num="9.5.1" edition="rc1"/>
        <vers num="9.5.1b1"/>
        <vers num="9.5.1b2"/>
        <vers num="9.5.1b3"/>
        <vers num="9.5.2"/>
        <vers num="9.5.2p1"/>
        <vers num="9.6.0" edition="p1"/>
        <vers num="9.6.0" edition="rc2"/>
        <vers num="9.6.0a1"/>
        <vers num="9.6.1" edition="p1"/>
        <vers num="9.6.1" edition="p2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0098" published="2010-04-08" name="CVE-2010-0098" modified="2010-08-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive utilities.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/39262" source="BID" patch="1">39262</ref>
      <ref url="https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1826" source="CONFIRM">https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1826</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1206" source="VUPEN">ADV-2010-1206</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1001" source="VUPEN">ADV-2010-1001</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0909" source="VUPEN">ADV-2010-0909</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0832" source="VUPEN">ADV-2010-0832</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0827" source="VUPEN">ADV-2010-0827</ref>
      <ref url="http://www.ubuntu.com/usn/USN-926-1" source="UBUNTU">USN-926-1</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/04/08/3" source="MLIST">[oss-security] 20100407 Re: ClamAV small issues</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/04/06/4" source="MLIST">[oss-security] 20100406 ClamAV small issues</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:082" source="MANDRIVA">MDVSA-2010:082</ref>
      <ref url="http://support.apple.com/kb/HT4312" source="CONFIRM">http://support.apple.com/kb/HT4312</ref>
      <ref url="http://secunia.com/advisories/39656" source="SECUNIA">39656</ref>
      <ref url="http://secunia.com/advisories/39329" source="SECUNIA" adv="1">39329</ref>
      <ref url="http://secunia.com/advisories/39293" source="SECUNIA">39293</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.html" source="SUSE">SUSE-SR:2010:010</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Aug/msg00003.html" source="APPLE">APPLE-SA-2010-08-24-1</ref>
      <ref url="http://git.clamav.net/gitweb?p=clamav-devel.git;a=blob_plain;f=ChangeLog;hb=clamav-0.96" source="CONFIRM">http://git.clamav.net/gitweb?p=clamav-devel.git;a=blob_plain;f=ChangeLog;hb=clamav-0.96</ref>
    </refs>
    <vuln_soft>
      <prod vendor="clamav" name="clamav">
        <vers num="0.01"/>
        <vers num="0.02"/>
        <vers num="0.03"/>
        <vers num="0.05"/>
        <vers num="0.10"/>
        <vers num="0.12"/>
        <vers num="0.13"/>
        <vers num="0.14" edition="pre"/>
        <vers num="0.15"/>
        <vers num="0.20"/>
        <vers num="0.21"/>
        <vers num="0.22"/>
        <vers num="0.23"/>
        <vers num="0.24"/>
        <vers num="0.3"/>
        <vers num="0.51"/>
        <vers num="0.52"/>
        <vers num="0.53"/>
        <vers num="0.54"/>
        <vers num="0.60"/>
        <vers num="0.60p"/>
        <vers num="0.65"/>
        <vers num="0.66"/>
        <vers num="0.67"/>
        <vers num="0.67-1"/>
        <vers num="0.68"/>
        <vers num="0.68.1"/>
        <vers num="0.70" edition="rc"/>
        <vers num="0.71"/>
        <vers num="0.72"/>
        <vers num="0.73"/>
        <vers num="0.74"/>
        <vers num="0.75"/>
        <vers num="0.75.1"/>
        <vers num="0.80" edition="rc"/>
        <vers num="0.80" edition="rc2"/>
        <vers num="0.80" edition="rc3"/>
        <vers num="0.80" edition="rc4"/>
        <vers num="0.81"/>
        <vers num="0.82"/>
        <vers num="0.83"/>
        <vers num="0.84" edition="rc1"/>
        <vers num="0.84" edition="rc2"/>
        <vers num="0.85"/>
        <vers num="0.85.1"/>
        <vers num="0.86" edition="rc1"/>
        <vers num="0.86.1"/>
        <vers num="0.86.2"/>
        <vers num="0.87"/>
        <vers num="0.87.1"/>
        <vers num="0.88"/>
        <vers num="0.88.1"/>
        <vers num="0.88.2"/>
        <vers num="0.88.3"/>
        <vers num="0.88.4"/>
        <vers num="0.88.5"/>
        <vers num="0.88.6"/>
        <vers num="0.88.7"/>
        <vers num="0.9" edition="rc1"/>
        <vers num="0.90" edition="rc1"/>
        <vers num="0.90" edition="rc1.1"/>
        <vers num="0.90" edition="rc2"/>
        <vers num="0.90" edition="rc3"/>
        <vers num="0.90.1"/>
        <vers num="0.90.2"/>
        <vers num="0.90.3"/>
        <vers num="0.91" edition="rc1"/>
        <vers num="0.91" edition="rc2"/>
        <vers num="0.91.1"/>
        <vers num="0.91.2"/>
        <vers num="0.92"/>
        <vers num="0.92.1"/>
        <vers num="0.93"/>
        <vers num="0.93.1"/>
        <vers num="0.93.2"/>
        <vers num="0.93.3"/>
        <vers num="0.94"/>
        <vers num="0.94.1"/>
        <vers num="0.94.2"/>
        <vers num="0.95" edition="rc1"/>
        <vers num="0.95" edition="rc2"/>
        <vers num="0.95.1"/>
        <vers num="0.95.2"/>
        <vers num="0.95.3"/>
        <vers prev="1" num="0.96" edition="rc1"/>
        <vers prev="1" num="0.96" edition="rc2"/>
      </prod>
      <prod vendor="clamavs" name="clamav">
        <vers num="0.04"/>
        <vers num="0.06"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" seq="2010-0099" reject="1" published="2010-07-22" name="CVE-2010-0099" modified="2010-07-22">
    <desc>
      <descript source="cve">** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: CVE-2010-0092.  Reason: This candidate is a duplicate of CVE-2010-0092.  Notes: All CVE users should reference CVE-2010-0092 instead of this candidate.  All references and descriptions in this candidate have been removed to prevent accidental usage.</descript>
    </desc>
    <refs/>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0101" published="2010-05-04" name="CVE-2010-0101" modified="2010-05-07" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The embedded HTTP server in multiple Lexmark laser and inkjet printers and MarkNet devices, including X94x, W840, T656, N4000, E462, C935dn, 25xxN, and other models, allows remote attackers to cause a denial of service (operating system halt) via a malformed HTTP Authorization header.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://support.lexmark.com/index?page=content&amp;id=TE87&amp;locale=EN&amp;userlocale=EN_US" source="CONFIRM" adv="1">http://support.lexmark.com/index?page=content&amp;id=TE87&amp;locale=EN&amp;userlocale=EN_US</ref>
    </refs>
    <vuln_soft>
      <prod vendor="lexmark" name="25xxn">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c510">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c52x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c53x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c540">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c543">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c544">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c546">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c73x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c77x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c78x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c920">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="c935dn">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e120">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e238">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e23x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e240">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e240n">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e250">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e260">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e33x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e34x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e350">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e360d">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e360dn">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e450">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e460">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="e462">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="n4000">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="n4050e">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="n70xxe">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="n8120">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="n8130">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="t430">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="t64x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="t650">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="t652">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="t654">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="t656">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="w840">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="w850">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x20x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x26x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x34x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x36x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x422">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x46x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x543">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x544">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x546">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x642">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x644">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x646">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x64xef">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x65x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x73x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x772e">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x782e">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x85x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x86x">
        <vers num=""/>
      </prod>
      <prod vendor="lexmark" name="x94x">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0103" published="2010-03-10" name="CVE-2010-0103" modified="2010-03-10" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Arucer.dll file in the %WINDIR%\system32 directory, which allows remote attackers to download arbitrary programs onto a Windows PC, and execute these programs, via a request to TCP port 7777.</descript>
      <descript source="nvd">Per: http://www.energizer.com/usbcharger/download/March_8_2010_USB_Release__3_.pdf


"Energizer has discontinued sale of this product and has removed the site to download the software. In addition, the company is directing consumers that downloaded the Windows version of the software to uninstall or otherwise remove the software from your computer."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/154421" source="CERT-VN">VU#154421</ref>
      <ref url="http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software" source="MISC">http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software</ref>
      <ref url="http://www.securityfocus.com/bid/38571" source="BID">38571</ref>
      <ref url="http://www.marketwatch.com/story/energizer-announces-duo-charger-and-usb-charger-software-problem-2010-03-05" source="MISC">http://www.marketwatch.com/story/energizer-announces-duo-charger-and-usb-charger-software-problem-2010-03-05</ref>
    </refs>
    <vuln_soft>
      <prod vendor="energizer" name="duo_usb">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0104" published="2010-03-18" name="CVE-2010-0104" modified="2010-06-23" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Broadcom Integrated NIC Management Firmware 1.x before 1.40.0.0 and 8.x before 8.08 on the HP Small Form Factor and Microtower platforms allows remote attackers to execute arbitrary code via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/512705" source="CERT-VN">VU#512705</ref>
      <ref url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02048471" source="HP" patch="1" adv="1">HPSBGN02511</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0631" source="VUPEN" adv="1">ADV-2010-0631</ref>
      <ref url="http://www.securityfocus.com/bid/38759" source="BID">38759</ref>
      <ref url="http://securitytracker.com/id?1023710" source="SECTRACK">1023710</ref>
      <ref url="http://secunia.com/advisories/39003" source="SECUNIA" adv="1">39003</ref>
      <ref url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c02048471" source="HP">HPSBGN02511</ref>
    </refs>
    <vuln_soft>
      <prod vendor="broadcom" name="broadcom">
        <vers prev="1" num="integrated_nic_management_firmware" edition="1.24.0.9"/>
        <vers prev="1" num="integrated_nic_management_firmware" edition="8.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0105" published="2010-04-27" name="CVE-2010-0105" modified="2010-12-10" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="4.9" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="3.9" CVSS_base_score="4.9">
    <desc>
      <descript source="cve">The hfs implementation in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 supports hard links to directories and does not prevent certain deeply nested directory structures, which allows local users to cause a denial of service (filesystem corruption) via a crafted application that calls the mkdir and link functions, related to the fsck_hfs program in the diskdev_cmds component.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.securitytracker.com/id?1024723" source="SECTRACK">1024723</ref>
      <ref url="http://www.securityfocus.com/bid/39658" source="BID">39658</ref>
      <ref url="http://support.apple.com/kb/HT4435" source="CONFIRM">http://support.apple.com/kb/HT4435</ref>
      <ref url="http://securityreason.com/achievement_securityalert/83" source="SREASONRES">20100423 MacOS X 10.6.3 filesystem hfs Denial of Service Vulnerability</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" source="APPLE">APPLE-SA-2010-11-10-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="mac_os_x">
        <vers num="10.5.8"/>
        <vers num="10.6.0"/>
        <vers num="10.6.1"/>
        <vers num="10.6.2"/>
        <vers num="10.6.3"/>
        <vers num="10.6.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0106" published="2010-02-19" name="CVE-2010-0106" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="1.9" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.4" CVSS_base_score="1.9">
    <desc>
      <descript source="cve">The on-demand scanning in Symantec AntiVirus 10.0.x and 10.1.x before MR9, AntiVirus 10.2.x, and Client Security 3.0.x and 3.1.x before MR9, when Tamper protection is disabled, allows remote attackers to cause a denial of service (prevention of on-demand scanning) via "specific events" that prevent the user from having read access to unspecified resources.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56354" source="XF">symantec-ondemand-dos(56354)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0410" source="VUPEN" adv="1">ADV-2010-0410</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100217_00" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100217_00</ref>
      <ref url="http://www.securitytracker.com/id?1023621" source="SECTRACK">1023621</ref>
      <ref url="http://www.securityfocus.com/bid/38219" source="BID">38219</ref>
      <ref url="http://secunia.com/advisories/38653" source="SECUNIA" adv="1">38653</ref>
      <ref url="http://osvdb.org/62414" source="OSVDB">62414</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="antivirus">
        <vers num="10.0"/>
        <vers num="10.0.1"/>
        <vers num="10.0.1.1"/>
        <vers num="10.0.2"/>
        <vers num="10.0.2.1"/>
        <vers num="10.0.2.2"/>
        <vers num="10.0.3"/>
        <vers num="10.0.4"/>
        <vers num="10.0.5"/>
        <vers num="10.0.6"/>
        <vers num="10.0.7"/>
        <vers num="10.0.8"/>
        <vers num="10.0.9"/>
        <vers num="10.1" edition=""/>
        <vers num="10.1" edition=":corporate"/>
        <vers num="10.1" edition="mp1"/>
        <vers num="10.1" edition="mp1:corporate"/>
        <vers num="10.1" edition="mr4"/>
        <vers num="10.1" edition="mr4:corporate"/>
        <vers num="10.1" edition="mr5"/>
        <vers num="10.1" edition="mr5:corporate"/>
        <vers num="10.1" edition="mr7"/>
        <vers num="10.1" edition="mr7:corporate"/>
        <vers num="10.1.0.1" edition=""/>
        <vers num="10.1.0.1" edition=":corporate"/>
        <vers num="10.1.4" edition=""/>
        <vers num="10.1.4" edition=":corporate"/>
        <vers num="10.1.4.1" edition=""/>
        <vers num="10.1.4.1" edition=":corporate"/>
        <vers num="10.1.5" edition=""/>
        <vers num="10.1.5" edition=":corporate"/>
        <vers num="10.1.5.1" edition=""/>
        <vers num="10.1.5.1" edition=":corporate"/>
        <vers num="10.1.6" edition=""/>
        <vers num="10.1.6" edition=":corporate"/>
        <vers num="10.1.6.1" edition=""/>
        <vers num="10.1.6.1" edition=":corporate"/>
        <vers num="10.1.7" edition=""/>
        <vers num="10.1.7" edition=":corporate"/>
        <vers num="10.2" edition=""/>
        <vers num="10.2" edition=":corporate"/>
        <vers num="10.2" edition="mr2"/>
        <vers num="10.2" edition="mr2:corporate"/>
        <vers num="10.2" edition="mr3"/>
        <vers num="10.2" edition="mr3:corporate"/>
      </prod>
      <prod vendor="symantec" name="client_security">
        <vers num="3.0" edition="mr1"/>
        <vers num="3.0" edition="mr2"/>
        <vers num="3.0.0.359"/>
        <vers num="3.0.1.1000"/>
        <vers num="3.0.1.1007"/>
        <vers num="3.0.1.1008"/>
        <vers num="3.0.2"/>
        <vers num="3.0.2.2000"/>
        <vers num="3.0.2.2001"/>
        <vers num="3.0.2.2010"/>
        <vers num="3.0.2.2011"/>
        <vers num="3.0.2.2020"/>
        <vers num="3.0.2.2021"/>
        <vers num="3.1" edition="mr4"/>
        <vers num="3.1" edition="mr5"/>
        <vers num="3.1" edition="mr7"/>
        <vers num="3.1.0.396"/>
        <vers num="3.1.0.401"/>
        <vers num="3.1.394"/>
        <vers num="3.1.400"/>
        <vers num="3.1.401"/>
      </prod>
      <prod vendor="symantec" name="endpoint_protection">
        <vers num="11"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0107" published="2010-02-23" name="CVE-2010-0107" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in an ActiveX control (SYMLTCOM.dll) in Symantec N360 1.0 and 2.0; Norton Internet Security, AntiVirus, SystemWorks, and Confidential 2006 through 2008; and Symantec Client Security 3.0.x before 3.1 MR9, and 3.1.x before MR9; allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.  NOTE: this is only a vulnerability if the attacker can "masquerade as an authorized site."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56357" source="XF">symantec-symltcom-activex-bo(56357)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0411" source="VUPEN" adv="1">ADV-2010-0411</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100217_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100217_01</ref>
      <ref url="http://www.securitytracker.com/id?1023631" source="SECTRACK">1023631</ref>
      <ref url="http://www.securitytracker.com/id?1023630" source="SECTRACK">1023630</ref>
      <ref url="http://www.securitytracker.com/id?1023629" source="SECTRACK">1023629</ref>
      <ref url="http://www.securitytracker.com/id?1023628" source="SECTRACK">1023628</ref>
      <ref url="http://www.securityfocus.com/bid/38217" source="BID">38217</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509717/100/0/threaded" source="BUGTRAQ">20100224 VUPEN Security Research - Symantec Products "SYMLTCOM.dll" Buffer Overflow Vulnerability</ref>
      <ref url="http://secunia.com/advisories/38654" source="SECUNIA" adv="1">38654</ref>
      <ref url="http://osvdb.org/62412" source="OSVDB">62412</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="client_security">
        <vers num="3.0"/>
        <vers num="3.0.1.1000"/>
        <vers num="3.0.1.1001"/>
        <vers num="3.0.1.1007"/>
        <vers num="3.0.1.1008"/>
        <vers num="3.0.1.1009"/>
        <vers num="3.0.2"/>
        <vers num="3.0.2.2000"/>
        <vers num="3.0.2.2001"/>
        <vers num="3.0.2.2002"/>
        <vers num="3.0.2.2010"/>
        <vers num="3.0.2.2011"/>
        <vers num="3.0.2.2020"/>
        <vers num="3.0.2.2021"/>
        <vers num="3.1" edition="mr4"/>
        <vers num="3.1" edition="mr5"/>
        <vers num="3.1" edition="mr6"/>
        <vers num="3.1.0.396"/>
        <vers num="3.1.0.401"/>
        <vers num="3.1.396"/>
        <vers num="3.1.400"/>
        <vers num="3.1.401"/>
      </prod>
      <prod vendor="symantec" name="norton_360">
        <vers num="1.0"/>
        <vers num="2.0"/>
      </prod>
      <prod vendor="symantec" name="norton_antivirus">
        <vers num="2006"/>
        <vers num="2007"/>
        <vers num="2008"/>
      </prod>
      <prod vendor="symantec" name="norton_internet_security">
        <vers num="2006"/>
        <vers num="2007"/>
        <vers num="2008"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0108" published="2010-02-19" name="CVE-2010-0108" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Buffer overflow in the cliproxy.objects.1 ActiveX control in the Symantec Client Proxy (CLIproxy.dll) in Symantec AntiVirus 10.0.x, 10.1.x before MR9, and 10.2.x before MR4; and Symantec Client Security 3.0.x and 3.1.x before MR9 allows remote attackers to execute arbitrary code via a long argument to the SetRemoteComputerName function.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56355" source="XF">scp-cliproxy-activex-bo(56355)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0412" source="VUPEN" adv="1">ADV-2010-0412</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100217_02" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100217_02</ref>
      <ref url="http://www.securityfocus.com/bid/38222" source="BID">38222</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509681/100/0/threaded" source="BUGTRAQ">20100219 [DSECRG-09-039] Symantec Antivirus 10.0 ActiveX - buffer Overflow.</ref>
      <ref url="http://secunia.com/advisories/38651" source="SECUNIA" adv="1">38651</ref>
      <ref url="http://dsecrg.com/pages/vul/show.php?id=139" source="MISC">http://dsecrg.com/pages/vul/show.php?id=139</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="antivirus">
        <vers num="10.0"/>
        <vers num="10.0.1"/>
        <vers num="10.0.1.1"/>
        <vers num="10.0.2"/>
        <vers num="10.0.2.1"/>
        <vers num="10.0.2.2"/>
        <vers num="10.0.3"/>
        <vers num="10.0.4"/>
        <vers num="10.0.5"/>
        <vers num="10.0.6"/>
        <vers num="10.0.7"/>
        <vers num="10.0.8"/>
        <vers num="10.0.9"/>
        <vers num="10.1" edition=""/>
        <vers num="10.1" edition=":corporate"/>
        <vers num="10.1" edition="mp1"/>
        <vers num="10.1" edition="mp1:corporate"/>
        <vers num="10.1" edition="mr4"/>
        <vers num="10.1" edition="mr4:corporate"/>
        <vers num="10.1" edition="mr5"/>
        <vers num="10.1" edition="mr5:corporate"/>
        <vers num="10.1" edition="mr7"/>
        <vers num="10.1" edition="mr7:corporate"/>
        <vers num="10.1.0.1" edition=""/>
        <vers num="10.1.0.1" edition=":corporate"/>
        <vers num="10.1.4" edition=""/>
        <vers num="10.1.4" edition=":corporate"/>
        <vers num="10.1.4.1" edition=""/>
        <vers num="10.1.4.1" edition=":corporate"/>
        <vers num="10.1.5" edition=""/>
        <vers num="10.1.5" edition=":corporate"/>
        <vers num="10.1.5.1" edition=""/>
        <vers num="10.1.5.1" edition=":corporate"/>
        <vers num="10.1.6" edition=""/>
        <vers num="10.1.6" edition=":corporate"/>
        <vers num="10.1.6.1" edition=""/>
        <vers num="10.1.6.1" edition=":corporate"/>
        <vers num="10.1.7" edition=""/>
        <vers num="10.1.7" edition=":corporate"/>
        <vers num="10.2" edition=""/>
        <vers num="10.2" edition=":corporate"/>
        <vers num="10.2" edition="mr2"/>
        <vers num="10.2" edition="mr2:corporate"/>
        <vers num="10.2" edition="mr3"/>
        <vers num="10.2" edition="mr3:corporate"/>
      </prod>
      <prod vendor="symantec" name="client_security">
        <vers num="3.0" edition="mr1"/>
        <vers num="3.0" edition="mr2"/>
        <vers num="3.0.0.359"/>
        <vers num="3.0.1.1000"/>
        <vers num="3.0.1.1007"/>
        <vers num="3.0.1.1008"/>
        <vers num="3.0.2"/>
        <vers num="3.0.2.2000"/>
        <vers num="3.0.2.2001"/>
        <vers num="3.0.2.2010"/>
        <vers num="3.0.2.2011"/>
        <vers num="3.0.2.2020"/>
        <vers num="3.0.2.2021"/>
        <vers num="3.1" edition="mr4"/>
        <vers num="3.1" edition="mr5"/>
        <vers num="3.1" edition="mr7"/>
        <vers num="3.1.0.396"/>
        <vers num="3.1.0.401"/>
        <vers num="3.1.394"/>
        <vers num="3.1.400"/>
        <vers num="3.1.401"/>
      </prod>
      <prod vendor="symantec" name="endpoint_protection">
        <vers num="11"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0110" published="2011-01-31" name="CVE-2010-0110" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:A/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="7.9" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="5.5" CVSS_base_score="7.9">
    <desc>
      <descript source="cve">Multiple stack-based buffer overflows in Intel Alert Management System (aka AMS or AMS2), as used in Symantec AntiVirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allow remote attackers to execute arbitrary code via (1) a long string to msgsys.exe, related to the AMSSendAlertAct function in AMSLIB.dll in the Intel Alert Handler service (aka Symantec Intel Handler service); a long (2) modem string or (3) PIN number to msgsys.exe, related to pagehndl.dll in the Intel Alert Handler service; or (4) a message to msgsys.exe, related to iao.exe in the Intel Alert Originator service.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local_network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/64940" source="XF">symantec-intel-ams2-bo(64940)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-11-032" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-11-032</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-11-031" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-11-031</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-11-030" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-11-030</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-11-028" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-11-028</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0234" source="VUPEN" adv="1">ADV-2011-0234</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2011&amp;suid=20110126_00" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2011&amp;suid=20110126_00</ref>
      <ref url="http://www.securityfocus.com/bid/45936" source="BID">45936</ref>
      <ref url="http://securitytracker.com/id?1024996" source="SECTRACK">1024996</ref>
      <ref url="http://secunia.com/advisories/43106" source="SECUNIA" adv="1">43106</ref>
      <ref url="http://secunia.com/advisories/43099" source="SECUNIA" adv="1">43099</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="antivirus">
        <vers num="10.0" edition=""/>
        <vers num="10.0" edition=":corporate"/>
        <vers num="10.0" edition="mr1"/>
        <vers num="10.0" edition="mr1:corporate"/>
        <vers num="10.0" edition="mr2"/>
        <vers num="10.0" edition="mr2:corporate"/>
        <vers num="10.0.1" edition=""/>
        <vers num="10.0.1" edition=":corporate"/>
        <vers num="10.0.1.1" edition=""/>
        <vers num="10.0.1.1" edition=":corporate"/>
        <vers num="10.0.1.2" edition=""/>
        <vers num="10.0.1.2" edition=":corporate"/>
        <vers num="10.0.2" edition=""/>
        <vers num="10.0.2" edition=":corporate"/>
        <vers num="10.0.2.1" edition=""/>
        <vers num="10.0.2.1" edition=":corporate"/>
        <vers num="10.0.2.2" edition=""/>
        <vers num="10.0.2.2" edition=":corporate"/>
        <vers num="10.0.3" edition=""/>
        <vers num="10.0.3" edition=":corporate"/>
        <vers num="10.0.4" edition=""/>
        <vers num="10.0.4" edition=":corporate"/>
        <vers num="10.0.5" edition=""/>
        <vers num="10.0.5" edition=":corporate"/>
        <vers num="10.0.6" edition=""/>
        <vers num="10.0.6" edition=":corporate"/>
        <vers num="10.0.7" edition=""/>
        <vers num="10.0.7" edition=":corporate"/>
        <vers num="10.0.8" edition=""/>
        <vers num="10.0.8" edition=":corporate"/>
        <vers num="10.0.9" edition=""/>
        <vers num="10.0.9" edition=":corporate"/>
        <vers num="10.1" edition=""/>
        <vers num="10.1" edition=":corporate"/>
        <vers num="10.1" edition="mp1"/>
        <vers num="10.1" edition="mp1:corporate"/>
        <vers num="10.1" edition="mr4"/>
        <vers num="10.1" edition="mr4:corporate"/>
        <vers num="10.1" edition="mr5"/>
        <vers num="10.1" edition="mr5:corporate"/>
        <vers num="10.1" edition="mr6"/>
        <vers num="10.1" edition="mr6:corporate"/>
        <vers num="10.1" edition="mr7"/>
        <vers num="10.1" edition="mr7:corporate"/>
        <vers num="10.1.0.1" edition=""/>
        <vers num="10.1.0.1" edition=":corporate"/>
        <vers num="10.1.4" edition=""/>
        <vers num="10.1.4" edition=":corporate"/>
        <vers num="10.1.4.1" edition=""/>
        <vers num="10.1.4.1" edition=":corporate"/>
        <vers num="10.1.5" edition=""/>
        <vers num="10.1.5" edition=":corporate"/>
        <vers num="10.1.5.1" edition=""/>
        <vers num="10.1.5.1" edition=":corporate"/>
        <vers num="10.1.6" edition=""/>
        <vers num="10.1.6" edition=":corporate"/>
        <vers num="10.1.6.1" edition=""/>
        <vers num="10.1.6.1" edition=":corporate"/>
        <vers num="10.1.7" edition=""/>
        <vers num="10.1.7" edition=":corporate"/>
        <vers num="10.1.8" edition=""/>
        <vers num="10.1.8" edition=":corporate"/>
        <vers num="10.1.9" edition=""/>
        <vers num="10.1.9" edition=":corporate"/>
        <vers num="10.2" edition=""/>
        <vers num="10.2" edition=":corporate"/>
        <vers num="10.2" edition="mr2"/>
        <vers num="10.2" edition="mr2:corporate"/>
        <vers num="10.2" edition="mr3"/>
        <vers num="10.2" edition="mr3:corporate"/>
      </prod>
      <prod vendor="symantec" name="antivirus_central_quarantine_server">
        <vers num="3.5"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="symantec" name="system_center">
        <vers num="10.0"/>
        <vers num="10.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0111" published="2011-01-31" name="CVE-2010-0111" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">HDNLRSVC.EXE in the Intel Alert Handler service (aka Symantec Intel Handler service) in Intel Alert Management System (aka AMS or AMS2), as used in Symantec AntiVirus Corporate Edition (SAVCE) 10.x before 10.1 MR10, Symantec System Center (SSC) 10.x, and Symantec Quarantine Server 3.5 and 3.6, allows remote attackers to execute arbitrary programs by sending msgsys.exe a UNC share pathname, which is used directly in a CreateProcessA (aka CreateProcess) call.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/64943" source="XF">symantec-intelams2-dos(64943)</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/64942" source="XF">symantec-intelams2-code-execution(64942)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-11-029" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-11-029</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0234" source="VUPEN" adv="1">ADV-2011-0234</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2011&amp;suid=20110126_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2011&amp;suid=20110126_01</ref>
      <ref url="http://www.securityfocus.com/bid/45935" source="BID">45935</ref>
      <ref url="http://securitytracker.com/id?1024997" source="SECTRACK">1024997</ref>
      <ref url="http://secunia.com/advisories/43106" source="SECUNIA" adv="1">43106</ref>
      <ref url="http://secunia.com/advisories/43099" source="SECUNIA" adv="1">43099</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="antivirus">
        <vers num="10.0" edition=""/>
        <vers num="10.0" edition=":corporate"/>
        <vers num="10.0" edition="mr1"/>
        <vers num="10.0" edition="mr1:corporate"/>
        <vers num="10.0" edition="mr2"/>
        <vers num="10.0" edition="mr2:corporate"/>
        <vers num="10.0.1" edition=""/>
        <vers num="10.0.1" edition=":corporate"/>
        <vers num="10.0.1.1" edition=""/>
        <vers num="10.0.1.1" edition=":corporate"/>
        <vers num="10.0.1.2" edition=""/>
        <vers num="10.0.1.2" edition=":corporate"/>
        <vers num="10.0.2" edition=""/>
        <vers num="10.0.2" edition=":corporate"/>
        <vers num="10.0.2.1" edition=""/>
        <vers num="10.0.2.1" edition=":corporate"/>
        <vers num="10.0.2.2" edition=""/>
        <vers num="10.0.2.2" edition=":corporate"/>
        <vers num="10.0.3" edition=""/>
        <vers num="10.0.3" edition=":corporate"/>
        <vers num="10.0.4" edition=""/>
        <vers num="10.0.4" edition=":corporate"/>
        <vers num="10.0.5" edition=""/>
        <vers num="10.0.5" edition=":corporate"/>
        <vers num="10.0.6" edition=""/>
        <vers num="10.0.6" edition=":corporate"/>
        <vers num="10.0.7" edition=""/>
        <vers num="10.0.7" edition=":corporate"/>
        <vers num="10.0.8" edition=""/>
        <vers num="10.0.8" edition=":corporate"/>
        <vers num="10.0.9" edition=""/>
        <vers num="10.0.9" edition=":corporate"/>
        <vers num="10.1" edition=""/>
        <vers num="10.1" edition=":corporate"/>
        <vers num="10.1" edition="mp1"/>
        <vers num="10.1" edition="mp1:corporate"/>
        <vers num="10.1" edition="mr4"/>
        <vers num="10.1" edition="mr4:corporate"/>
        <vers num="10.1" edition="mr5"/>
        <vers num="10.1" edition="mr5:corporate"/>
        <vers num="10.1" edition="mr6"/>
        <vers num="10.1" edition="mr6:corporate"/>
        <vers num="10.1" edition="mr7"/>
        <vers num="10.1" edition="mr7:corporate"/>
        <vers num="10.1.0.1" edition=""/>
        <vers num="10.1.0.1" edition=":corporate"/>
        <vers num="10.1.4" edition=""/>
        <vers num="10.1.4" edition=":corporate"/>
        <vers num="10.1.4.1" edition=""/>
        <vers num="10.1.4.1" edition=":corporate"/>
        <vers num="10.1.5" edition=""/>
        <vers num="10.1.5" edition=":corporate"/>
        <vers num="10.1.5.1" edition=""/>
        <vers num="10.1.5.1" edition=":corporate"/>
        <vers num="10.1.6" edition=""/>
        <vers num="10.1.6" edition=":corporate"/>
        <vers num="10.1.6.1" edition=""/>
        <vers num="10.1.6.1" edition=":corporate"/>
        <vers num="10.1.7" edition=""/>
        <vers num="10.1.7" edition=":corporate"/>
        <vers num="10.1.8" edition=""/>
        <vers num="10.1.8" edition=":corporate"/>
        <vers num="10.1.9" edition=""/>
        <vers num="10.1.9" edition=":corporate"/>
        <vers num="10.2" edition=""/>
        <vers num="10.2" edition=":corporate"/>
        <vers num="10.2" edition="mr2"/>
        <vers num="10.2" edition="mr2:corporate"/>
        <vers num="10.2" edition="mr3"/>
        <vers num="10.2" edition="mr3:corporate"/>
      </prod>
      <prod vendor="symantec" name="antivirus_central_quarantine_server">
        <vers num="3.5"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="symantec" name="system_center">
        <vers num="10.0"/>
        <vers num="10.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0112" published="2010-10-28" name="CVE-2010-0112" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Multiple SQL injection vulnerabilities in the Administrative Interface in the IIS extension in Symantec IM Manager before 8.4.16 allow remote attackers to execute arbitrary SQL commands via (1) the rdReport parameter to rdpageimlogic.aspx, related to the sGetDefinition function in rdServer.dll, and SQL statements contained within a certain report file; (2) unspecified parameters in a DetailReportGroup (aka DetailReportGroup.lgx) action to rdpageimlogic.aspx; the (3) selclause, (4) whereTrendTimeClause, (5) TrendTypeForReport, (6) whereProtocolClause, or (7) groupClause parameter in a SummaryReportGroup (aka SummaryReportGroup.lgx) action to rdpageimlogic.aspx; the (8) loginTimeStamp, (9) dbo, (10) dateDiffParam, or (11) whereClause parameter in a LoggedInUsers (aka LoggedInUSers.lgx) action to (a) rdpageimlogic.aspx or (b) rdPage.aspx; the (12) selclause, (13) whereTrendTimeClause, (14) TrendTypeForReport, (15) whereProtocolClause, or (16) groupClause parameter to rdpageimlogic.aspx; (17) the groupList parameter to IMAdminReportTrendFormRun.asp; or (18) the email parameter to IMAdminScheduleReport.asp.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/62806" source="XF">immanager-unspecified-sql-injection(62806)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-226/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-226/</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-225/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-225/</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-224/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-224/</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-223/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-223/</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-222/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-222/</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-221/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-221/</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-220/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-220/</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2789" source="VUPEN" adv="1">ADV-2010-2789</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20101027_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20101027_01</ref>
      <ref url="http://www.securitytracker.com/id?1024648" source="SECTRACK">1024648</ref>
      <ref url="http://www.securityfocus.com/bid/44299" source="BID">44299</ref>
      <ref url="http://secunia.com/advisories/41959" source="SECUNIA" adv="1">41959</ref>
      <ref url="http://osvdb.org/68903" source="OSVDB">68903</ref>
      <ref url="http://osvdb.org/68902" source="OSVDB">68902</ref>
      <ref url="http://osvdb.org/68901" source="OSVDB">68901</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="im_manager">
        <vers num="6.0"/>
        <vers num="6.5"/>
        <vers num="7.0"/>
        <vers num="7.5"/>
        <vers num="8.3"/>
        <vers num="8.4.0"/>
        <vers num="8.4.1"/>
        <vers num="8.4.10"/>
        <vers num="8.4.11"/>
        <vers num="8.4.12"/>
        <vers num="8.4.13"/>
        <vers prev="1" num="8.4.15"/>
        <vers num="8.4.2"/>
        <vers num="8.4.5"/>
        <vers num="8.4.6"/>
        <vers num="8.4.7"/>
        <vers num="8.4.8"/>
        <vers num="8.4.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0113" published="2010-11-15" name="CVE-2010-0113" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">The Symantec Norton Mobile Security application 1.0 Beta for Android records setup details, possibly including wipe/lock credentials, in the device logs, which allows user-assisted remote attackers to obtain potentially sensitive information by leveraging the ability of a separate crafted application to read these logs.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/63294" source="XF">norton-mobile-setup-information-disclosure(63294)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2982" source="VUPEN" adv="1">ADV-2010-2982</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20101111_00" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20101111_00</ref>
      <ref url="http://www.securityfocus.com/bid/44767" source="BID">44767</ref>
      <ref url="http://osvdb.org/69253" source="OSVDB">69253</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="mobile_security">
        <vers num="1.0" edition="beta"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0114" published="2010-12-21" name="CVE-2010-0114" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote attackers to bypass intended restrictions on report generation, overwrite arbitrary PHP scripts, and execute arbitrary code via a crafted request.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/64118" source="XF">symantec-endpoint-fwcharts-code-execution(64118)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-291/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-291/</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/3252" source="VUPEN" adv="1">ADV-2010-3252</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20101215_00" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20101215_00</ref>
      <ref url="http://www.securityfocus.com/bid/45372" source="BID">45372</ref>
      <ref url="http://securitytracker.com/id?1024900" source="SECTRACK">1024900</ref>
      <ref url="http://secunia.com/advisories/42643" source="SECUNIA" adv="1">42643</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="endpoint_protection">
        <vers num="11"/>
        <vers num="11.0" edition="ru5"/>
        <vers num="11.0" edition="ru6"/>
        <vers num="11.0" edition="ru6mp1"/>
        <vers num="11.0.1" edition="mp1"/>
        <vers num="11.0.2" edition="mp1"/>
        <vers num="11.0.2" edition="mp2"/>
        <vers num="11.0.3001"/>
        <vers num="11.0.4" edition="mp1a"/>
        <vers num="11.0.4" edition="mp2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0115" published="2011-01-14" name="CVE-2010-0115" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in login.php in the GUI management console in Symantec Web Gateway 4.5 before 4.5.0.376 allows remote attackers to execute arbitrary SQL commands via the USERNAME parameter.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/64658" source="XF">symantec-web-username-sql-injection(64658)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-11-013/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-11-013/</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0088" source="VUPEN" adv="1">ADV-2011-0088</ref>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2011&amp;suid=20110112_00" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2011&amp;suid=20110112_00</ref>
      <ref url="http://www.securitytracker.com/id?1024958" source="SECTRACK">1024958</ref>
      <ref url="http://www.securityfocus.com/bid/45742" source="BID">45742</ref>
      <ref url="http://secunia.com/advisories/42878" source="SECUNIA" adv="1">42878</ref>
      <ref url="http://osvdb.org/70415" source="OSVDB">70415</ref>
    </refs>
    <vuln_soft>
      <prod vendor="symantec" name="web_gateway">
        <vers num="4.5"/>
        <vers num="4.5.0.325"/>
        <vers num="4.5.0.326"/>
        <vers num="4.5.0.327"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0116" published="2010-08-30" name="CVE-2010-0116" modified="2011-07-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer overflow in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows might allow remote attackers to execute arbitrary code via a crafted QCP file that triggers a heap-based buffer overflow.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/61420" source="XF">realplayer-qcp-bo(61420)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2216" source="VUPEN">ADV-2010-2216</ref>
      <ref url="http://www.securitytracker.com/id?1024370" source="SECTRACK">1024370</ref>
      <ref url="http://service.real.com/realplayer/security/08262010_player/en/" source="CONFIRM" adv="1">http://service.real.com/realplayer/security/08262010_player/en/</ref>
      <ref url="http://secunia.com/secunia_research/2010-3/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-3/</ref>
      <ref url="http://secunia.com/advisories/41154" source="SECUNIA">41154</ref>
      <ref url="http://secunia.com/advisories/41096" source="SECUNIA">41096</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7326" source="OVAL">oval:org.mitre.oval:def:7326</ref>
    </refs>
    <vuln_soft>
      <prod vendor="realnetworks" name="realplayer">
        <vers num="11.0"/>
        <vers num="11.1"/>
      </prod>
      <prod vendor="realnetworks" name="realplayer_sp">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.5"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0117" published="2010-08-30" name="CVE-2010-0117" modified="2011-07-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows do not properly handle dimensions during YUV420 transformations, which might allow remote attackers to execute arbitrary code via crafted MP4 content.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/61421" source="XF">realplayer-yuv420-code-execution(61421)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2216" source="VUPEN">ADV-2010-2216</ref>
      <ref url="http://www.securitytracker.com/id?1024370" source="SECTRACK">1024370</ref>
      <ref url="http://service.real.com/realplayer/security/08262010_player/en/" source="CONFIRM" adv="1">http://service.real.com/realplayer/security/08262010_player/en/</ref>
      <ref url="http://secunia.com/secunia_research/2010-5/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-5/</ref>
      <ref url="http://secunia.com/advisories/41154" source="SECUNIA">41154</ref>
      <ref url="http://secunia.com/advisories/41096" source="SECUNIA">41096</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7169" source="OVAL">oval:org.mitre.oval:def:7169</ref>
    </refs>
    <vuln_soft>
      <prod vendor="realnetworks" name="realplayer">
        <vers num="11.0"/>
        <vers num="11.1"/>
      </prod>
      <prod vendor="realnetworks" name="realplayer_sp">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.5"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0118" published="2010-02-24" name="CVE-2010-0118" modified="2010-03-12" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:P/A:P)" CVSS_score="3.3" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="3.4" CVSS_base_score="3.3">
    <desc>
      <descript source="cve">Bournal before 1.4.1 allows local users to overwrite arbitrary files via a symlink attack on unspecified temporary files associated with a --hack_the_gibson update check.</descript>
    </desc>
    <loss_types>
      <avail/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38353" source="BID">38353</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509685/100/0/threaded" source="BUGTRAQ">20100222 Secunia Research: Bournal Insecure Temporary Files Security Issue</ref>
      <ref url="http://secunia.com/secunia_research/2010-6/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-6/</ref>
      <ref url="http://secunia.com/advisories/38814" source="SECUNIA">38814</ref>
      <ref url="http://secunia.com/advisories/38554" source="SECUNIA" adv="1">38554</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036764.html" source="FEDORA">FEDORA-2010-3168</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036701.html" source="FEDORA">FEDORA-2010-3221</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036697.html" source="FEDORA">FEDORA-2010-3301</ref>
    </refs>
    <vuln_soft>
      <prod vendor="becauseinter" name="bournal">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.4.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.1"/>
        <vers num="1.2"/>
        <vers num="1.3"/>
        <vers prev="1" num="1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0119" published="2010-02-24" name="CVE-2010-0119" modified="2010-03-12" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="2.1" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.9" CVSS_base_score="2.1">
    <desc>
      <descript source="cve">Bournal before 1.4.1 on FreeBSD 8.0, when the -K option is used, places a ccrypt key on the command line, which allows local users to obtain sensitive information by listing the process and its arguments, related to "echoing."</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38352" source="BID">38352</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509688/100/0/threaded" source="BUGTRAQ">20100222 Secunia Research: Bournal ccrypt Information Disclosure Security Issue</ref>
      <ref url="http://secunia.com/secunia_research/2010-7/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-7/</ref>
      <ref url="http://secunia.com/advisories/38814" source="SECUNIA">38814</ref>
      <ref url="http://secunia.com/advisories/38723" source="SECUNIA" adv="1">38723</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036764.html" source="FEDORA">FEDORA-2010-3168</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036701.html" source="FEDORA">FEDORA-2010-3221</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036697.html" source="FEDORA">FEDORA-2010-3301</ref>
    </refs>
    <vuln_soft>
      <prod vendor="becauseinter" name="bournal">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.4.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.1"/>
        <vers num="1.2"/>
        <vers num="1.3"/>
        <vers prev="1" num="1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0120" published="2010-08-30" name="CVE-2010-0120" modified="2011-07-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows allows remote attackers to execute arbitrary code via large size values in QCP audio content.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/61422" source="XF">realplayer-qcp-audio-bo(61422)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2216" source="VUPEN">ADV-2010-2216</ref>
      <ref url="http://www.securitytracker.com/id?1024370" source="SECTRACK">1024370</ref>
      <ref url="http://service.real.com/realplayer/security/08262010_player/en/" source="CONFIRM" adv="1">http://service.real.com/realplayer/security/08262010_player/en/</ref>
      <ref url="http://secunia.com/secunia_research/2010-8/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-8/</ref>
      <ref url="http://secunia.com/advisories/41154" source="SECUNIA">41154</ref>
      <ref url="http://secunia.com/advisories/41096" source="SECUNIA">41096</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6807" source="OVAL">oval:org.mitre.oval:def:6807</ref>
    </refs>
    <vuln_soft>
      <prod vendor="realnetworks" name="realplayer">
        <vers num="11.0"/>
        <vers num="11.1"/>
      </prod>
      <prod vendor="realnetworks" name="realplayer_sp">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.5"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0121" published="2010-12-14" name="CVE-2010-0121" modified="2011-01-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, Mac RealPlayer 11.0 through 12.0.0.1444, and Linux RealPlayer 11.0.2.1744 does not properly perform initialization, which has unspecified impact and attack vectors.</descript>
      <descript source="nvd">Per: http://cwe.mitre.org/data/definitions/665.html

'CWE-665: Improper Initialization'</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securitytracker.com/id?1024861" source="SECTRACK">1024861</ref>
      <ref url="http://service.real.com/realplayer/security/12102010_player/en/" source="CONFIRM" adv="1">http://service.real.com/realplayer/security/12102010_player/en/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="realnetworks" name="realplayer">
        <vers num="11.0"/>
        <vers num="11.0.1"/>
        <vers num="11.0.2"/>
        <vers num="11.0.2.1744"/>
        <vers num="11.0.3"/>
        <vers num="11.0.4"/>
        <vers num="11.0.5"/>
        <vers num="11.1"/>
        <vers num="12.0.0.1444"/>
      </prod>
      <prod vendor="realnetworks" name="realplayer_sp">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.5"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0122" published="2010-03-15" name="CVE-2010-0122" modified="2010-03-15" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Multiple SQL injection vulnerabilities in Employee Timeclock Software 0.99 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to (a) auth.php or (b) login_action.php.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56799" source="XF">timeclock-auth-sql-injection(56799)</ref>
      <ref url="http://www.securityfocus.com/bid/38639" source="BID">38639</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509995/100/0/threaded" source="BUGTRAQ">20100310 Secunia Research: Employee Timeclock Software SQL Injection Vulnerabilities</ref>
      <ref url="http://www.osvdb.org/62832" source="OSVDB">62832</ref>
      <ref url="http://www.osvdb.org/62831" source="OSVDB">62831</ref>
      <ref url="http://secunia.com/secunia_research/2010-11/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-11/</ref>
      <ref url="http://secunia.com/advisories/38739" source="SECUNIA" adv="1">38739</ref>
    </refs>
    <vuln_soft>
      <prod vendor="timeclock-software" name="employee_timeclock_software">
        <vers num="0.99"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0123" published="2010-03-15" name="CVE-2010-0123" modified="2010-03-15" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The database backup implementation in Employee Timeclock Software 0.99 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for a "semi-predictable file name."</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56798" source="XF">timeclock-database-info-disclosure(56798)</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509990/100/0/threaded" source="BUGTRAQ">20100310 Secunia Research: Employee Timeclock Software Backup Information Disclosure</ref>
      <ref url="http://www.osvdb.org/62833" source="OSVDB">62833</ref>
      <ref url="http://secunia.com/secunia_research/2010-10/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-10/</ref>
      <ref url="http://secunia.com/advisories/38739" source="SECUNIA" adv="1">38739</ref>
    </refs>
    <vuln_soft>
      <prod vendor="timeclock-software" name="employee_timeclock_software">
        <vers num="0.99"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0124" published="2010-03-15" name="CVE-2010-0124" modified="2010-03-15" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="2.1" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.9" CVSS_base_score="2.1">
    <desc>
      <descript source="cve">Employee Timeclock Software 0.99 places the database password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56800" source="XF">timeclock-mysqldump-info-disclosure(56800)</ref>
      <ref url="http://www.securityfocus.com/bid/38642" source="BID">38642</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509996/100/0/threaded" source="BUGTRAQ">20100310 Secunia Research: Employee Timeclock Software "mysqldump" Password Disclosure</ref>
      <ref url="http://www.osvdb.org/62830" source="OSVDB">62830</ref>
      <ref url="http://secunia.com/secunia_research/2010-12/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-12/</ref>
      <ref url="http://secunia.com/advisories/38739" source="SECUNIA" adv="1">38739</ref>
    </refs>
    <vuln_soft>
      <prod vendor="timeclock-software" name="employee_timeclock_software">
        <vers num="0.99"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0125" published="2010-12-14" name="CVE-2010-0125" modified="2011-02-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, RealPlayer Enterprise 2.1.2, and Mac RealPlayer 11.0 through 12.0.0.1444 do not properly parse spectral data in AAC files, which has unspecified impact and remote attack vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securitytracker.com/id?1024861" source="SECTRACK">1024861</ref>
      <ref url="http://service.real.com/realplayer/security/12102010_player/en/" source="CONFIRM" adv="1">http://service.real.com/realplayer/security/12102010_player/en/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="realnetworks" name="realplayer">
        <vers num="11.0"/>
        <vers num="11.0.1"/>
        <vers num="11.0.2"/>
        <vers num="11.0.3"/>
        <vers num="11.0.4"/>
        <vers num="11.0.5"/>
        <vers num="11.1"/>
        <vers num="12.0.0.1444"/>
        <vers num="2.1.2" edition=""/>
        <vers num="2.1.2" edition=":enterprise"/>
      </prod>
      <prod vendor="realnetworks" name="realplayer_sp">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.5"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0126" published="2010-08-17" name="CVE-2010-0126" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in an unspecified library in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted compound file, as demonstrated using a Quattro Pro file, which is not properly handled by the Quattro speed reader (qpssr.dll).</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01</ref>
      <ref url="http://www.securityfocus.com/bid/41928" source="BID">41928</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg21440812" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg21440812</ref>
      <ref url="http://secunia.com/secunia_research/2010-16/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-16/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="autonomy" name="keyview_export_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_filter_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_viewer_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0127" published="2010-05-13" name="CVE-2010-0127" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Shockwave Player before 11.5.7.609 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted FFFFFF45h Shockwave 3D blocks in a Shockwave file.</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://www.adobe.com/support/security/bulletins/apsb10-12.html

'Adobe recommends users of Adobe Shockwave Player 11.5.6.606 and earlier versions update to Adobe Shockwave Player 11.5.7.609'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1128" source="VUPEN" patch="1" adv="1">ADV-2010-1128</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-12.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-12.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511260/100/0/threaded" source="BUGTRAQ">20100512 Secunia Research: Adobe Shockwave Player 3D Parsing Memory Corruption</ref>
      <ref url="http://secunia.com/secunia_research/2010-17/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-17/</ref>
      <ref url="http://secunia.com/advisories/38751" source="SECUNIA" adv="1">38751</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7477" source="OVAL">oval:org.mitre.oval:def:7477</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="shockwave_player">
        <vers num="1.0"/>
        <vers num="10.1.0.11"/>
        <vers num="11.0.0.456"/>
        <vers num="11.5.0.595"/>
        <vers num="11.5.0.596"/>
        <vers num="11.5.1.601"/>
        <vers num="11.5.2.602"/>
        <vers prev="1" num="11.5.6.606"/>
        <vers num="2.0"/>
        <vers num="3.0"/>
        <vers num="4.0"/>
        <vers num="5.0"/>
        <vers num="6.0"/>
        <vers num="8.0"/>
        <vers num="8.5.1"/>
        <vers num="9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0128" published="2010-05-13" name="CVE-2010-0128" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer signedness error in dirapi.dll in Adobe Shockwave Player before 11.5.7.609 and Adobe Director before 11.5.7.609 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .dir file that triggers an invalid read operation.</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://www.adobe.com/support/security/bulletins/apsb10-12.html

'Adobe recommends users of Adobe Shockwave Player 11.5.6.606 and earlier versions update to Adobe Shockwave Player 11.5.7.609'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1128" source="VUPEN" patch="1" adv="1">ADV-2010-1128</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-12.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-12.html</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511261/100/0/threaded" source="BUGTRAQ">20100512 Secunia Research: Adobe Shockwave Player Signedness Error Vulnerability</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511240/100/0/threaded" source="BUGTRAQ">20100511 [CORE-2010-0405] Adobe Director Invalid Read</ref>
      <ref url="http://www.coresecurity.com/content/adobe-director-invalid-read" source="MISC">http://www.coresecurity.com/content/adobe-director-invalid-read</ref>
      <ref url="http://secunia.com/secunia_research/2010-19/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-19/</ref>
      <ref url="http://secunia.com/advisories/38751" source="SECUNIA" adv="1">38751</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7273" source="OVAL">oval:org.mitre.oval:def:7273</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="director">
        <vers num="11.0.0.426"/>
        <vers prev="1" num="11.5"/>
      </prod>
      <prod vendor="adobe" name="shockwave_player">
        <vers num="1.0"/>
        <vers num="10.1.0.11"/>
        <vers num="11.0.0.456"/>
        <vers num="11.5.0.595"/>
        <vers num="11.5.0.596"/>
        <vers num="11.5.1.601"/>
        <vers num="11.5.2.602"/>
        <vers prev="1" num="11.5.6.606"/>
        <vers num="2.0"/>
        <vers num="3.0"/>
        <vers num="4.0"/>
        <vers num="5.0"/>
        <vers num="6.0"/>
        <vers num="8.0"/>
        <vers num="8.5.1"/>
        <vers num="9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0129" published="2010-05-13" name="CVE-2010-0129" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Multiple integer overflows in Adobe Shockwave Player before 11.5.7.609 allow remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .dir (aka Director) file that triggers an array index error.</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://www.adobe.com/support/security/bulletins/apsb10-12.html

'Adobe recommends users of Adobe Shockwave Player 11.5.6.606 and earlier versions update to Adobe Shockwave Player 11.5.7.609'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1128" source="VUPEN" patch="1" adv="1">ADV-2010-1128</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-12.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-12.html</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=869" source="IDEFENSE" patch="1">20100511 Abobe Shockwave Player Heap Memory Indexing Vulnerability</ref>
      <ref url="http://www.securityfocus.com/bid/40082" source="BID">40082</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511262/100/0/threaded" source="BUGTRAQ">20100512 Secunia Research: Adobe Shockwave Player Array Indexing Vulnerability</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511256/100/0/threaded" source="BUGTRAQ">20100512 [CAL-20100204-2]Adobe Shockwave Player Director File Parsing integer overflow vulnerability</ref>
      <ref url="http://secunia.com/secunia_research/2010-20/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-20/</ref>
      <ref url="http://secunia.com/advisories/38751" source="SECUNIA" adv="1">38751</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7134" source="OVAL">oval:org.mitre.oval:def:7134</ref>
      <ref url="http://hi.baidu.com/fs_fx/blog/item/fa74a61705b5e24621a4e951.html" source="MISC">http://hi.baidu.com/fs_fx/blog/item/fa74a61705b5e24621a4e951.html</ref>
      <ref url="http://archives.neohapsis.com/archives/fulldisclosure/2010-05/0138.html" source="FULLDISC">20100511 [CAL-20100204-2]Adobe Shockwave Player Director File Parsing integer overflow vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="shockwave_player">
        <vers num="1.0"/>
        <vers num="10.1.0.11"/>
        <vers num="11.0.0.456"/>
        <vers num="11.5.0.595"/>
        <vers num="11.5.0.596"/>
        <vers num="11.5.1.601"/>
        <vers num="11.5.2.602"/>
        <vers prev="1" num="11.5.6.606"/>
        <vers num="2.0"/>
        <vers num="3.0"/>
        <vers num="4.0"/>
        <vers num="5.0"/>
        <vers num="6.0"/>
        <vers num="8.0"/>
        <vers num="8.5.1"/>
        <vers num="9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0130" published="2010-05-13" name="CVE-2010-0130" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer overflow in Adobe Shockwave Player before 11.5.7.609 might allow remote attackers to execute arbitrary code via a crafted .dir (aka Director) file.</descript>
    </desc>
    <sols>
      <sol source="nvd">Per: http://www.adobe.com/support/security/bulletins/apsb10-12.html

'Adobe recommends users of Adobe Shockwave Player 11.5.6.606 and earlier versions update to Adobe Shockwave Player 11.5.7.609'</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1128" source="VUPEN" patch="1" adv="1">ADV-2010-1128</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-12.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-12.html</ref>
      <ref url="http://www.securityfocus.com/bid/40084" source="BID">40084</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511263/100/0/threaded" source="BUGTRAQ">20100512 Secunia Research: Adobe Shockwave Player Integer Overflow Vulnerability</ref>
      <ref url="http://secunia.com/secunia_research/2010-22/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-22/</ref>
      <ref url="http://secunia.com/advisories/38751" source="SECUNIA" adv="1">38751</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7108" source="OVAL">oval:org.mitre.oval:def:7108</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="shockwave_player">
        <vers num="1.0"/>
        <vers num="10.1.0.11"/>
        <vers num="11.0.0.456"/>
        <vers num="11.5.0.595"/>
        <vers num="11.5.0.596"/>
        <vers num="11.5.1.601"/>
        <vers num="11.5.2.602"/>
        <vers prev="1" num="11.5.6.606"/>
        <vers num="2.0"/>
        <vers num="3.0"/>
        <vers num="4.0"/>
        <vers num="5.0"/>
        <vers num="6.0"/>
        <vers num="8.0"/>
        <vers num="8.5.1"/>
        <vers num="9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0131" published="2010-08-17" name="CVE-2010-0131" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Stack-based buffer overflow in the SpreadSheet Lotus 123 reader (wkssr.dll), as used in Autonomy KeyView 10.4 and 10.9, Symantec Mail Security, and possibly other products, allows remote attackers to execute arbitrary code via unspecified vectors related to floating point conversion in unknown record types.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01</ref>
      <ref url="http://www.securityfocus.com/bid/41928" source="BID">41928</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg21440812" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg21440812</ref>
      <ref url="http://secunia.com/secunia_research/2010-25/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-25/</ref>
      <ref url="http://secunia.com/secunia_research/2010-23/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-23/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="autonomy" name="keyview_export_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_filter_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_viewer_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="symantec" name="mail_security">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0132" published="2010-03-31" name="CVE-2010-0132" modified="2010-05-20" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_score="2.6" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="4.9" CVSS_base_score="2.6">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in ViewVC 1.1 before 1.1.5 and 1.0 before 1.0.11, when the regular expression search functionality is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors related to "search_re input," a different vulnerability than CVE-2010-0736.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0743" source="VUPEN" patch="1" adv="1">ADV-2010-0743</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0844" source="VUPEN">ADV-2010-0844</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510408/100/0/threaded" source="BUGTRAQ">20100330 Secunia Research: ViewVC Regular Expression Search Cross-Site Scripting</ref>
      <ref url="http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2342&amp;r2=2359&amp;pathrev=HEAD" source="CONFIRM">http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2342&amp;r2=2359&amp;pathrev=HEAD</ref>
      <ref url="http://secunia.com/secunia_research/2010-26/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-26/</ref>
      <ref url="http://secunia.com/advisories/38918" source="SECUNIA" adv="1">38918</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00002.html" source="SUSE">SUSE-SR:2010:009</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038925.html" source="FEDORA">FEDORA-2010-5805</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038456.html" source="FEDORA">FEDORA-2010-5524</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038420.html" source="FEDORA">FEDORA-2010-5507</ref>
    </refs>
    <vuln_soft>
      <prod vendor="viewvc" name="viewvc">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.10"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0133" published="2010-08-17" name="CVE-2010-0133" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Multiple stack-based buffer overflows in the SpreadSheet Lotus 123 reader (wkssr.dll) in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allow remote attackers to execute arbitrary code via unspecified vectors related to "certain records."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01</ref>
      <ref url="http://www.securityfocus.com/bid/41928" source="BID">41928</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg21440812" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg21440812</ref>
      <ref url="http://secunia.com/secunia_research/2010-28/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-28/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="autonomy" name="keyview_export_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_filter_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_viewer_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0134" published="2010-08-17" name="CVE-2010-0134" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer signedness error in rtfsr.dll in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted \ls keyword in a list override table entry in an RTF file, which triggers a buffer overflow.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01</ref>
      <ref url="http://www.securityfocus.com/bid/41928" source="BID">41928</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg21440812" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg21440812</ref>
      <ref url="http://secunia.com/secunia_research/2010-27/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-27/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="autonomy" name="keyview_export_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_filter_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_viewer_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0135" published="2010-08-17" name="CVE-2010-0135" modified="2013-02-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in the WordPerfect 5.x reader (wosr.dll), as used in Autonomy KeyView 10.4 and 10.9 and possibly other products, allows remote attackers to execute arbitrary code via unspecified vectors related to "data blocks."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01" source="CONFIRM">http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100727_01</ref>
      <ref url="http://www.securityfocus.com/bid/41928" source="BID">41928</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg21440812" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg21440812</ref>
      <ref url="http://secunia.com/secunia_research/2010-31/" source="MISC" adv="1">http://secunia.com/secunia_research/2010-31/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="autonomy" name="keyview_export_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_filter_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
      <prod vendor="autonomy" name="keyview_viewer_sdk">
        <vers num="10.4"/>
        <vers num="10.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0136" published="2010-02-16" name="CVE-2010-0136" modified="2010-11-11" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">OpenOffice.org (OOo) 2.0.4, 2.4.1, and 3.1.1 does not properly enforce Visual Basic for Applications (VBA) macro security settings, which allows remote attackers to run arbitrary macros via a crafted document.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/2905" source="VUPEN">ADV-2010-2905</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0635" source="VUPEN">ADV-2010-0635</ref>
      <ref url="http://www.ubuntu.com/usn/USN-903-1" source="UBUNTU">USN-903-1</ref>
      <ref url="http://www.securityfocus.com/bid/38245" source="BID">38245</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:221" source="MANDRIVA">MDVSA-2010:221</ref>
      <ref url="http://www.mail-archive.com/debian-openoffice@lists.debian.org/msg23178.html" source="MLIST">[debian-openoffice] 20100212 ./packages/openofficeorg/3.1.1/unstable r1866: merge 1:3.1.1-15+squeeze1</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1995" source="DEBIAN">DSA-1995</ref>
      <ref url="http://securitytracker.com/id?1023588" source="SECTRACK">1023588</ref>
      <ref url="http://secunia.com/advisories/38921" source="SECUNIA">38921</ref>
      <ref url="http://secunia.com/advisories/38695" source="SECUNIA">38695</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00005.html" source="SUSE">SUSE-SA:2010:017</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="openoffice.org">
        <vers num="2.0.4"/>
        <vers num="2.4.1"/>
        <vers num="3.1.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0137" published="2010-01-21" name="CVE-2010-0137" modified="2010-01-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the sshd_child_handler process in the SSH server in Cisco IOS XR 3.4.1 through 3.7.0 allows remote attackers to cause a denial of service (process crash and memory consumption) via a crafted SSH2 packet, aka Bug ID CSCsu10574.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b13512.shtml" source="CISCO" patch="1" adv="1">20100120 Cisco IOS XR Software SSH Denial of Service Vulnerability</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55767" source="XF">ciscoios-ssh-dos(55767)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0183" source="VUPEN" adv="1">ADV-2010-0183</ref>
      <ref url="http://www.securityfocus.com/bid/37878" source="BID">37878</ref>
      <ref url="http://securitytracker.com/id?1023480" source="SECTRACK">1023480</ref>
      <ref url="http://secunia.com/advisories/38227" source="SECUNIA" adv="1">38227</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="ios_xr">
        <vers num="3.4.1"/>
        <vers num="3.4.2"/>
        <vers num="3.4.3"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.6.0"/>
        <vers num="3.6.1"/>
        <vers num="3.7.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0138" published="2010-01-21" name="CVE-2010-0138" modified="2010-01-22" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Buffer overflow in Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 and earlier on Windows, as distributed in CiscoWorks LAN Management Solution (LMS), allows remote attackers to execute arbitrary code via a malformed getProcessName CORBA General Inter-ORB Protocol (GIOP) request, related to a "third-party component," aka Bug ID CSCsv62350.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55768" source="XF">cisco-ipm-corba-bo(55768)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-004/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-004/</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0184" source="VUPEN" adv="1">ADV-2010-0184</ref>
      <ref url="http://www.securityfocus.com/bid/37879" source="BID">37879</ref>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1351d.shtml" source="CISCO" adv="1">20100120 CiscoWorks Internetwork Performance Monitor CORBA GIOP Overflow Vulnerability</ref>
      <ref url="http://securitytracker.com/id?1023484" source="SECTRACK">1023484</ref>
      <ref url="http://secunia.com/advisories/38230" source="SECUNIA" adv="1">38230</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="ciscoworks_internetwork_performance_monitor">
        <vers num="2.4"/>
        <vers num="2.5"/>
        <vers prev="1" num="2.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0139" published="2010-01-28" name="CVE-2010-0139" modified="2011-01-07" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:C)" CVSS_score="9.0" CVSS_impact_subscore="8.5" CVSS_exploit_subscore="10.0" CVSS_base_score="9.0">
    <desc>
      <descript source="cve">Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.2, and possibly 5 does not properly validate SQL commands, which allows remote attackers to create, modify, or delete data in a database via unspecified vectors, aka Bug ID CSCtc39691.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" source="CISCO" patch="1" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
      <ref url="http://www.securityfocus.com/bid/37965" source="BID">37965</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="unified_meetingplace">
        <vers num="5"/>
        <vers num="5.0"/>
        <vers num="6.0"/>
        <vers num="6.0.170.0"/>
        <vers num="6.0.244"/>
        <vers num="7.0"/>
        <vers num="7.0.1"/>
        <vers num="7.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0140" published="2010-01-28" name="CVE-2010-0140" modified="2010-01-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Multiple unspecified vulnerabilities in the web server in Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.3, and possibly 5 allow remote attackers to create (1) user or (2) administrator accounts via a crafted URL in a request to the internal interface, aka Bug IDs CSCtc59231 and CSCtd40661.</descript>
      <descript source="nvd">Per: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml


Affected Products
Vulnerable Products

Cisco Unified MeetingPlace versions 5, 6, and 7 are each affected by at least one of the vulnerabilities described in this document.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" source="CISCO" patch="1" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
      <ref url="http://www.securityfocus.com/bid/37965" source="BID">37965</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="unified_meetingplace">
        <vers num="5.2"/>
        <vers num="5.3"/>
        <vers num="5.4"/>
        <vers num="6.0"/>
        <vers num="7.0"/>
        <vers num="7.0.1"/>
        <vers num="7.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0141" published="2010-01-28" name="CVE-2010-0141" modified="2011-01-07" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_score="6.4" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="10.0" CVSS_base_score="6.4">
    <desc>
      <descript source="cve">MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote attackers to discover usernames, passwords, and unspecified other data from the user database via a modified authentication sequence to the Audio Server, aka Bug ID CSCsv76935.</descript>
    </desc>
    <loss_types>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" source="CISCO" patch="1" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
      <ref url="http://www.securityfocus.com/bid/37965" source="BID">37965</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="unified_meetingplace">
        <vers num="6.0"/>
        <vers num="6.0.170.0"/>
        <vers num="6.0.244"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0142" published="2010-01-28" name="CVE-2010-0142" modified="2010-01-31" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:C/I:C/A:C)" CVSS_score="8.5" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="6.8" CVSS_base_score="8.5">
    <desc>
      <descript source="cve">MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote authenticated users to gain privileges via a modified authentication sequence, aka Bug ID CSCsv66530.</descript>
      <descript source="nvd">Per: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml


Affected Products
Vulnerable Products

Cisco Unified MeetingPlace versions 5, 6, and 7 are each affected by at least one of the vulnerabilities described in this document.

</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" source="CISCO" patch="1" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
      <ref url="http://www.securityfocus.com/bid/37965" source="BID">37965</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="unified_meetingplace">
        <vers num="5.2"/>
        <vers num="5.3"/>
        <vers num="5.4"/>
        <vers num="6.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0143" published="2010-02-11" name="CVE-2010-0143" modified="2010-02-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the administrative interface in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote attackers to read arbitrary files via unknown vectors, aka IronPort Bug 65921.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b17903.shtml" source="CISCO" patch="1" adv="1">20100210 Multiple Vulnerabilities in Cisco IronPort Encryption Appliance</ref>
      <ref url="http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a0080b17904.html" source="CONFIRM" adv="1">http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a0080b17904.html</ref>
      <ref url="http://secunia.com/advisories/38525" source="SECUNIA">38525</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="ironport_encryption_appliance">
        <vers num="6.2.4"/>
        <vers num="6.2.4.1"/>
        <vers num="6.2.5"/>
        <vers num="6.2.6"/>
        <vers num="6.2.7"/>
        <vers num="6.2.7.1"/>
        <vers num="6.2.7.2"/>
        <vers num="6.2.7.3"/>
        <vers num="6.2.7.4"/>
        <vers num="6.2.7.5"/>
        <vers num="6.2.7.6"/>
        <vers num="6.5"/>
        <vers num="6.5.0.1"/>
      </prod>
      <prod vendor="cisco" name="ironport_postx">
        <vers num="6.2.1"/>
        <vers num="6.2.2"/>
        <vers num="6.2.2.1"/>
        <vers num="6.2.2.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0144" published="2010-02-11" name="CVE-2010-0144" modified="2010-02-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the WebSafe DistributorServlet in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote attackers to read arbitrary files via unknown vectors, aka IronPort Bug 65922.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b17903.shtml" source="CISCO" patch="1" adv="1">20100210 Multiple Vulnerabilities in Cisco IronPort Encryption Appliance</ref>
      <ref url="http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a0080b17904.html" source="CONFIRM" adv="1">http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a0080b17904.html</ref>
      <ref url="http://secunia.com/advisories/38525" source="SECUNIA">38525</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="ironport_encryption_appliance">
        <vers num="6.2.4"/>
        <vers num="6.2.4.1"/>
        <vers num="6.2.5"/>
        <vers num="6.2.6"/>
        <vers num="6.2.7"/>
        <vers num="6.2.7.1"/>
        <vers num="6.2.7.2"/>
        <vers num="6.2.7.3"/>
        <vers num="6.2.7.4"/>
        <vers num="6.2.7.5"/>
        <vers num="6.2.7.6"/>
        <vers num="6.5"/>
        <vers num="6.5.0.1"/>
      </prod>
      <prod vendor="cisco" name="ironport_postx">
        <vers num="6.2.1"/>
        <vers num="6.2.2"/>
        <vers num="6.2.2.1"/>
        <vers num="6.2.2.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0145" published="2010-02-11" name="CVE-2010-0145" modified="2010-02-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote attackers to execute arbitrary code via unknown vectors, aka IronPort Bug 65923.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b17903.shtml" source="CISCO" patch="1" adv="1">20100210 Multiple Vulnerabilities in Cisco IronPort Encryption Appliance</ref>
      <ref url="http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a0080b17904.html" source="CONFIRM" adv="1">http://www.cisco.com/en/US/products/products_applied_mitigation_bulletin09186a0080b17904.html</ref>
      <ref url="http://secunia.com/advisories/38525" source="SECUNIA">38525</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="ironport_encryption_appliance">
        <vers num="6.2.4"/>
        <vers num="6.2.4.1"/>
        <vers num="6.2.5"/>
        <vers num="6.2.6"/>
        <vers num="6.2.7"/>
        <vers num="6.2.7.1"/>
        <vers num="6.2.7.2"/>
        <vers num="6.2.7.3"/>
        <vers num="6.2.7.4"/>
        <vers num="6.2.7.5"/>
        <vers num="6.2.7.6"/>
        <vers num="6.5"/>
        <vers num="6.5.0.1"/>
      </prod>
      <prod vendor="cisco" name="ironport_postx">
        <vers num="6.2.1"/>
        <vers num="6.2.2"/>
        <vers num="6.2.2.1"/>
        <vers num="6.2.2.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0146" published="2010-02-23" name="CVE-2010-0146" modified="2010-02-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:C/I:N/A:N)" CVSS_score="6.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="8.0" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Directory traversal vulnerability in the Management Center for Cisco Security Agents 6.0 allows remote authenticated users to read arbitrary files via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910d.shtml" source="CISCO" patch="1" adv="1">20100217 Multiple Vulnerabilities in Cisco Security Agent</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56345" source="XF">cisco-sa-mgmtcenter-dir-traversal(56345)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0416" source="VUPEN" adv="1">ADV-2010-0416</ref>
      <ref url="http://www.securitytracker.com/id?1023606" source="SECTRACK">1023606</ref>
      <ref url="http://www.securityfocus.com/bid/38271" source="BID">38271</ref>
      <ref url="http://secunia.com/advisories/38619" source="SECUNIA" adv="1">38619</ref>
      <ref url="http://osvdb.org/62443" source="OSVDB">62443</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="security_agent">
        <vers num="6.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0147" published="2010-02-23" name="CVE-2010-0147" modified="2010-03-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_score="6.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.0" CVSS_base_score="6.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Management Center for Cisco Security Agents 5.1 before 5.1.0.117, 5.2 before 5.2.0.296, and 6.0 before 6.0.1.132 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910d.shtml" source="CISCO" patch="1" adv="1">20100217 Multiple Vulnerabilities in Cisco Security Agent</ref>
      <ref url="http://secunia.com/advisories/38619" source="SECUNIA" patch="1" adv="1">38619</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56346" source="XF">cisco-sa-mgmtcenter-sql-injection(56346)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0416" source="VUPEN" adv="1">ADV-2010-0416</ref>
      <ref url="http://www.securitytracker.com/id?1023606" source="SECTRACK">1023606</ref>
      <ref url="http://www.securityfocus.com/bid/38272" source="BID">38272</ref>
      <ref url="http://osvdb.org/62444" source="OSVDB">62444</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="security_agent">
        <vers num="5.1"/>
        <vers num="5.2"/>
        <vers num="6.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0148" published="2010-02-23" name="CVE-2010-0148" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in Cisco Security Agent 5.2 before 5.2.0.285, when running on Linux, allows remote attackers to cause a denial of service (kernel panic) via "a series of TCP packets."</descript>
      <descript source="nvd">Per:  http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910d.shtml

Only Cisco Security Agent release 5.2 for Linux, either managed or standalone, are affected by the DoS vulnerability (the Windows version is not affected).

The Linux version of standalone agents are installed in the following products:

    * Cisco Unified Communications Manager (CallManager)
    * IPCC Express
    * IP Interactive Voice Response (IP IVR)
    * Cisco Unified Meeting Place
    * Cisco Personal Assistant (PA)
    * Cisco Unity Connection

Note:  The Sun Solaris version of the Cisco Security Agent is not affected by these vulnerabilities. Only Cisco Security Agent release 5.2 for Linux, either managed or standalone, are affected by the DoS vulnerability. "</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910d.shtml" source="CISCO" patch="1" adv="1">20100217 Multiple Vulnerabilities in Cisco Security Agent</ref>
      <ref url="http://secunia.com/advisories/38619" source="SECUNIA" patch="1" adv="1">38619</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56347" source="XF">cisco-securityagent-tcp-dos(56347)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0416" source="VUPEN" adv="1">ADV-2010-0416</ref>
      <ref url="http://www.securitytracker.com/id?1023607" source="SECTRACK">1023607</ref>
      <ref url="http://www.securityfocus.com/bid/38273" source="BID">38273</ref>
      <ref url="http://osvdb.org/62445" source="OSVDB">62445</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="security_agent">
        <vers num="5.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0149" published="2010-02-19" name="CVE-2010-0149" modified="2010-02-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.2 before 7.2(4.46), 8.0 before 8.0(4.38), 8.1 before 8.1(2.29), and 8.2 before 8.2(1.5); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (prevention of new connections) via crafted TCP segments during termination of the TCP connection that cause the connection to remain in CLOSEWAIT status, aka "TCP Connection Exhaustion Denial of Service Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56336" source="XF">cisco-asa-tcp-dos(56336)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0415" source="VUPEN" adv="1">ADV-2010-0415</ref>
      <ref url="http://www.securitytracker.com/id?1023612" source="SECTRACK">1023612</ref>
      <ref url="http://www.securityfocus.com/bid/38275" source="BID">38275</ref>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910c.shtml" source="CISCO" adv="1">20100217 Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances</ref>
      <ref url="http://secunia.com/advisories/38636" source="SECUNIA" adv="1">38636</ref>
      <ref url="http://secunia.com/advisories/38618" source="SECUNIA" adv="1">38618</ref>
      <ref url="http://osvdb.org/62433" source="OSVDB">62433</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="asa_5500">
        <vers num="7.1"/>
        <vers num="7.2"/>
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.2"/>
      </prod>
      <prod vendor="cisco" name="pix_500">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0150" published="2010-02-19" name="CVE-2010-0150" modified="2010-02-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.0 before 7.0(8.10), 7.2 before 7.2(4.45), 8.0 before 8.0(5.2), 8.1 before 8.1(2.37), and 8.2 before 8.2(1.16); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCsy91157.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56338" source="XF">cisco-asa5500-sip-dos(56338)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0415" source="VUPEN" adv="1">ADV-2010-0415</ref>
      <ref url="http://www.securitytracker.com/id?1023612" source="SECTRACK">1023612</ref>
      <ref url="http://www.securityfocus.com/bid/38277" source="BID">38277</ref>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910c.shtml" source="CISCO" adv="1">20100217 Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances</ref>
      <ref url="http://secunia.com/advisories/38636" source="SECUNIA" adv="1">38636</ref>
      <ref url="http://secunia.com/advisories/38618" source="SECUNIA" adv="1">38618</ref>
      <ref url="http://osvdb.org/62434" source="OSVDB">62434</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="asa_5500">
        <vers num="7.1"/>
        <vers num="7.2"/>
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.2"/>
      </prod>
      <prod vendor="cisco" name="pix_500">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0151" published="2010-02-19" name="CVE-2010-0151" modified="2010-02-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The Cisco Firewall Services Module (FWSM) 4.0 before 4.0(8), as used in for the Cisco Catalyst 6500 switches, Cisco 7600 routers, and ASA 5500 Adaptive Security Appliances, allows remote attackers to cause a denial of service (crash) via a malformed Skinny Client Control Protocol (SCCP) message.</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910e.shtml

"All non-fixed 4.x versions of Cisco FWSM Software are affected by this vulnerability if SCCP inspection is enabled. SCCP inspection is enabled by default."</impact>
    </impacts>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910e.shtml" source="CISCO" patch="1" adv="1">20100217 Cisco Firewall Services Module Skinny Client Control Protocol Inspection Denial of Service Vulnerability</ref>
      <ref url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1910c.shtml" source="CISCO" patch="1" adv="1">20100217 Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56333" source="XF">cisco-fwsm-asa-sccp-dos(56333)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0418" source="VUPEN">ADV-2010-0418</ref>
      <ref url="http://www.securitytracker.com/id?1023609" source="SECTRACK">1023609</ref>
      <ref url="http://www.securityfocus.com/bid/38274" source="BID">38274</ref>
      <ref url="http://secunia.com/advisories/38621" source="SECUNIA" adv="1">38621</ref>
      <ref url="http://osvdb.org/62432" source="OSVDB">62432</ref>
    </refs>
    <vuln_soft>
      <prod vendor="cisco" name="firewall_services_module">
        <vers num="4.0"/>
        <vers num="4.0(4)"/>
        <vers num="4.0(6)"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0152" published="2010-09-14" name="CVE-2010-0152" modified="2010-09-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 allow remote attackers to inject arbitrary web script or HTML via (1) the date1 parameter to pvm_messagestore.php, (2) the userfilter parameter to pvm_user_management.php, (3) the ping parameter to sys_tools.php in a sys_ping.php action, (4) the action parameter to pvm_cert_commaction.php, (5) the action parameter to pvm_cert_serveraction.php, (6) the action parameter to pvm_smtpstore.php, (7) the l parameter to sla/index.php, or (8) unspecified stored data; and allow remote authenticated users to inject arbitrary web script or HTML via (9) saved search filters.</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.ventuneac.net/security-advisories/MVSA-10-007

Affected Versions

IBM Proventia Network Mail Security System - virtual appliance (firmware 1.6)
IBM Proventia Network Mail Security System - virtual appliance (firmware 2.5)</impact>
    </impacts>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.ventuneac.net/security-advisories/MVSA-10-007" source="MISC">http://www.ventuneac.net/security-advisories/MVSA-10-007</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/513629/100/0/threaded" source="BUGTRAQ">20100912 MVSA-10-007 / CVE-2010-0152 - IBM Proventia Mail Security System - Multiple persistent and reflected XSS vulnerabilities</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance">
        <vers num=""/>
      </prod>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance_firmware">
        <vers num="1.6"/>
        <vers num="2.5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0153" published="2010-09-14" name="CVE-2010-0153" modified="2010-09-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Multiple cross-site request forgery (CSRF) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 allow remote attackers to hijack the authentication of administrators for requests that (1) change settings or (2) conduct denial of service attacks.</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per:

Affected Versions

IBM Proventia Network Mail Security System - virtual appliance (firmware 1.6)
IBM Proventia Network Mail Security System - virtual appliance (firmware 2.5)</impact>
    </impacts>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.ventuneac.net/security-advisories/MVSA-10-006" source="MISC">http://www.ventuneac.net/security-advisories/MVSA-10-006</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/513627/100/0/threaded" source="BUGTRAQ">20100912 MVSA-10-006 / CVE-2010-0153 - IBM Proventia Network Mail Security System - Cross-Site Request Forgery vulnerabilities</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance">
        <vers num=""/>
      </prod>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance_firmware">
        <vers num="1.6"/>
        <vers num="2.5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0154" published="2010-09-14" name="CVE-2010-0154" modified="2010-09-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:N/A:N)" CVSS_score="4.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.0" CVSS_base_score="4.0">
    <desc>
      <descript source="cve">Directory traversal vulnerability in sla/index.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the l parameter, related to an "Insecure Direct Object Reference vulnerability."</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.ventuneac.net/security-advisories/MVSA-10-008

Affected Versions

IBM Proventia Network Mail Security System - virtual appliance (firmware 1.6)</impact>
    </impacts>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.ventuneac.net/security-advisories/MVSA-10-008" source="MISC">http://www.ventuneac.net/security-advisories/MVSA-10-008</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/513637/100/0/threaded" source="BUGTRAQ">20100912 MVSA-10-008 / CVE-2010-0154 - IBM Proventia Mail Security System - Insecure Direct Object Reference vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance">
        <vers num=""/>
      </prod>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance_firmware">
        <vers num="1.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0155" published="2010-09-14" name="CVE-2010-0155" modified="2010-09-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:N/I:P/A:N)" CVSS_score="3.5" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="6.8" CVSS_base_score="3.5">
    <desc>
      <descript source="cve">CRLF injection vulnerability in load.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the javaVersion parameter.</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.ventuneac.net/security-advisories/MVSA-10-009

Affected Versions

IBM Proventia Network Mail Security System - virtual appliance (firmware 1.6)</impact>
    </impacts>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.ventuneac.net/security-advisories/MVSA-10-009" source="MISC">http://www.ventuneac.net/security-advisories/MVSA-10-009</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/513636/100/0/threaded" source="BUGTRAQ">20100912 MVSA-10-009 / CVE-2010-0155 - IBM Proventia Network Mail Security System - CRLF Injection vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance">
        <vers num=""/>
      </prod>
      <prod vendor="ibm" name="proventia_network_mail_security_system_virtual_appliance_firmware">
        <vers num="1.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0156" published="2010-03-03" name="CVE-2010-0156" modified="2010-06-23" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:P/A:P)" CVSS_score="3.3" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="3.4" CVSS_base_score="3.3">
    <desc>
      <descript source="cve">Puppet 0.24.x before 0.24.9 and 0.25.x before 0.25.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/daemonout, (2) /tmp/puppetdoc.txt, (3) /tmp/puppetdoc.tex, or (4) /tmp/puppetdoc.aux temporary file.</descript>
    </desc>
    <loss_types>
      <avail/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=502881" source="CONFIRM" patch="1">https://bugzilla.redhat.com/show_bug.cgi?id=502881</ref>
      <ref url="http://secunia.com/advisories/38766" source="SECUNIA" patch="1" adv="1">38766</ref>
      <ref url="http://groups.google.com/group/puppet-announce/browse_thread/thread/4401823f6cbf6087" source="MLIST" patch="1">[puppet-announce] 20100105 ANNOUNCE: Puppet 0.25.2 "Zoe" now available!</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036166.html" source="FEDORA">FEDORA-2010-1372</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036083.html" source="FEDORA">FEDORA-2010-1079</ref>
      <ref url="http://groups.google.com/group/puppet-announce/browse_thread/thread/73cd1b2896d986c2" source="MLIST">[puppet-announce] 20100108 ANNOUNCE: Puppet 0.24.9 is available</ref>
    </refs>
    <vuln_soft>
      <prod vendor="puppet" name="puppet">
        <vers num="0.24.3"/>
        <vers num="0.24.4"/>
        <vers num="0.24.5"/>
        <vers num="0.24.6" edition="rc1"/>
        <vers num="0.24.6" edition="rc2"/>
        <vers num="0.24.7" edition="rc2"/>
        <vers num="0.24.8" edition="rc1"/>
        <vers num="0.25.0" edition="beta1"/>
        <vers num="0.25.0" edition="beta2"/>
        <vers num="0.25.0" edition="rc1"/>
        <vers num="0.25.1" edition="rc1"/>
        <vers num="0.25.1" edition="rc2"/>
        <vers num="0.25.2" edition="rc1"/>
        <vers num="0.25.2" edition="rc2"/>
        <vers num="0.25.2" edition="rc3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0157" published="2010-01-06" name="CVE-2010-0157" modified="2010-01-07" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Directory traversal vulnerability in the Bible Study (com_biblestudy) component 6.1 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter in a studieslist action to index.php.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/37583" source="BID">37583</ref>
      <ref url="http://secunia.com/advisories/37896" source="SECUNIA" adv="1">37896</ref>
      <ref url="http://packetstormsecurity.org/1001-exploits/joomlabiblestudy-lfi.txt" source="MISC">http://packetstormsecurity.org/1001-exploits/joomlabiblestudy-lfi.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="joomlabiblestudy" name="com_biblestudy">
        <vers num="6.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0158" published="2010-01-06" name="CVE-2010-0158" modified="2010-02-05" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">** DISPUTED **  SQL injection vulnerability in the JoomlaBamboo (JB) Simpla Admin template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to the com_content component, reachable through index.php.  NOTE: the vendor disputes this report, saying: "JoomlaBamboo has investigated this report, and it is incorrect.  There is no SQL injection vulnerability involving the id parameter in an article view, and there never was. JoomlaBamboo customers have no reason to be concerned about this report."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0014" source="VUPEN" adv="1">ADV-2010-0014</ref>
      <ref url="http://www.securityfocus.com/bid/37579" source="BID">37579</ref>
      <ref url="http://www.exploit-db.com/exploits/10971" source="EXPLOIT-DB">10971</ref>
      <ref url="http://www.attrition.org/pipermail/vim/2010-February/002320.html" source="MLIST">[VIM] 20100203 Re: disputed: CVE-2010-0158 JoomlaBamboo (JB) Simpla Admin SQL injection</ref>
      <ref url="http://www.attrition.org/pipermail/vim/2010-February/002319.html" source="MLIST">[VIM] 20100203 disputed: CVE-2010-0158 JoomlaBamboo (JB) Simpla Admin SQL injection</ref>
      <ref url="http://packetstormsecurity.org/1001-exploits/joomlabamboo-sql.txt" source="MISC">http://packetstormsecurity.org/1001-exploits/joomlabamboo-sql.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="joomlabamboo" name="jb_simpla">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0159" published="2010-02-22" name="CVE-2010-0159" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=534082" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=534082</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=530880" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=530880</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=528300" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=528300</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=528134" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=528134</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=527567" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=527567</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=501934" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=501934</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=467005" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=467005</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56359" source="XF">mozilla-browsereng-code-execution(56359)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0650" source="VUPEN">ADV-2010-0650</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0405" source="VUPEN" adv="1">ADV-2010-0405</ref>
      <ref url="http://www.ubuntu.com/usn/USN-896-1" source="UBUNTU">USN-896-1</ref>
      <ref url="http://www.ubuntu.com/usn/USN-895-1" source="UBUNTU">USN-895-1</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0154.html" source="REDHAT">RHSA-2010:0154</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0153.html" source="REDHAT">RHSA-2010:0153</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0113.html" source="REDHAT">RHSA-2010:0113</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0112.html" source="REDHAT">RHSA-2010:0112</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-01.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-01.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:042" source="MANDRIVA">MDVSA-2010:042</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1999" source="DEBIAN">DSA-1999</ref>
      <ref url="http://secunia.com/advisories/38847" source="SECUNIA">38847</ref>
      <ref url="http://secunia.com/advisories/38772" source="SECUNIA">38772</ref>
      <ref url="http://secunia.com/advisories/38770" source="SECUNIA">38770</ref>
      <ref url="http://secunia.com/advisories/37242" source="SECUNIA" adv="1">37242</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9590" source="OVAL">oval:org.mitre.oval:def:9590</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8485" source="OVAL">oval:org.mitre.oval:def:8485</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00001.html" source="SUSE">SUSE-SA:2010:015</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036132.html" source="FEDORA">FEDORA-2010-3267</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036097.html" source="FEDORA">FEDORA-2010-3230</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035426.html" source="FEDORA">FEDORA-2010-1727</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035367.html" source="FEDORA">FEDORA-2010-1936</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035346.html" source="FEDORA">FEDORA-2010-1932</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers prev="1" num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers prev="1" num="3.5.7"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers prev="1" num="2.0.2"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers prev="1" num="3.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0160" published="2010-02-22" name="CVE-2010-0160" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0405" source="VUPEN" patch="1" adv="1">ADV-2010-0405</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=534051" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=534051</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=533000" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=533000</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=531222" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=531222</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56360" source="XF">mozilla-webworkers-code-execution(56360)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-046" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-046</ref>
      <ref url="http://www.ubuntu.com/usn/USN-896-1" source="UBUNTU">USN-896-1</ref>
      <ref url="http://www.ubuntu.com/usn/USN-895-1" source="UBUNTU">USN-895-1</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510533/100/0/threaded" source="BUGTRAQ">20100402 ZDI-10-046: Mozilla Firefox Web Worker Array Remote Code Execution Vulnerability</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0112.html" source="REDHAT">RHSA-2010:0112</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-02.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-02.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:042" source="MANDRIVA">MDVSA-2010:042</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1999" source="DEBIAN">DSA-1999</ref>
      <ref url="http://secunia.com/advisories/38847" source="SECUNIA">38847</ref>
      <ref url="http://secunia.com/advisories/37242" source="SECUNIA" adv="1">37242</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8465" source="OVAL">oval:org.mitre.oval:def:8465</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11166" source="OVAL">oval:org.mitre.oval:def:11166</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00001.html" source="SUSE">SUSE-SA:2010:015</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035426.html" source="FEDORA">FEDORA-2010-1727</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035367.html" source="FEDORA">FEDORA-2010-1936</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035346.html" source="FEDORA">FEDORA-2010-1932</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers prev="1" num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers prev="1" num="2.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0161" published="2010-03-22" name="CVE-2010-0161" modified="2012-01-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 on Windows Vista, Windows Server 2008 R2, and Windows 7 allows remote SMTP, IMAP, and POP servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via crafted data in a session that uses SSPI.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=511806" source="CONFIRM" patch="1">https://bugzilla.mozilla.org/show_bug.cgi?id=511806</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0648" source="VUPEN" patch="1" adv="1">ADV-2010-0648</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-07.html" source="CONFIRM" patch="1" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-07.html</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56992" source="XF">thunderbird-activedirectory-dos(56992)</ref>
      <ref url="http://www.securityfocus.com/bid/38831" source="BID">38831</ref>
      <ref url="http://secunia.com/advisories/39001" source="SECUNIA" adv="1">39001</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14159" source="OVAL">oval:org.mitre.oval:def:14159</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers prev="1" num="1.1.18"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers prev="1" num="2.0.0.23"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0162" published="2010-02-22" name="CVE-2010-0162" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly support the application/octet-stream content type as a protection mechanism against execution of web script in certain circumstances involving SVG and the EMBED element, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via an embedded SVG document.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=455472" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=455472</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56363" source="XF">mozilla-svg-xss(56363)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0405" source="VUPEN" adv="1">ADV-2010-0405</ref>
      <ref url="http://www.ubuntu.com/usn/USN-896-1" source="UBUNTU">USN-896-1</ref>
      <ref url="http://www.ubuntu.com/usn/USN-895-1" source="UBUNTU">USN-895-1</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0112.html" source="REDHAT">RHSA-2010:0112</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-05.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-05.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:042" source="MANDRIVA">MDVSA-2010:042</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1999" source="DEBIAN">DSA-1999</ref>
      <ref url="http://secunia.com/advisories/38847" source="SECUNIA">38847</ref>
      <ref url="http://secunia.com/advisories/37242" source="SECUNIA" adv="1">37242</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8631" source="OVAL">oval:org.mitre.oval:def:8631</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10697" source="OVAL">oval:org.mitre.oval:def:10697</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00001.html" source="SUSE">SUSE-SA:2010:015</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035426.html" source="FEDORA">FEDORA-2010-1727</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035367.html" source="FEDORA">FEDORA-2010-1936</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035346.html" source="FEDORA">FEDORA-2010-1932</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.0" edition="alpha"/>
        <vers num="3.0" edition="beta2"/>
        <vers num="3.0" edition="beta5"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0163" published="2010-03-22" name="CVE-2010-0163" modified="2012-01-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 process e-mail attachments with a parser that performs casts and line termination incorrectly, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted message, related to message indexing.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=505221" source="CONFIRM" patch="1">https://bugzilla.mozilla.org/show_bug.cgi?id=505221</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-07.html" source="CONFIRM" patch="1" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-07.html</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56993" source="XF">thunderbird-messages-dos(56993)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1556" source="VUPEN">ADV-2010-1556</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0648" source="VUPEN" adv="1">ADV-2010-0648</ref>
      <ref url="http://www.ubuntu.com/usn/USN-915-1" source="UBUNTU">USN-915-1</ref>
      <ref url="http://www.securityfocus.com/bid/38831" source="BID">38831</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0499.html" source="REDHAT">RHSA-2010:0499</ref>
      <ref url="http://secunia.com/advisories/39001" source="SECUNIA" adv="1">39001</ref>
      <ref url="http://secunia.com/advisories/38977" source="SECUNIA">38977</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14259" source="OVAL">oval:org.mitre.oval:def:14259</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10805" source="OVAL">oval:org.mitre.oval:def:10805</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers prev="1" num="1.1.18"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers prev="1" num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0164" published="2010-03-25" name="CVE-2010-0164" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in the imgContainer::InternalAddFrameHelper function in src/imgContainer.cpp in libpr0n in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a multipart/x-mixed-replace animation in which the frames have different bits-per-pixel (bpp) values.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=547143" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=547143</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-047" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-047</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38921" source="BID">38921</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510535/100/0/threaded" source="BUGTRAQ">20100402 ZDI-10-047: Mozilla Firefox libpr0n imgContainer Bits-Per-Pixel Change Remote Code Execution Vulnerability</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-09.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-09.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8703" source="OVAL">oval:org.mitre.oval:def:8703</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0165" published="2010-03-25" name="CVE-2010-0165" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via vectors involving certain indirect calls to the JavaScript eval function.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=542849" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=542849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-11.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-11.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8472" source="OVAL">oval:org.mitre.oval:def:8472</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0166" published="2010-03-25" name="CVE-2010-0166" modified="2012-01-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">The gfxTextRun::SanitizeGlyphRuns function in gfx/thebes/src/gfxFont.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 on Mac OS X, when the Core Text API is used, does not properly perform certain deletions, which allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via an HTML document containing invisible Unicode characters, as demonstrated by the U+FEFF, U+FFF9, U+FFFA, and U+FFFB characters.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=538065" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=538065</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38943" source="BID">38943</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-11.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-11.html</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14182" source="OVAL">oval:org.mitre.oval:def:14182</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0167" published="2010-03-25" name="CVE-2010-0167" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via vectors related to (1) layout/generic/nsBlockFrame.cpp and (2) the _evaluate function in modules/plugin/base/src/nsNPAPIPlugin.cpp.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-11.html" source="CONFIRM" patch="1">http://www.mozilla.org/security/announce/2010/mfsa2010-11.html</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=535641" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=535641</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=534082" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=534082</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38944" source="BID">38944</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9835" source="OVAL">oval:org.mitre.oval:def:9835</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8610" source="OVAL">oval:org.mitre.oval:def:8610</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5" edition="1.1.10"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers prev="1" num="2.0.2"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers prev="1" num="3.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0168" published="2010-03-25" name="CVE-2010-0168" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_score="7.6" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="4.9" CVSS_base_score="7.6">
    <desc>
      <descript source="cve">The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 before 3.6.2 does not apply scheme restrictions and policy restrictions to the image's URL, which might allow remote attackers to cause a denial of service (application crash or hang) or hijack the functionality of the browser's add-ons via a crafted SRC attribute of an IMG element, as demonstrated by remote command execution through an ssh: URL in a configuration that supports gnome-vfs with a nonstandard network.gnomevfs.supported-protocols setting.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID" patch="1">38918</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=540642" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=540642</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-13.html" source="CONFIRM">http://www.mozilla.org/security/announce/2010/mfsa2010-13.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8711" source="OVAL">oval:org.mitre.oval:def:8711</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.6"/>
        <vers num="3.6.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0169" published="2010-03-25" name="CVE-2010-0169" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The CSSLoaderImpl::DoSheetComplete function in layout/style/nsCSSLoader.cpp in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 changes the case of certain strings in a stylesheet before adding this stylesheet to the XUL cache, which might allow remote attackers to modify the browser's font and other CSS attributes, and potentially disrupt rendering of a web page, by forcing the browser to perform this erroneous stylesheet caching.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=535806" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=535806</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-14.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-14.html</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8431" source="OVAL">oval:org.mitre.oval:def:8431</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11391" source="OVAL">oval:org.mitre.oval:def:11391</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5" edition="1.1.10"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers prev="1" num="2.0.2"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers prev="1" num="3.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0170" published="2010-03-25" name="CVE-2010-0170" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Mozilla Firefox 3.6 before 3.6.2 does not offer plugins the expected window.location protection mechanism, which might allow remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via vectors that are specific to each affected plugin.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=541530" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=541530</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38919" source="BID">38919</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-10.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-10.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8602" source="OVAL">oval:org.mitre.oval:def:8602</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0171" published="2010-03-25" name="CVE-2010-0171" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allow remote attackers to perform cross-origin keystroke capture, and possibly conduct cross-site scripting (XSS) attacks, by using the addEventListener and setTimeout functions in conjunction with a wrapped object.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2007-3736.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID" patch="1">38918</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-12.html" source="CONFIRM" patch="1">http://www.mozilla.org/security/announce/2010/mfsa2010-12.html</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=531364" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=531364</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7743" source="OVAL">oval:org.mitre.oval:def:7743</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10773" source="OVAL">oval:org.mitre.oval:def:10773</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5" edition="1.1.10"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers prev="1" num="2.0.2"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers prev="1" num="3.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0172" published="2010-03-25" name="CVE-2010-0172" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-15.html" source="CONFIRM" patch="1">http://www.mozilla.org/security/announce/2010/mfsa2010-15.html</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=537862" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=537862</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0692" source="VUPEN">ADV-2010-0692</ref>
      <ref url="http://www.securityfocus.com/bid/38918" source="BID">38918</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8281" source="OVAL">oval:org.mitre.oval:def:8281</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0173" published="2010-04-05" name="CVE-2010-0173" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=542136" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=542136</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=499862" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=499862</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=496011" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=496011</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=491722" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=491722</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=488850" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=488850</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57388" source="XF">firefox-browser-eng-code-execution(57388)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-16.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-16.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://securitytracker.com/id?1023781" source="SECTRACK">1023781</ref>
      <ref url="http://securitytracker.com/id?1023775" source="SECTRACK">1023775</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://secunia.com/advisories/39242" source="SECUNIA" adv="1">39242</ref>
      <ref url="http://secunia.com/advisories/39204" source="SECUNIA" adv="1">39204</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA" adv="1">39136</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7467" source="OVAL">oval:org.mitre.oval:def:7467</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.html" source="FEDORA">FEDORA-2010-5539</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.html" source="FEDORA">FEDORA-2010-5526</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers prev="1" num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="2.0.14"/>
        <vers num="3.0.1"/>
        <vers num="3.0.2"/>
        <vers prev="1" num="3.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0174" published="2010-04-05" name="CVE-2010-0174" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=546530" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=546530</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=499844" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=499844</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57389" source="XF">mozilla-browser-eng-code-exec(57389)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0790" source="VUPEN">ADV-2010-0790</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0781" source="VUPEN">ADV-2010-0781</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0765" source="VUPEN" adv="1">ADV-2010-0765</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0764" source="VUPEN">ADV-2010-0764</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN">ADV-2010-0748</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0333.html" source="REDHAT">RHSA-2010:0333</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0332.html" source="REDHAT">RHSA-2010:0332</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-16.html" source="CONFIRM">http://www.mozilla.org/security/announce/2010/mfsa2010-16.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2027" source="DEBIAN">DSA-2027</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://securitytracker.com/id?1023781" source="SECTRACK">1023781</ref>
      <ref url="http://securitytracker.com/id?1023775" source="SECTRACK">1023775</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://secunia.com/advisories/39308" source="SECUNIA">39308</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://secunia.com/advisories/39242" source="SECUNIA">39242</ref>
      <ref url="http://secunia.com/advisories/39240" source="SECUNIA">39240</ref>
      <ref url="http://secunia.com/advisories/39204" source="SECUNIA" adv="1">39204</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA">39136</ref>
      <ref url="http://secunia.com/advisories/39117" source="SECUNIA" adv="1">39117</ref>
      <ref url="http://secunia.com/advisories/38566" source="SECUNIA">38566</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9502" source="OVAL">oval:org.mitre.oval:def:9502</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7615" source="OVAL">oval:org.mitre.oval:def:7615</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038406.html" source="FEDORA">FEDORA-2010-5561</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.html" source="FEDORA">FEDORA-2010-5539</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.html" source="FEDORA">FEDORA-2010-5526</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers prev="1" num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="2.0.14"/>
        <vers num="3.0.1"/>
        <vers num="3.0.2"/>
        <vers prev="1" num="3.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0175" published="2010-04-05" name="CVE-2010-0175" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors that trigger a call to the handler for the select event for XUL tree items.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=540100" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=540100</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=375928" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=375928</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57390" source="XF">firefox-nstreeselection-code-execution(57390)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-050" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-050</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0790" source="VUPEN">ADV-2010-0790</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0781" source="VUPEN">ADV-2010-0781</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0765" source="VUPEN" adv="1">ADV-2010-0765</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0764" source="VUPEN" adv="1">ADV-2010-0764</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510542/100/0/threaded" source="BUGTRAQ">20100402 ZDI-10-050: Mozilla Firefox nsTreeSelection EventListener Remote Code Execution Vulnerability</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0333.html" source="REDHAT">RHSA-2010:0333</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0332.html" source="REDHAT">RHSA-2010:0332</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-17.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-17.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2027" source="DEBIAN">DSA-2027</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://securitytracker.com/id?1023782" source="SECTRACK">1023782</ref>
      <ref url="http://securitytracker.com/id?1023780" source="SECTRACK">1023780</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://secunia.com/advisories/39308" source="SECUNIA">39308</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://secunia.com/advisories/39242" source="SECUNIA" adv="1">39242</ref>
      <ref url="http://secunia.com/advisories/39240" source="SECUNIA" adv="1">39240</ref>
      <ref url="http://secunia.com/advisories/39204" source="SECUNIA" adv="1">39204</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA" adv="1">39136</ref>
      <ref url="http://secunia.com/advisories/39117" source="SECUNIA" adv="1">39117</ref>
      <ref url="http://secunia.com/advisories/38566" source="SECUNIA" adv="1">38566</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9834" source="OVAL">oval:org.mitre.oval:def:9834</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7546" source="OVAL">oval:org.mitre.oval:def:7546</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038406.html" source="FEDORA">FEDORA-2010-5561</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.html" source="FEDORA">FEDORA-2010-5539</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.html" source="FEDORA">FEDORA-2010-5526</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers prev="1" num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="2.0.14"/>
        <vers num="3.0.1"/>
        <vers num="3.0.2"/>
        <vers prev="1" num="3.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0176" published="2010-04-05" name="CVE-2010-0176" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=538308" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=538308</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57392" source="XF">firefox-nstreecontentview-code-exec(57392)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0790" source="VUPEN">ADV-2010-0790</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0781" source="VUPEN">ADV-2010-0781</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0765" source="VUPEN" adv="1">ADV-2010-0765</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0764" source="VUPEN" adv="1">ADV-2010-0764</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0333.html" source="REDHAT">RHSA-2010:0333</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0332.html" source="REDHAT">RHSA-2010:0332</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-18.html" source="CONFIRM">http://www.mozilla.org/security/announce/2010/mfsa2010-18.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2027" source="DEBIAN">DSA-2027</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://securitytracker.com/id?1023782" source="SECTRACK">1023782</ref>
      <ref url="http://securitytracker.com/id?1023776" source="SECTRACK">1023776</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://secunia.com/advisories/39308" source="SECUNIA">39308</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://secunia.com/advisories/39242" source="SECUNIA" adv="1">39242</ref>
      <ref url="http://secunia.com/advisories/39240" source="SECUNIA" adv="1">39240</ref>
      <ref url="http://secunia.com/advisories/39204" source="SECUNIA" adv="1">39204</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA" adv="1">39136</ref>
      <ref url="http://secunia.com/advisories/39117" source="SECUNIA" adv="1">39117</ref>
      <ref url="http://secunia.com/advisories/38566" source="SECUNIA" adv="1">38566</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7222" source="OVAL">oval:org.mitre.oval:def:7222</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11052" source="OVAL">oval:org.mitre.oval:def:11052</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038406.html" source="FEDORA">FEDORA-2010-5561</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.html" source="FEDORA">FEDORA-2010-5539</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.html" source="FEDORA">FEDORA-2010-5526</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers prev="1" num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="2.0.14"/>
        <vers num="3.0.1"/>
        <vers num="3.0.2"/>
        <vers prev="1" num="3.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0177" published="2010-04-05" name="CVE-2010-0177" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, frees the contents of the window.navigator.plugins array while a reference to an array element is still active, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors, related to a "dangling pointer vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=538310" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=538310</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57393" source="XF">firefox-nspluginarray-code-execution(57393)</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-049" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-049</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0781" source="VUPEN">ADV-2010-0781</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0765" source="VUPEN" adv="1">ADV-2010-0765</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0764" source="VUPEN" adv="1">ADV-2010-0764</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/510540/100/0/threaded" source="BUGTRAQ">20100402 ZDI-10-049: Mozilla Firefox PluginArray nsMimeType Dangling Pointer Remote Code Execution Vulnerability</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0333.html" source="REDHAT">RHSA-2010:0333</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0332.html" source="REDHAT">RHSA-2010:0332</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-19.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-19.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2027" source="DEBIAN">DSA-2027</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://securitytracker.com/id?1023776" source="SECTRACK">1023776</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://secunia.com/advisories/39308" source="SECUNIA">39308</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://secunia.com/advisories/39240" source="SECUNIA" adv="1">39240</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA" adv="1">39136</ref>
      <ref url="http://secunia.com/advisories/39117" source="SECUNIA" adv="1">39117</ref>
      <ref url="http://secunia.com/advisories/38566" source="SECUNIA" adv="1">38566</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7622" source="OVAL">oval:org.mitre.oval:def:7622</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10833" source="OVAL">oval:org.mitre.oval:def:10833</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers prev="1" num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0178" published="2010-04-05" name="CVE-2010-0178" modified="2012-09-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_score="7.6" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="4.9" CVSS_base_score="7.6">
    <desc>
      <descript source="cve">Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, does not prevent applets from interpreting mouse clicks as drag-and-drop actions, which allows remote attackers to execute arbitrary JavaScript with Chrome privileges by loading a chrome: URL and then loading a javascript: URL.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=546909" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=546909</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57391" source="XF">firefox-draganddrop-code-execution(57391)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0781" source="VUPEN">ADV-2010-0781</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0764" source="VUPEN" adv="1">ADV-2010-0764</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN">ADV-2010-0748</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0332.html" source="REDHAT">RHSA-2010:0332</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-20.html" source="CONFIRM">http://www.mozilla.org/security/announce/2010/mfsa2010-20.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2027" source="DEBIAN">DSA-2027</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://securitytracker.com/id?1023776" source="SECTRACK">1023776</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA" adv="1">39397</ref>
      <ref url="http://secunia.com/advisories/39308" source="SECUNIA" adv="1">39308</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://secunia.com/advisories/39240" source="SECUNIA" adv="1">39240</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA" adv="1">39136</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6975" source="OVAL">oval:org.mitre.oval:def:6975</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10460" source="OVAL">oval:org.mitre.oval:def:10460</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers prev="1" num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0179" published="2010-04-05" name="CVE-2010-0179" modified="2011-01-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=504021" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=504021</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57394" source="XF">firefox-firebug-code-execution(57394)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0030" source="VUPEN">ADV-2011-0030</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN" adv="1">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0781" source="VUPEN" adv="1">ADV-2010-0781</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0764" source="VUPEN" adv="1">ADV-2010-0764</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.securityfocus.com/bid/39124" source="BID">39124</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0332.html" source="REDHAT">RHSA-2010:0332</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-21.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-21.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:251" source="MANDRIVA">MDVSA-2010:251</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2027" source="DEBIAN">DSA-2027</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://support.avaya.com/css/P8/documents/100124650" source="CONFIRM">http://support.avaya.com/css/P8/documents/100124650</ref>
      <ref url="http://securitytracker.com/id?1023783" source="SECTRACK" adv="1">1023783</ref>
      <ref url="http://secunia.com/advisories/42818" source="SECUNIA">42818</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA" adv="1">39397</ref>
      <ref url="http://secunia.com/advisories/39308" source="SECUNIA" adv="1">39308</ref>
      <ref url="http://secunia.com/advisories/39243" source="SECUNIA" adv="1">39243</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9446" source="OVAL">oval:org.mitre.oval:def:9446</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6971" source="OVAL">oval:org.mitre.oval:def:6971</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00002.html" source="SUSE">SUSE-SA:2011:003</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers prev="1" num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers prev="1" num="2.0.2"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="2.0.14"/>
        <vers num="3.0.1"/>
        <vers num="3.0.2"/>
        <vers prev="1" num="3.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0180" published="2010-06-28" name="CVE-2010-0180" modified="2010-06-28" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="1.9" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.4" CVSS_base_score="1.9">
    <desc>
      <descript source="cve">Install/Filesystem.pm in Bugzilla 3.5.1 through 3.6 and 3.7, when use_suexec is enabled, uses world-readable permissions for the localconfig files, which allows local users to read sensitive configuration fields, as demonstrated by the database password field and the site_wide_secret field.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=561797" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=561797</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1595" source="VUPEN" adv="1">ADV-2010-1595</ref>
      <ref url="http://www.securityfocus.com/bid/41144" source="BID">41144</ref>
      <ref url="http://www.bugzilla.org/security/3.2.6/" source="CONFIRM" adv="1">http://www.bugzilla.org/security/3.2.6/</ref>
      <ref url="http://secunia.com/advisories/40300" source="SECUNIA" adv="1">40300</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="bugzilla">
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.6"/>
        <vers num="3.7"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0181" published="2010-04-05" name="CVE-2010-0181" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, executes a mail application in situations where an IMG element has a SRC attribute that is a redirect to a mailto: URL, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many images.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=452093" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=452093</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57395" source="XF">firefox-mailto-weak-security(57395)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/511327/100/0/threaded" source="BUGTRAQ">20100518 DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-23.html" source="CONFIRM">http://www.mozilla.org/security/announce/2010/mfsa2010-23.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://websecurity.com.ua/4206/" source="MISC">http://websecurity.com.ua/4206/</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://secunia.com/advisories/39136" source="SECUNIA" adv="1">39136</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6776" source="OVAL">oval:org.mitre.oval:def:6776</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers prev="1" num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0182" published="2010-04-05" name="CVE-2010-0182" modified="2012-09-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=490790" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=490790</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57396" source="XF">firefox-xmldocumentload-weak-security(57396)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1557" source="VUPEN">ADV-2010-1557</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0849" source="VUPEN">ADV-2010-0849</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0748" source="VUPEN" adv="1">ADV-2010-0748</ref>
      <ref url="http://www.securityfocus.com/bid/39479" source="BID">39479</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0501.html" source="REDHAT">RHSA-2010:0501</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0500.html" source="REDHAT">RHSA-2010:0500</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-24.html" source="CONFIRM">http://www.mozilla.org/security/announce/2010/mfsa2010-24.html</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:070" source="MANDRIVA">MDVSA-2010:070</ref>
      <ref url="http://ubuntu.com/usn/usn-921-1" source="UBUNTU">USN-921-1</ref>
      <ref url="http://support.avaya.com/css/P8/documents/100091069" source="CONFIRM">http://support.avaya.com/css/P8/documents/100091069</ref>
      <ref url="http://secunia.com/advisories/39397" source="SECUNIA">39397</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9375" source="OVAL">oval:org.mitre.oval:def:9375</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7618" source="OVAL">oval:org.mitre.oval:def:7618</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.13"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.15"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.20"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.1"/>
        <vers num="3.0.10"/>
        <vers num="3.0.11"/>
        <vers num="3.0.12"/>
        <vers num="3.0.13"/>
        <vers num="3.0.14"/>
        <vers num="3.0.15"/>
        <vers num="3.0.16"/>
        <vers num="3.0.17"/>
        <vers num="3.0.2"/>
        <vers num="3.0.3"/>
        <vers num="3.0.4"/>
        <vers num="3.0.5"/>
        <vers num="3.0.6"/>
        <vers num="3.0.7"/>
        <vers num="3.0.8"/>
        <vers num="3.0.9"/>
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers prev="1" num="3.5.7"/>
        <vers num="3.6"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition=""/>
        <vers num="1.1" edition=":beta"/>
        <vers num="1.1" edition=":alpha"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers prev="1" num="2.0.3"/>
        <vers num="2.0.4"/>
      </prod>
      <prod vendor="mozilla" name="thunderbird">
        <vers num="0.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.7.3"/>
        <vers num="0.8"/>
        <vers num="0.9"/>
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.13"/>
        <vers num="1.5.0.14"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="2.0"/>
        <vers num="2.0.0.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.12"/>
        <vers num="2.0.0.14"/>
        <vers num="2.0.0.16"/>
        <vers num="2.0.0.17"/>
        <vers num="2.0.0.18"/>
        <vers num="2.0.0.19"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.21"/>
        <vers num="2.0.0.22"/>
        <vers num="2.0.0.23"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="2.0.14"/>
        <vers num="3.0.1"/>
        <vers num="3.0.2"/>
        <vers prev="1" num="3.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0183" published="2010-06-24" name="CVE-2010-0183" modified="2012-11-05" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a crafted HTML document, related to an improper frame construction process for menus.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=557174" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=557174</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1773" source="VUPEN">ADV-2010-1773</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1592" source="VUPEN">ADV-2010-1592</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1551" source="VUPEN">ADV-2010-1551</ref>
      <ref url="http://www.securitytracker.com/id?1024138" source="SECTRACK">1024138</ref>
      <ref url="http://www.securityfocus.com/bid/41050" source="BID">41050</ref>
      <ref url="http://www.mozilla.org/security/announce/2010/mfsa2010-27.html" source="CONFIRM" adv="1">http://www.mozilla.org/security/announce/2010/mfsa2010-27.html</ref>
      <ref url="http://secunia.com/advisories/40481" source="SECUNIA">40481</ref>
      <ref url="http://secunia.com/advisories/40326" source="SECUNIA">40326</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:12586" source="OVAL">oval:org.mitre.oval:def:12586</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-07/msg00005.html" source="SUSE">SUSE-SA:2010:030</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043405.html" source="FEDORA">FEDORA-2010-10361</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043369.html" source="FEDORA">FEDORA-2010-10344</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="3.5"/>
        <vers num="3.5.1"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers num="3.5.6"/>
        <vers num="3.5.7"/>
        <vers num="3.5.9"/>
      </prod>
      <prod vendor="mozilla" name="seamonkey">
        <vers num="1.0" edition="alpha"/>
        <vers num="1.0" edition="beta"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1" edition="alpha"/>
        <vers num="1.1" edition="beta"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.11"/>
        <vers num="1.1.12"/>
        <vers num="1.1.13"/>
        <vers num="1.1.14"/>
        <vers num="1.1.15"/>
        <vers num="1.1.16"/>
        <vers num="1.1.17"/>
        <vers num="1.1.18"/>
        <vers num="1.1.19"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="2.0" edition="alpha_1"/>
        <vers num="2.0" edition="alpha_2"/>
        <vers num="2.0" edition="alpha_3"/>
        <vers num="2.0" edition="beta_1"/>
        <vers num="2.0" edition="beta_2"/>
        <vers num="2.0" edition="rc1"/>
        <vers num="2.0" edition="rc2"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers num="2.0.3"/>
        <vers prev="1" num="2.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0184" published="2010-01-14" name="CVE-2010-0184" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="7.2" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.9" CVSS_base_score="7.2">
    <desc>
      <descript source="cve">The (1) domainutility and (2) domainutilitycmd components in TIBCO Domain Utility in TIBCO Runtime Agent (TRA) before 5.6.2, as used in TIBCO ActiveMatrix BusinessWorks and other products, set weak permissions on domain properties files, which allows local users to obtain domain administrator credentials, and gain privileges on all domain systems, via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0128" source="VUPEN" adv="1">ADV-2010-0128</ref>
      <ref url="http://www.tibco.com/multimedia/security_advisory_runtime_agent_20100113_tcm8-10392.txt" source="CONFIRM">http://www.tibco.com/multimedia/security_advisory_runtime_agent_20100113_tcm8-10392.txt</ref>
      <ref url="http://www.tibco.com/mk/advisory.jsp" source="CONFIRM" adv="1">http://www.tibco.com/mk/advisory.jsp</ref>
      <ref url="http://www.securityfocus.com/bid/37805" source="BID">37805</ref>
      <ref url="http://secunia.com/advisories/38191" source="SECUNIA" adv="1">38191</ref>
    </refs>
    <vuln_soft>
      <prod vendor="tibco" name="runtime_agent">
        <vers num="5.4.0"/>
        <vers num="5.5.3"/>
        <vers num="5.5.4"/>
        <vers num="5.6"/>
        <vers prev="1" num="5.6.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0185" published="2010-02-03" name="CVE-2010-0185" modified="2010-02-04" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The default configuration of Adobe ColdFusion 9.0 does not restrict access to collections that have been created by the Solr Service, which allows remote attackers to obtain collection metadata, search information, and index data via a request to an unspecified URL.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55997" source="XF">coldfusion-solr-information-disclosure(55997)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0259" source="VUPEN" adv="1">ADV-2010-0259</ref>
      <ref url="http://www.securitytracker.com/id?1023519" source="SECTRACK">1023519</ref>
      <ref url="http://www.securityfocus.com/bid/38007" source="BID">38007</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-04.html" source="CONFIRM" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-04.html</ref>
      <ref url="http://secunia.com/advisories/38387" source="SECUNIA" adv="1">38387</ref>
      <ref url="http://osvdb.org/62037" source="OSVDB">62037</ref>
      <ref url="http://kb2.adobe.com/cps/807/cpsid_80719.html" source="CONFIRM">http://kb2.adobe.com/cps/807/cpsid_80719.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="coldfusion">
        <vers num="9.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0186" published="2010-02-15" name="CVE-2010-0186" modified="2011-02-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Cross-domain vulnerability in Adobe Flash Player before 10.0.45.2, Adobe AIR before 1.5.3.9130, and Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows remote attackers to bypass intended sandbox restrictions and make cross-domain requests via unspecified vectors.</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.adobe.com/support/security/bulletins/apsb10-07.html


A critical vulnerability has been identified in Adobe Reader 9.3 for Windows, Macintosh and UNIX, Adobe Acrobat 9.3 for Windows and Macintosh, and Adobe Reader 8.2 and Acrobat 8.2 for Windows and Macintosh. As described in Security Bulletin APSB10-06, this vulnerability (CVE-2010-0186) could subvert the domain sandbox and make unauthorized cross-domain requests.



Affected software versions

Adobe Reader 9.3 and earlier versions for Windows, Macintosh, and UNIX
Adobe Acrobat 9.3 and earlier versions for Windows and Macintosh</impact>
    </impacts>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-07.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-07.html</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-06.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-06.html</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0103.html" source="REDHAT">RHSA-2010:0103</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0102.html" source="REDHAT">RHSA-2010:0102</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=563819" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=563819</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0192" source="VUPEN">ADV-2011-0192</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1481" source="VUPEN">ADV-2010-1481</ref>
      <ref url="http://www.securityfocus.com/bid/38198" source="BID">38198</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0114.html" source="REDHAT">RHSA-2010:0114</ref>
      <ref url="http://www.osvdb.org/62300" source="OSVDB">62300</ref>
      <ref url="http://support.apple.com/kb/HT4188" source="CONFIRM">http://support.apple.com/kb/HT4188</ref>
      <ref url="http://securitytracker.com/id?1023585" source="SECTRACK">1023585</ref>
      <ref url="http://security.gentoo.org/glsa/glsa-201101-09.xml" source="GENTOO">GLSA-201101-09</ref>
      <ref url="http://secunia.com/advisories/43026" source="SECUNIA">43026</ref>
      <ref url="http://secunia.com/advisories/40220" source="SECUNIA">40220</ref>
      <ref url="http://secunia.com/advisories/38915" source="SECUNIA">38915</ref>
      <ref url="http://secunia.com/advisories/38639" source="SECUNIA" adv="1">38639</ref>
      <ref url="http://secunia.com/advisories/38547" source="SECUNIA" adv="1">38547</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8518" source="OVAL">oval:org.mitre.oval:def:8518</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html" source="SUSE">SUSE-SR:2010:006</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html" source="APPLE">APPLE-SA-2010-06-15-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers prev="1" num="9.3"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers prev="1" num="9.3"/>
      </prod>
      <prod vendor="adobe" name="adobe_air">
        <vers num="1.0"/>
        <vers num="1.1"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers prev="1" num="1.5.3.9120"/>
      </prod>
      <prod vendor="adobe" name="flash_player">
        <vers num="10.0.12.10"/>
        <vers num="10.0.12.36"/>
        <vers num="10.0.15.3"/>
        <vers num="10.0.22.87"/>
        <vers num="10.0.32.18"/>
        <vers prev="1" num="10.0.42.34"/>
        <vers num="6.0.21.0"/>
        <vers num="6.0.79"/>
        <vers num="7"/>
        <vers num="7.0"/>
        <vers num="7.0.1"/>
        <vers num="7.0.25"/>
        <vers num="7.0.63"/>
        <vers num="7.0.69.0"/>
        <vers num="7.0.70.0"/>
        <vers num="7.1"/>
        <vers num="7.1.1"/>
        <vers num="7.2"/>
        <vers num="8"/>
        <vers num="8.0"/>
        <vers num="8.0.22.0"/>
        <vers num="8.0.24.0"/>
        <vers num="8.0.33.0"/>
        <vers num="8.0.34.0"/>
        <vers num="8.0.35.0"/>
        <vers num="8.0.39.0"/>
        <vers num="8.0.42.0"/>
        <vers num="9"/>
        <vers num="9.0.112.0"/>
        <vers num="9.0.114.0"/>
        <vers num="9.0.115.0"/>
        <vers num="9.0.124.0"/>
        <vers num="9.0.125.0"/>
        <vers num="9.0.151.0"/>
        <vers num="9.0.152.0"/>
        <vers num="9.0.159.0"/>
        <vers num="9.0.16"/>
        <vers num="9.0.18d60"/>
        <vers num="9.0.20"/>
        <vers num="9.0.20.0"/>
        <vers num="9.0.246.0"/>
        <vers num="9.0.260.0"/>
        <vers num="9.0.28.0"/>
        <vers num="9.0.31"/>
        <vers num="9.0.31.0"/>
        <vers num="9.0.45.0"/>
        <vers num="9.0.47.0"/>
        <vers num="9.0.48.0"/>
        <vers num="9.125.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0187" published="2010-02-15" name="CVE-2010-0187" modified="2011-02-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Adobe Flash Player before 10.0.45.2 and Adobe AIR before 1.5.3.9130 allow remote attackers to cause a denial of service (application crash) via a modified SWF file.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0102.html" source="REDHAT">RHSA-2010:0102</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=564287" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=564287</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0192" source="VUPEN">ADV-2011-0192</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1481" source="VUPEN">ADV-2010-1481</ref>
      <ref url="http://www.securityfocus.com/bid/38200" source="BID">38200</ref>
      <ref url="http://www.exploit-db.com/exploits/11182" source="EXPLOIT-DB">11182</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-06.html" source="CONFIRM" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-06.html</ref>
      <ref url="http://support.apple.com/kb/HT4188" source="CONFIRM">http://support.apple.com/kb/HT4188</ref>
      <ref url="http://securitytracker.com/id?1023585" source="SECTRACK">1023585</ref>
      <ref url="http://security.gentoo.org/glsa/glsa-201101-09.xml" source="GENTOO">GLSA-201101-09</ref>
      <ref url="http://secunia.com/advisories/43026" source="SECUNIA">43026</ref>
      <ref url="http://secunia.com/advisories/40220" source="SECUNIA">40220</ref>
      <ref url="http://secunia.com/advisories/38915" source="SECUNIA">38915</ref>
      <ref url="http://secunia.com/advisories/38547" source="SECUNIA">38547</ref>
      <ref url="http://sebug.net/exploit/18967/" source="MISC">http://sebug.net/exploit/18967/</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8393" source="OVAL">oval:org.mitre.oval:def:8393</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html" source="SUSE">SUSE-SR:2010:006</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html" source="APPLE">APPLE-SA-2010-06-15-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="adobe_air">
        <vers num="1.0"/>
        <vers num="1.1"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers prev="1" num="1.5.3.9120"/>
      </prod>
      <prod vendor="adobe" name="flash_player">
        <vers num="10.0.12.10"/>
        <vers num="10.0.12.36"/>
        <vers num="10.0.15.3"/>
        <vers num="10.0.22.87"/>
        <vers num="10.0.32.18"/>
        <vers prev="1" num="10.0.42.34"/>
        <vers num="6.0.21.0"/>
        <vers num="6.0.79"/>
        <vers num="7"/>
        <vers num="7.0"/>
        <vers num="7.0.1"/>
        <vers num="7.0.25"/>
        <vers num="7.0.63"/>
        <vers num="7.0.69.0"/>
        <vers num="7.0.70.0"/>
        <vers num="7.1"/>
        <vers num="7.1.1"/>
        <vers num="7.2"/>
        <vers num="8"/>
        <vers num="8.0"/>
        <vers num="8.0.22.0"/>
        <vers num="8.0.24.0"/>
        <vers num="8.0.33.0"/>
        <vers num="8.0.34.0"/>
        <vers num="8.0.35.0"/>
        <vers num="8.0.39.0"/>
        <vers num="8.0.42.0"/>
        <vers num="9"/>
        <vers num="9.0.112.0"/>
        <vers num="9.0.114.0"/>
        <vers num="9.0.115.0"/>
        <vers num="9.0.124.0"/>
        <vers num="9.0.125.0"/>
        <vers num="9.0.151.0"/>
        <vers num="9.0.152.0"/>
        <vers num="9.0.159.0"/>
        <vers num="9.0.16"/>
        <vers num="9.0.18d60"/>
        <vers num="9.0.20"/>
        <vers num="9.0.20.0"/>
        <vers num="9.0.246.0"/>
        <vers num="9.0.260.0"/>
        <vers num="9.0.28.0"/>
        <vers num="9.0.31"/>
        <vers num="9.0.31.0"/>
        <vers num="9.0.45.0"/>
        <vers num="9.0.47.0"/>
        <vers num="9.0.48.0"/>
        <vers num="9.125.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0188" published="2010-02-22" name="CVE-2010-0188" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/56297" source="XF">adobe-unspec-priv-escalation(56297)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0399" source="VUPEN" adv="1">ADV-2010-0399</ref>
      <ref url="http://www.securityfocus.com/bid/38195" source="BID">38195</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0114.html" source="REDHAT" adv="1">RHSA-2010:0114</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-07.html" source="CONFIRM" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-07.html</ref>
      <ref url="http://securitytracker.com/id?1023601" source="SECTRACK">1023601</ref>
      <ref url="http://secunia.com/advisories/38915" source="SECUNIA">38915</ref>
      <ref url="http://secunia.com/advisories/38639" source="SECUNIA" adv="1">38639</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8697" source="OVAL">oval:org.mitre.oval:def:8697</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html" source="SUSE">SUSE-SR:2010:006</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0189" published="2010-02-23" name="CVE-2010-0189" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">A certain ActiveX control in NOS Microsystems getPlus Download Manager (aka DLM or Downloader) 1.5.2.35, as used in Adobe Download Manager, improperly validates requests involving web sites that are not in subdomains, which allows remote attackers to force the download and installation of arbitrary programs via a crafted name for a download site.</descript>
      <descript source="nvd">Per: http://blogs.adobe.com/psirt/2010/02/adobe_download_manager_issue.html



"Adobe is aware of the recently posted report of a remote code execution vulnerability in the Adobe Download Manager."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-08.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-08.html</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56370" source="XF">adobe-dlmanager-unspecified-file-download(56370)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0459" source="VUPEN" adv="1">ADV-2010-0459</ref>
      <ref url="http://www.securityfocus.com/bid/38313" source="BID">38313</ref>
      <ref url="http://www.osvdb.org/62547" source="OSVDB">62547</ref>
      <ref url="http://www.akitasecurity.nl/advisory.php?id=AK20090401" source="MISC">http://www.akitasecurity.nl/advisory.php?id=AK20090401</ref>
      <ref url="http://securitytracker.com/id?1023651" source="SECTRACK">1023651</ref>
      <ref url="http://secunia.com/advisories/38729" source="SECUNIA" adv="1">38729</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7182" source="OVAL">oval:org.mitre.oval:def:7182</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=856" source="IDEFENSE">20100223 Multiple Vendor NOS Microsystems getPlus Downloader Input Validation Vulnerability</ref>
      <ref url="http://blogs.zdnet.com/security/?p=5505" source="MISC">http://blogs.zdnet.com/security/?p=5505</ref>
      <ref url="http://blogs.adobe.com/psirt/2010/02/adobe_download_manager_issue.html" source="MISC">http://blogs.adobe.com/psirt/2010/02/adobe_download_manager_issue.html</ref>
      <ref url="http://aviv.raffon.net/2010/02/18/SkeletonsInAdobesSecurityCloset.aspx" source="MISC">http://aviv.raffon.net/2010/02/18/SkeletonsInAdobesSecurityCloset.aspx</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="download_manager">
        <vers prev="1" num="1.6.2.60"/>
      </prod>
      <prod vendor="nos_microsystems" name="getplus_download_manager">
        <vers num="1.5.2.35"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0190" published="2010-04-14" name="CVE-2010-0190" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6986" source="OVAL">oval:org.mitre.oval:def:6986</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0191" published="2010-04-14" name="CVE-2010-0191" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified vectors, related to a "prefix protocol handler vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6729" source="OVAL">oval:org.mitre.oval:def:6729</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0192" published="2010-04-14" name="CVE-2010-0192" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0193 and CVE-2010-0196.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7046" source="OVAL">oval:org.mitre.oval:def:7046</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0193" published="2010-04-14" name="CVE-2010-0193" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0192 and CVE-2010-0196.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57701" source="XF">adobe-acrobat-unspec-code-exec(57701)</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7352" source="OVAL">oval:org.mitre.oval:def:7352</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0194" published="2010-04-14" name="CVE-2010-0194" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0197, CVE-2010-0201, and CVE-2010-0204.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6823" source="OVAL">oval:org.mitre.oval:def:6823</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0195" published="2010-04-14" name="CVE-2010-0195" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, do not properly handle fonts, which allows attackers to execute arbitrary code via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7420" source="OVAL">oval:org.mitre.oval:def:7420</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0196" published="2010-04-14" name="CVE-2010-0196" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0192 and CVE-2010-0193.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7064" source="OVAL">oval:org.mitre.oval:def:7064</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0197" published="2010-04-14" name="CVE-2010-0197" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0194, CVE-2010-0201, and CVE-2010-0204.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7298" source="OVAL">oval:org.mitre.oval:def:7298</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0198" published="2010-04-14" name="CVE-2010-0198" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0199, CVE-2010-0202, and CVE-2010-0203.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7106" source="OVAL">oval:org.mitre.oval:def:7106</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0199" published="2010-04-14" name="CVE-2010-0199" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0202, and CVE-2010-0203.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6900" source="OVAL">oval:org.mitre.oval:def:6900</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" seq="2010-0200" reject="1" published="2010-04-14" name="CVE-2010-0200" modified="2010-04-15">
    <desc>
      <descript source="cve">** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: CVE-2010-0200.  Reason: This candidate is a duplicate of CVE-2010-0200.  Notes: All CVE users should reference CVE-2010-0200 instead of this candidate.  All references and descriptions in this candidate have been removed to prevent accidental usage.</descript>
    </desc>
    <range>
      <network/>
    </range>
    <refs/>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0201" published="2010-04-14" name="CVE-2010-0201" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0194, CVE-2010-0197, and CVE-2010-0204.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7056" source="OVAL">oval:org.mitre.oval:def:7056</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0202" published="2010-04-14" name="CVE-2010-0202" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0199, and CVE-2010-0203.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6733" source="OVAL">oval:org.mitre.oval:def:6733</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0203" published="2010-04-14" name="CVE-2010-0203" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0198, CVE-2010-0199, and CVE-2010-0202.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7494" source="OVAL">oval:org.mitre.oval:def:7494</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0204" published="2010-04-14" name="CVE-2010-0204" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allow attackers to cause a denial of service (memory corruption) or execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2010-0194, CVE-2010-0197, and CVE-2010-0201.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103C.html" source="CERT">TA10-103C</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0873" source="VUPEN" patch="1" adv="1">ADV-2010-0873</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-09.html" source="CONFIRM" patch="1" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-09.html</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/57711" source="XF">acrobat-unspec-code-execution(57711)</ref>
      <ref url="http://www.securityfocus.com/bid/39522" source="BID">39522</ref>
      <ref url="http://www.securityfocus.com/bid/39329" source="BID">39329</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7387" source="OVAL">oval:org.mitre.oval:def:7387</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="acrobat">
        <vers num="8.0.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.3"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
      <prod vendor="adobe" name="acrobat_reader">
        <vers num="8.0"/>
        <vers num="8.1"/>
        <vers num="8.1.1"/>
        <vers num="8.1.2"/>
        <vers num="8.1.4"/>
        <vers num="8.1.5"/>
        <vers num="8.1.6"/>
        <vers num="8.1.7"/>
        <vers num="8.2.1"/>
        <vers num="9.0"/>
        <vers num="9.1"/>
        <vers num="9.1.1"/>
        <vers num="9.1.2"/>
        <vers num="9.1.3"/>
        <vers num="9.2"/>
        <vers num="9.3"/>
        <vers num="9.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0205" published="2010-03-03" name="CVE-2010-0205" modified="2010-11-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed representation, which allows remote attackers to cause a denial of service (memory and CPU consumption, and application hang) via a crafted PNG file, as demonstrated by use of the deflate compression method on data composed of many occurrences of the same character, related to a "decompression bomb" attack.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/576029" source="CERT-VN">VU#576029</ref>
      <ref url="http://www.securityfocus.com/bid/38478" source="BID" patch="1">38478</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56661" source="XF">libpng-pngdecompresschunk-dos(56661)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2491" source="VUPEN">ADV-2010-2491</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1107" source="VUPEN">ADV-2010-1107</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0847" source="VUPEN">ADV-2010-0847</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0686" source="VUPEN">ADV-2010-0686</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0682" source="VUPEN">ADV-2010-0682</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0667" source="VUPEN">ADV-2010-0667</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0637" source="VUPEN">ADV-2010-0637</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0626" source="VUPEN">ADV-2010-0626</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0605" source="VUPEN">ADV-2010-0605</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0517" source="VUPEN">ADV-2010-0517</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2010-0014.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2010-0014.html</ref>
      <ref url="http://www.securitytracker.com/id?1023674" source="SECTRACK">1023674</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:064" source="MANDRIVA">MDVSA-2010:064</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:063" source="MANDRIVA">MDVSA-2010:063</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2032" source="DEBIAN">DSA-2032</ref>
      <ref url="http://ubuntu.com/usn/usn-913-1" source="UBUNTU">USN-913-1</ref>
      <ref url="http://support.apple.com/kb/HT4435" source="CONFIRM">http://support.apple.com/kb/HT4435</ref>
      <ref url="http://secunia.com/advisories/41574" source="SECUNIA">41574</ref>
      <ref url="http://secunia.com/advisories/39251" source="SECUNIA">39251</ref>
      <ref url="http://secunia.com/advisories/38774" source="SECUNIA">38774</ref>
      <ref url="http://osvdb.org/62670" source="OSVDB">62670</ref>
      <ref url="http://lists.vmware.com/pipermail/security-announce/2010/000105.html" source="MLIST">[security-announce] 20100923 VMSA-2010-0014 VMware Workstation, Player, and ACE address several security issues</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html" source="SUSE">SUSE-SR:2010:013</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00002.html" source="SUSE">SUSE-SR:2010:012</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.html" source="SUSE">SUSE-SR:2010:011</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/037607.html" source="FEDORA">FEDORA-2010-4683</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/037364.html" source="FEDORA">FEDORA-2010-3414</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/037355.html" source="FEDORA">FEDORA-2010-3375</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/037237.html" source="FEDORA">FEDORA-2010-2988</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" source="APPLE">APPLE-SA-2010-11-10-1</ref>
      <ref url="http://libpng.sourceforge.net/decompression_bombs.html" source="CONFIRM">http://libpng.sourceforge.net/decompression_bombs.html</ref>
      <ref url="http://libpng.sourceforge.net/ADVISORY-1.4.1.html" source="CONFIRM" adv="1">http://libpng.sourceforge.net/ADVISORY-1.4.1.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="libpng" name="libpng">
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.10" edition="beta1"/>
        <vers num="1.0.10" edition="rc1"/>
        <vers num="1.0.11" edition="beta1"/>
        <vers num="1.0.11" edition="beta2"/>
        <vers num="1.0.11" edition="beta3"/>
        <vers num="1.0.11" edition="rc1"/>
        <vers num="1.0.12" edition="beta1"/>
        <vers num="1.0.12" edition="rc1"/>
        <vers num="1.0.13"/>
        <vers num="1.0.14"/>
        <vers num="1.0.15" edition="rc1"/>
        <vers num="1.0.15" edition="rc2"/>
        <vers num="1.0.15" edition="rc3"/>
        <vers num="1.0.16"/>
        <vers num="1.0.17" edition="rc1"/>
        <vers num="1.0.18"/>
        <vers num="1.0.19" edition="rc1"/>
        <vers num="1.0.19" edition="rc2"/>
        <vers num="1.0.19" edition="rc3"/>
        <vers num="1.0.19" edition="rc5"/>
        <vers num="1.0.2"/>
        <vers num="1.0.20"/>
        <vers num="1.0.21" edition="rc1"/>
        <vers num="1.0.21" edition="rc2"/>
        <vers num="1.0.22" edition="rc1"/>
        <vers num="1.0.23" edition="rc1"/>
        <vers num="1.0.23" edition="rc2"/>
        <vers num="1.0.23" edition="rc3"/>
        <vers num="1.0.23" edition="rc4"/>
        <vers num="1.0.23" edition="rc5"/>
        <vers num="1.0.24" edition="rc1"/>
        <vers num="1.0.25" edition="rc1"/>
        <vers num="1.0.25" edition="rc2"/>
        <vers num="1.0.26"/>
        <vers num="1.0.27" edition="rc1"/>
        <vers num="1.0.27" edition="rc2"/>
        <vers num="1.0.27" edition="rc3"/>
        <vers num="1.0.27" edition="rc4"/>
        <vers num="1.0.27" edition="rc5"/>
        <vers num="1.0.27" edition="rc6"/>
        <vers num="1.0.28" edition="rc2"/>
        <vers num="1.0.28" edition="rc3"/>
        <vers num="1.0.28" edition="rc4"/>
        <vers num="1.0.28" edition="rc5"/>
        <vers num="1.0.28" edition="rc6"/>
        <vers num="1.0.29" edition="beta1"/>
        <vers num="1.0.29" edition="rc1"/>
        <vers num="1.0.29" edition="rc2"/>
        <vers num="1.0.29" edition="rc3"/>
        <vers num="1.0.3"/>
        <vers num="1.0.30" edition="rc1"/>
        <vers num="1.0.31" edition="rc01"/>
        <vers num="1.0.32"/>
        <vers num="1.0.33"/>
        <vers num="1.0.34"/>
        <vers num="1.0.35"/>
        <vers num="1.0.37"/>
        <vers num="1.0.38"/>
        <vers num="1.0.39"/>
        <vers num="1.0.40"/>
        <vers num="1.0.41"/>
        <vers num="1.0.42"/>
        <vers num="1.0.43"/>
        <vers num="1.0.44"/>
        <vers num="1.0.45"/>
        <vers num="1.0.46"/>
        <vers num="1.0.47"/>
        <vers num="1.0.48"/>
        <vers num="1.0.5"/>
        <vers num="1.0.50"/>
        <vers num="1.0.51"/>
        <vers num="1.0.52"/>
        <vers num="1.0.6" edition="a"/>
        <vers num="1.0.6" edition="d"/>
        <vers num="1.0.6" edition="e"/>
        <vers num="1.0.6" edition="f"/>
        <vers num="1.0.6" edition="g"/>
        <vers num="1.0.6" edition="h"/>
        <vers num="1.0.6" edition="i"/>
        <vers num="1.0.6" edition="j"/>
        <vers num="1.0.7" edition="beta11"/>
        <vers num="1.0.7" edition="beta12"/>
        <vers num="1.0.7" edition="beta13"/>
        <vers num="1.0.7" edition="beta14"/>
        <vers num="1.0.7" edition="beta15"/>
        <vers num="1.0.7" edition="beta16"/>
        <vers num="1.0.7" edition="beta17"/>
        <vers num="1.0.7" edition="beta18"/>
        <vers num="1.0.7" edition="rc1"/>
        <vers num="1.0.7" edition="rc2"/>
        <vers num="1.0.8" edition="beta1"/>
        <vers num="1.0.8" edition="beta2"/>
        <vers num="1.0.8" edition="beta3"/>
        <vers num="1.0.8" edition="beta4"/>
        <vers num="1.0.8" edition="rc1"/>
        <vers num="1.0.9" edition="beta1"/>
        <vers num="1.0.9" edition="beta10"/>
        <vers num="1.0.9" edition="beta2"/>
        <vers num="1.0.9" edition="beta3"/>
        <vers num="1.0.9" edition="beta4"/>
        <vers num="1.0.9" edition="beta5"/>
        <vers num="1.0.9" edition="beta6"/>
        <vers num="1.0.9" edition="beta7"/>
        <vers num="1.0.9" edition="beta8"/>
        <vers num="1.0.9" edition="beta9"/>
        <vers num="1.0.9" edition="rc1"/>
        <vers num="1.0.9" edition="rc2"/>
        <vers num="1.2.0" edition="beta1"/>
        <vers num="1.2.0" edition="beta2"/>
        <vers num="1.2.0" edition="beta3"/>
        <vers num="1.2.0" edition="beta4"/>
        <vers num="1.2.0" edition="beta5"/>
        <vers num="1.2.0" edition="rc1"/>
        <vers num="1.2.1" edition="beta1"/>
        <vers num="1.2.1" edition="beta2"/>
        <vers num="1.2.1" edition="beta3"/>
        <vers num="1.2.1" edition="beta4"/>
        <vers num="1.2.1" edition="rc1"/>
        <vers num="1.2.1" edition="rc2"/>
        <vers num="1.2.10" edition="beta1"/>
        <vers num="1.2.10" edition="beta2"/>
        <vers num="1.2.10" edition="beta3"/>
        <vers num="1.2.10" edition="beta4"/>
        <vers num="1.2.10" edition="beta5"/>
        <vers num="1.2.10" edition="beta6"/>
        <vers num="1.2.10" edition="beta7"/>
        <vers num="1.2.10" edition="rc1"/>
        <vers num="1.2.10" edition="rc2"/>
        <vers num="1.2.10" edition="rc3"/>
        <vers num="1.2.11" edition="beta1"/>
        <vers num="1.2.11" edition="beta2"/>
        <vers num="1.2.11" edition="beta3"/>
        <vers num="1.2.11" edition="beta4"/>
        <vers num="1.2.11" edition="rc1"/>
        <vers num="1.2.11" edition="rc2"/>
        <vers num="1.2.11" edition="rc3"/>
        <vers num="1.2.11" edition="rc5"/>
        <vers num="1.2.13" edition="beta1"/>
        <vers num="1.2.13" edition="rc1"/>
        <vers num="1.2.13" edition="rc2"/>
        <vers num="1.2.14" edition="beta1"/>
        <vers num="1.2.14" edition="beta2"/>
        <vers num="1.2.14" edition="rc1"/>
        <vers num="1.2.15" edition="beta1"/>
        <vers num="1.2.15" edition="beta2"/>
        <vers num="1.2.15" edition="beta3"/>
        <vers num="1.2.15" edition="beta4"/>
        <vers num="1.2.15" edition="beta5"/>
        <vers num="1.2.15" edition="beta6"/>
        <vers num="1.2.15" edition="rc1"/>
        <vers num="1.2.15" edition="rc2"/>
        <vers num="1.2.15" edition="rc3"/>
        <vers num="1.2.15" edition="rc4"/>
        <vers num="1.2.15" edition="rc5"/>
        <vers num="1.2.16" edition="beta1"/>
        <vers num="1.2.16" edition="beta2"/>
        <vers num="1.2.16" edition="rc1"/>
        <vers num="1.2.17" edition="beta1"/>
        <vers num="1.2.17" edition="beta2"/>
        <vers num="1.2.17" edition="rc1"/>
        <vers num="1.2.17" edition="rc2"/>
        <vers num="1.2.17" edition="rc3"/>
        <vers num="1.2.17" edition="rc4"/>
        <vers num="1.2.18"/>
        <vers num="1.2.19" edition="beta1"/>
        <vers num="1.2.19" edition="beta10"/>
        <vers num="1.2.19" edition="beta11"/>
        <vers num="1.2.19" edition="beta12"/>
        <vers num="1.2.19" edition="beta13"/>
        <vers num="1.2.19" edition="beta14"/>
        <vers num="1.2.19" edition="beta15"/>
        <vers num="1.2.19" edition="beta16"/>
        <vers num="1.2.19" edition="beta17"/>
        <vers num="1.2.19" edition="beta18"/>
        <vers num="1.2.19" edition="beta19"/>
        <vers num="1.2.19" edition="beta2"/>
        <vers num="1.2.19" edition="beta20"/>
        <vers num="1.2.19" edition="beta21"/>
        <vers num="1.2.19" edition="beta22"/>
        <vers num="1.2.19" edition="beta23"/>
        <vers num="1.2.19" edition="beta24"/>
        <vers num="1.2.19" edition="beta25"/>
        <vers num="1.2.19" edition="beta26"/>
        <vers num="1.2.19" edition="beta27"/>
        <vers num="1.2.19" edition="beta28"/>
        <vers num="1.2.19" edition="beta29"/>
        <vers num="1.2.19" edition="beta3"/>
        <vers num="1.2.19" edition="beta30"/>
        <vers num="1.2.19" edition="beta31"/>
        <vers num="1.2.19" edition="beta32"/>
        <vers num="1.2.19" edition="beta33"/>
        <vers num="1.2.19" edition="beta4"/>
        <vers num="1.2.19" edition="beta5"/>
        <vers num="1.2.19" edition="beta6"/>
        <vers num="1.2.19" edition="beta7"/>
        <vers num="1.2.19" edition="beta8"/>
        <vers num="1.2.19" edition="beta9"/>
        <vers num="1.2.19" edition="rc1"/>
        <vers num="1.2.19" edition="rc2"/>
        <vers num="1.2.19" edition="rc3"/>
        <vers num="1.2.19" edition="rc4"/>
        <vers num="1.2.19" edition="rc5"/>
        <vers num="1.2.19" edition="rc6"/>
        <vers num="1.2.2" edition="beta1"/>
        <vers num="1.2.2" edition="beta2"/>
        <vers num="1.2.2" edition="beta3"/>
        <vers num="1.2.2" edition="beta4"/>
        <vers num="1.2.2" edition="beta5"/>
        <vers num="1.2.2" edition="beta6"/>
        <vers num="1.2.2" edition="rc1"/>
        <vers num="1.2.20" edition="beta01"/>
        <vers num="1.2.20" edition="beta02"/>
        <vers num="1.2.20" edition="beta03"/>
        <vers num="1.2.20" edition="beta04"/>
        <vers num="1.2.20" edition="rc1"/>
        <vers num="1.2.20" edition="rc2"/>
        <vers num="1.2.20" edition="rc3"/>
        <vers num="1.2.20" edition="rc4"/>
        <vers num="1.2.20" edition="rc5"/>
        <vers num="1.2.20" edition="rc6"/>
        <vers num="1.2.21" edition="beta1"/>
        <vers num="1.2.21" edition="beta2"/>
        <vers num="1.2.21" edition="rc1"/>
        <vers num="1.2.21" edition="rc2"/>
        <vers num="1.2.21" edition="rc3"/>
        <vers num="1.2.22" edition="beta1"/>
        <vers num="1.2.22" edition="beta2"/>
        <vers num="1.2.22" edition="beta2-1.2.21"/>
        <vers num="1.2.22" edition="beta3"/>
        <vers num="1.2.22" edition="beta3-1.2.21"/>
        <vers num="1.2.22" edition="beta4"/>
        <vers num="1.2.22" edition="beta4-1.2.21"/>
        <vers num="1.2.22" edition="rc1"/>
        <vers num="1.2.22" edition="rc1-1.2.21"/>
        <vers num="1.2.23" edition="beta01"/>
        <vers num="1.2.23" edition="beta01-1.2.22"/>
        <vers num="1.2.23" edition="beta02"/>
        <vers num="1.2.23" edition="beta02-1.2.22"/>
        <vers num="1.2.23" edition="beta03"/>
        <vers num="1.2.23" edition="beta03-1.2.22"/>
        <vers num="1.2.23" edition="beta04"/>
        <vers num="1.2.23" edition="beta04-1.2.22"/>
        <vers num="1.2.23" edition="beta05"/>
        <vers num="1.2.23" edition="beta05-1.2.22"/>
        <vers num="1.2.23" edition="rc01"/>
        <vers num="1.2.23" edition="rc01-1.2.22"/>
        <vers num="1.2.24" edition="beta01"/>
        <vers num="1.2.24" edition="beta01-1.2.23"/>
        <vers num="1.2.24" edition="beta02"/>
        <vers num="1.2.24" edition="beta02-1.2.23"/>
        <vers num="1.2.24" edition="beta03"/>
        <vers num="1.2.24" edition="beta03-1.2.23"/>
        <vers num="1.2.24" edition="rc01"/>
        <vers num="1.2.24" edition="rc01-1.2.23"/>
        <vers num="1.2.25" edition="beta01"/>
        <vers num="1.2.25" edition="beta02"/>
        <vers num="1.2.25" edition="beta03"/>
        <vers num="1.2.25" edition="beta04"/>
        <vers num="1.2.25" edition="beta05"/>
        <vers num="1.2.25" edition="beta06"/>
        <vers num="1.2.25" edition="rc01"/>
        <vers num="1.2.25" edition="rc02"/>
        <vers num="1.2.26" edition="beta01"/>
        <vers num="1.2.26" edition="beta02"/>
        <vers num="1.2.26" edition="beta03"/>
        <vers num="1.2.26" edition="beta04"/>
        <vers num="1.2.26" edition="beta05"/>
        <vers num="1.2.26" edition="beta06"/>
        <vers num="1.2.26" edition="rc01"/>
        <vers num="1.2.27"/>
        <vers num="1.2.28"/>
        <vers num="1.2.29"/>
        <vers num="1.2.3" edition="rc1"/>
        <vers num="1.2.3" edition="rc2"/>
        <vers num="1.2.3" edition="rc3"/>
        <vers num="1.2.3" edition="rc4"/>
        <vers num="1.2.3" edition="rc5"/>
        <vers num="1.2.3" edition="rc6"/>
        <vers num="1.2.30"/>
        <vers num="1.2.31"/>
        <vers num="1.2.32"/>
        <vers num="1.2.33"/>
        <vers num="1.2.34"/>
        <vers num="1.2.35"/>
        <vers num="1.2.36"/>
        <vers num="1.2.37" edition="beta1"/>
        <vers num="1.2.37" edition="beta2"/>
        <vers num="1.2.37" edition="beta3"/>
        <vers num="1.2.37" edition="rc1"/>
        <vers num="1.2.38" edition="beta1"/>
        <vers num="1.2.38" edition="rc1"/>
        <vers num="1.2.38" edition="rc2"/>
        <vers num="1.2.38" edition="rc3"/>
        <vers num="1.2.39" edition="beta1"/>
        <vers num="1.2.39" edition="beta2"/>
        <vers num="1.2.39" edition="beta3"/>
        <vers num="1.2.39" edition="beta4"/>
        <vers num="1.2.39" edition="beta5"/>
        <vers num="1.2.39" edition="rc1"/>
        <vers num="1.2.4" edition="beta1"/>
        <vers num="1.2.4" edition="beta2"/>
        <vers num="1.2.4" edition="beta3"/>
        <vers num="1.2.4" edition="rc1"/>
        <vers num="1.2.40" edition="beta1"/>
        <vers num="1.2.40" edition="rc1"/>
        <vers num="1.2.41" edition="beta1"/>
        <vers num="1.2.41" edition="beta11"/>
        <vers num="1.2.41" edition="beta12"/>
        <vers num="1.2.41" edition="beta13"/>
        <vers num="1.2.41" edition="beta14"/>
        <vers num="1.2.41" edition="beta16"/>
        <vers num="1.2.41" edition="beta17"/>
        <vers num="1.2.41" edition="beta18"/>
        <vers num="1.2.41" edition="beta2"/>
        <vers num="1.2.41" edition="beta3"/>
        <vers num="1.2.41" edition="beta4"/>
        <vers num="1.2.41" edition="beta5"/>
        <vers num="1.2.41" edition="beta6"/>
        <vers num="1.2.41" edition="beta7"/>
        <vers num="1.2.41" edition="beta8"/>
        <vers num="1.2.41" edition="beta9"/>
        <vers num="1.2.41" edition="rc1"/>
        <vers num="1.2.41" edition="rc2"/>
        <vers num="1.2.41" edition="rc3"/>
        <vers num="1.2.42" edition="beta1"/>
        <vers num="1.2.42" edition="beta2"/>
        <vers num="1.2.42" edition="rc1"/>
        <vers num="1.2.42" edition="rc2"/>
        <vers num="1.2.42" edition="rc3"/>
        <vers num="1.2.42" edition="rc4"/>
        <vers num="1.2.42" edition="rc5"/>
        <vers num="1.2.5" edition="beta1"/>
        <vers num="1.2.5" edition="beta2"/>
        <vers num="1.2.5" edition="beta3"/>
        <vers num="1.2.5" edition="rc1"/>
        <vers num="1.2.5" edition="rc2"/>
        <vers num="1.2.5" edition="rc3"/>
        <vers num="1.2.6" edition="beta1"/>
        <vers num="1.2.6" edition="beta2"/>
        <vers num="1.2.6" edition="beta3"/>
        <vers num="1.2.6" edition="beta4"/>
        <vers num="1.2.6" edition="rc1"/>
        <vers num="1.2.6" edition="rc2"/>
        <vers num="1.2.6" edition="rc3"/>
        <vers num="1.2.6" edition="rc4"/>
        <vers num="1.2.6" edition="rc5"/>
        <vers num="1.2.7" edition="beta1"/>
        <vers num="1.2.7" edition="beta2"/>
        <vers num="1.2.8" edition="beta1"/>
        <vers num="1.2.8" edition="beta2"/>
        <vers num="1.2.8" edition="beta3"/>
        <vers num="1.2.8" edition="beta4"/>
        <vers num="1.2.8" edition="beta5"/>
        <vers num="1.2.8" edition="rc1"/>
        <vers num="1.2.8" edition="rc2"/>
        <vers num="1.2.8" edition="rc3"/>
        <vers num="1.2.8" edition="rc4"/>
        <vers num="1.2.8" edition="rc5"/>
        <vers num="1.2.9" edition="beta1"/>
        <vers num="1.2.9" edition="beta10"/>
        <vers num="1.2.9" edition="beta2"/>
        <vers num="1.2.9" edition="beta3"/>
        <vers num="1.2.9" edition="beta4"/>
        <vers num="1.2.9" edition="beta5"/>
        <vers num="1.2.9" edition="beta6"/>
        <vers num="1.2.9" edition="beta7"/>
        <vers num="1.2.9" edition="beta8"/>
        <vers num="1.2.9" edition="beta9"/>
        <vers num="1.2.9" edition="rc1"/>
        <vers num="1.4" edition="beta1"/>
        <vers num="1.4" edition="beta10"/>
        <vers num="1.4" edition="beta11"/>
        <vers num="1.4" edition="beta12"/>
        <vers num="1.4" edition="beta13"/>
        <vers num="1.4" edition="beta133"/>
        <vers num="1.4" edition="beta14"/>
        <vers num="1.4" edition="beta15"/>
        <vers num="1.4" edition="beta16"/>
        <vers num="1.4" edition="beta17"/>
        <vers num="1.4" edition="beta18"/>
        <vers num="1.4" edition="beta19"/>
        <vers num="1.4" edition="beta2"/>
        <vers num="1.4" edition="beta20"/>
        <vers num="1.4" edition="beta22"/>
        <vers num="1.4" edition="beta23"/>
        <vers num="1.4" edition="beta24"/>
        <vers num="1.4" edition="beta25"/>
        <vers num="1.4" edition="beta26"/>
        <vers num="1.4" edition="beta27"/>
        <vers num="1.4" edition="beta28"/>
        <vers num="1.4" edition="beta29"/>
        <vers num="1.4" edition="beta3"/>
        <vers num="1.4" edition="beta30"/>
        <vers num="1.4" edition="beta31"/>
        <vers num="1.4" edition="beta33"/>
        <vers num="1.4" edition="beta4"/>
        <vers num="1.4" edition="beta5"/>
        <vers num="1.4" edition="beta6"/>
        <vers num="1.4" edition="beta7"/>
        <vers num="1.4" edition="beta8"/>
        <vers num="1.4" edition="beta9"/>
        <vers num="1.4.0" edition="beta36"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0209" published="2010-08-11" name="CVE-2010-0209" modified="2011-02-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Adobe Flash Player before 9.0.280 and 10.x before 10.1.82.76, and Adobe AIR before 2.0.3, allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2213, CVE-2010-2214, and CVE-2010-2216.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2011/0192" source="VUPEN">ADV-2011-0192</ref>
      <ref url="http://www.securitytracker.com/id?1024621" source="SECTRACK">1024621</ref>
      <ref url="http://www.adobe.com/support/security/bulletins/apsb10-16.html" source="CONFIRM" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-16.html</ref>
      <ref url="http://support.apple.com/kb/HT4435" source="CONFIRM">http://support.apple.com/kb/HT4435</ref>
      <ref url="http://security.gentoo.org/glsa/glsa-201101-09.xml" source="GENTOO">GLSA-201101-09</ref>
      <ref url="http://secunia.com/advisories/43026" source="SECUNIA">43026</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11461" source="OVAL">oval:org.mitre.oval:def:11461</ref>
      <ref url="http://marc.info/?l=bugtraq&amp;m=128767780602751&amp;w=2" source="HP">HPSBMA02592</ref>
      <ref url="http://marc.info/?l=bugtraq&amp;m=128767780602751&amp;w=2" source="HP">HPSBMA02592</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" source="APPLE">APPLE-SA-2010-11-10-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adobe" name="adobe_air">
        <vers num="1.0"/>
        <vers num="1.0.1"/>
        <vers num="1.5"/>
        <vers num="1.5.1"/>
        <vers num="1.5.3"/>
        <vers num="1.5.3.9120"/>
      </prod>
      <prod vendor="adobe" name="flash_player">
        <vers num="10.0.0.584"/>
        <vers num="10.0.12.10"/>
        <vers num="10.0.12.36"/>
        <vers num="10.0.15.3"/>
        <vers num="10.0.22.87"/>
        <vers num="10.0.32.18"/>
        <vers num="10.0.42.34"/>
        <vers num="10.0.45.2"/>
        <vers num="10.1.52.14.1"/>
        <vers num="10.1.52.15"/>
        <vers prev="1" num="10.1.53.64"/>
        <vers num="7"/>
        <vers num="7.0"/>
        <vers num="7.0.1"/>
        <vers num="7.0.25"/>
        <vers num="7.0.63"/>
        <vers num="7.1.1"/>
        <vers num="7.2"/>
        <vers num="8"/>
        <vers num="8.0.22.0"/>
        <vers num="8.0.33.0"/>
        <vers num="8.0.34.0"/>
        <vers num="8.0.35.0"/>
        <vers num="8.0.39.0"/>
        <vers num="8.0.42.0"/>
        <vers num="9"/>
        <vers num="9.0.112.0"/>
        <vers num="9.0.114.0"/>
        <vers num="9.0.115.0"/>
        <vers num="9.0.124.0"/>
        <vers num="9.0.125.0"/>
        <vers num="9.0.151.0"/>
        <vers num="9.0.152.0"/>
        <vers num="9.0.159.0"/>
        <vers num="9.0.16"/>
        <vers num="9.0.18d60"/>
        <vers num="9.0.20"/>
        <vers num="9.0.20.0"/>
        <vers num="9.0.246.0"/>
        <vers num="9.0.260.0"/>
        <vers num="9.0.28"/>
        <vers num="9.0.28.0"/>
        <vers num="9.0.31"/>
        <vers num="9.0.31.0"/>
        <vers num="9.0.45.0"/>
        <vers num="9.0.47.0"/>
        <vers num="9.0.48.0"/>
        <vers num="9.125.0"/>
      </prod>
      <prod vendor="adobe" name="flash_player_for_linux">
        <vers num="10.0.12.36"/>
        <vers num="10.0.15.3"/>
        <vers num="9.0.115.0"/>
        <vers num="9.0.124.0"/>
        <vers num="9.0.151.0"/>
        <vers num="9.0.31"/>
        <vers num="9.0.48.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0211" published="2010-07-28" name="CVE-2010-0211" modified="2011-01-12" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normalize function, which allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a modrdn call with an RDN string containing invalid UTF-8 sequences, which triggers a free of an invalid, uninitialized pointer in the slap_mods_free function, as demonstrated using the Codenomicon LDAPv3 test suite.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/41770" source="BID" patch="1">41770</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0025" source="VUPEN">ADV-2011-0025</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1858" source="VUPEN" adv="1">ADV-2010-1858</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1849" source="VUPEN" adv="1">ADV-2010-1849</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0001.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0001.html</ref>
      <ref url="http://www.securitytracker.com/id?1024221" source="SECTRACK">1024221</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/515545/100/0/threaded" source="BUGTRAQ">20110105 VMSA-2011-0001 VMware ESX third party updates for Service Console packages glibc, sudo, and openldap</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0543.html" source="REDHAT">RHSA-2010:0543</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0542.html" source="REDHAT">RHSA-2010:0542</ref>
      <ref url="http://www.openldap.org/its/index.cgi/Software%20Bugs?id=6570" source="CONFIRM">http://www.openldap.org/its/index.cgi/Software%20Bugs?id=6570</ref>
      <ref url="http://support.apple.com/kb/HT4435" source="CONFIRM">http://support.apple.com/kb/HT4435</ref>
      <ref url="http://secunia.com/advisories/42787" source="SECUNIA">42787</ref>
      <ref url="http://secunia.com/advisories/40687" source="SECUNIA" adv="1">40687</ref>
      <ref url="http://secunia.com/advisories/40677" source="SECUNIA" adv="1">40677</ref>
      <ref url="http://secunia.com/advisories/40639" source="SECUNIA" adv="1">40639</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-08/msg00001.html" source="SUSE">SUSE-SR:2010:014</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" source="APPLE">APPLE-SA-2010-11-10-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="openldap" name="openldap">
        <vers num="2.4.22"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0212" published="2010-07-28" name="CVE-2010-0212" modified="2011-01-12" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">OpenLDAP 2.4.22 allows remote attackers to cause a denial of service (crash) via a modrdn call with a zero-length RDN destination string, which is not properly handled by the smr_normalize function and triggers a NULL pointer dereference in the IA5StringNormalize function in schema_init.c, as demonstrated using the Codenomicon LDAPv3 test suite.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1849" source="VUPEN" patch="1" adv="1">ADV-2010-1849</ref>
      <ref url="http://www.securityfocus.com/bid/41770" source="BID" patch="1">41770</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0025" source="VUPEN">ADV-2011-0025</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1858" source="VUPEN" adv="1">ADV-2010-1858</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0001.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0001.html</ref>
      <ref url="http://www.securitytracker.com/id?1024221" source="SECTRACK">1024221</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/515545/100/0/threaded" source="BUGTRAQ">20110105 VMSA-2011-0001 VMware ESX third party updates for Service Console packages glibc, sudo, and openldap</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0542.html" source="REDHAT">RHSA-2010:0542</ref>
      <ref url="http://www.openldap.org/its/index.cgi/Software%20Bugs?id=6570" source="CONFIRM">http://www.openldap.org/its/index.cgi/Software%20Bugs?id=6570</ref>
      <ref url="http://support.apple.com/kb/HT4435" source="CONFIRM">http://support.apple.com/kb/HT4435</ref>
      <ref url="http://secunia.com/advisories/42787" source="SECUNIA">42787</ref>
      <ref url="http://secunia.com/advisories/40687" source="SECUNIA" adv="1">40687</ref>
      <ref url="http://secunia.com/advisories/40639" source="SECUNIA" adv="1">40639</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-08/msg00001.html" source="SUSE">SUSE-SR:2010:014</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" source="APPLE">APPLE-SA-2010-11-10-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="openldap" name="openldap">
        <vers num="2.4.22"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0213" published="2010-07-28" name="CVE-2010-0213" modified="2010-12-07" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:N/A:P)" CVSS_score="2.6" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="4.9" CVSS_base_score="2.6">
    <desc>
      <descript source="cve">BIND 9.7.1 and 9.7.1-P1, when a recursive validating server has a trust anchor that is configured statically or via DNSSEC Lookaside Validation (DLV), allows remote attackers to cause a denial of service (infinite loop) via a query for an RRSIG record whose answer is not in the cache, which causes BIND to repeatedly send RRSIG queries to the authoritative servers.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/211905" source="CERT-VN">VU#211905</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1884" source="VUPEN" adv="1">ADV-2010-1884</ref>
      <ref url="http://www.securitytracker.com/id?1024217" source="SECTRACK">1024217</ref>
      <ref url="http://www.securityfocus.com/bid/41730" source="BID">41730</ref>
      <ref url="http://www.isc.org/software/bind/advisories/cve-2010-0213" source="CONFIRM" adv="1">http://www.isc.org/software/bind/advisories/cve-2010-0213</ref>
      <ref url="http://secunia.com/advisories/40709" source="SECUNIA" adv="1">40709</ref>
      <ref url="http://secunia.com/advisories/40652" source="SECUNIA" adv="1">40652</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-11/msg00001.html" source="SUSE">SUSE-SR:2010:020</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-July/044445.html" source="FEDORA">FEDORA-2010-11344</ref>
    </refs>
    <vuln_soft>
      <prod vendor="isc" name="bind">
        <vers num="9.7.1"/>
        <vers num="9.7.1-p1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0214" published="2011-01-11" name="CVE-2010-0214" modified="2011-07-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The administrative interface on the PolyVision RoomWizard with firmware 3.2.3 places the Sync Connector Active Directory (AD) credentials in a web form that is accessed over HTTP on port 80, which allows remote attackers to obtain sensitive information by reading the HTML source code corresponding to the /admin/sign/DeviceSynch URI.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/870601" source="CERT-VN">VU#870601</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/64543" source="XF">roomwizard-password-security-bypass(64543)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0059" source="VUPEN" adv="1">ADV-2011-0059</ref>
      <ref url="http://www.securityfocus.com/bid/45699" source="BID">45699</ref>
      <ref url="http://seclists.org/fulldisclosure/2011/Jan/58" source="FULLDISC">20110106 RoomWizard Default Password and Sync Connector Credential Leak [CVE-2010-0214]</ref>
      <ref url="http://packetstormsecurity.org/files/view/97291/roomwizard-disclose.txt" source="MISC">http://packetstormsecurity.org/files/view/97291/roomwizard-disclose.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="polyvision" name="roomwizard_firmware">
        <vers num="3.2.3"/>
      </prod>
      <prod vendor="polyvision" name="roomwizard">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0215" published="2011-01-07" name="CVE-2010-0215" modified="2011-01-11" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:P)" CVSS_score="6.0" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="6.8" CVSS_base_score="6.0">
    <desc>
      <descript source="cve">ActiveCollab before 2.3.2 allows remote authenticated users to bypass intended access restrictions, and (1) delete an attachment or (2) subscribe to an object, via a crafted URL.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/236703" source="CERT-VN">VU#236703</ref>
      <ref url="http://www.activecollab.com/docs/manuals/admin/release-notes/activecollab-2-3-2" source="CONFIRM">http://www.activecollab.com/docs/manuals/admin/release-notes/activecollab-2-3-2</ref>
    </refs>
    <vuln_soft>
      <prod vendor="a51dev" name="activecollab">
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="2.1"/>
        <vers num="2.1.1"/>
        <vers num="2.1.2"/>
        <vers num="2.1.3"/>
        <vers num="2.1.4"/>
        <vers num="2.2"/>
        <vers num="2.2.1"/>
        <vers num="2.2.2"/>
        <vers num="2.3"/>
        <vers prev="1" num="2.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0216" published="2011-05-10" name="CVE-2010-0216" modified="2011-09-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">authenticate_ad_setup_finished.cfm in MediaCAST 8 and earlier allows remote attackers to discover usernames and cleartext passwords by reading the error messages returned for requests that use the UserID parameter.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/67082" source="XF">mediacast-authenticateadsetup-info-disc(67082)</ref>
      <ref url="http://www.securityfocus.com/bid/47572" source="BID">47572</ref>
      <ref url="http://www.packetninjas.net/storage/advisories/MediaCast-PWDump-FINAL.txt" source="MISC">http://www.packetninjas.net/storage/advisories/MediaCast-PWDump-FINAL.txt</ref>
      <ref url="http://www.osvdb.org/72079" source="OSVDB">72079</ref>
      <ref url="http://securityreason.com/securityalert/8245" source="SREASON">8245</ref>
      <ref url="http://secunia.com/advisories/44182" source="SECUNIA" adv="1">44182</ref>
    </refs>
    <vuln_soft>
      <prod vendor="inventivetec" name="mediacast">
        <vers prev="1" num="8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0217" published="2011-05-20" name="CVE-2010-0217" modified="2011-09-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_score="5.8" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="8.6" CVSS_base_score="5.8">
    <desc>
      <descript source="cve">Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or Tomcat daemon crash) via a brute-force attack.</descript>
    </desc>
    <loss_types>
      <avail/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/67540" source="XF">chat-server-jsessionid-session-hijacking(67540)</ref>
      <ref url="http://www.securityfocus.com/bid/47910" source="BID">47910</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/518037/100/0/threaded" source="BUGTRAQ">20110517 CVE-2010-0217 - Zeacom Chat Server JSESSIONID weak SessionID Vulnerability</ref>
      <ref url="http://www.packetninjas.net/storage/advisories/Zeacom-CVE-2010-0217.txt" source="MISC">http://www.packetninjas.net/storage/advisories/Zeacom-CVE-2010-0217.txt</ref>
      <ref url="http://securityreason.com/securityalert/8255" source="SREASON">8255</ref>
    </refs>
    <vuln_soft>
      <prod vendor="zeacom" name="chat_server">
        <vers prev="1" num="5.0" edition="sp4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0218" published="2010-10-05" name="CVE-2010-0218" modified="2010-10-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive information via a DNS query.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/784855" source="CERT-VN">VU#784855</ref>
      <ref url="http://ftp.isc.org/isc/bind9/9.7.2-P2/RELEASE-NOTES-BIND-9.7.2-P2.html" source="CONFIRM" patch="1">http://ftp.isc.org/isc/bind9/9.7.2-P2/RELEASE-NOTES-BIND-9.7.2-P2.html</ref>
      <ref url="https://lists.isc.org/pipermail/bind-announce/2010-September/000655.html" source="MLIST" adv="1">[bind-announce] 20100928 Security Advisory Regarding Unexpected ACL Behavior in BIND 9.7.2</ref>
    </refs>
    <vuln_soft>
      <prod vendor="isc" name="bind">
        <vers num="9.7.2"/>
        <vers num="9.7.2-p1"/>
        <vers num="9.7.2b1"/>
        <vers num="9.7.2rc1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0219" published="2010-10-18" name="CVE-2010-0219" modified="2013-05-09" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier for remote attackers to execute arbitrary code by uploading a crafted web service.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.kb.cert.org/vuls/id/989719" source="CERT-VN">VU#989719</ref>
      <ref url="https://service.sap.com/sap/support/notes/1432881" source="MISC" patch="1">https://service.sap.com/sap/support/notes/1432881</ref>
      <ref url="https://kb.juniper.net/KB27373" source="CONFIRM">https://kb.juniper.net/KB27373</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/62523" source="XF">businessobjects-dswsbobje-security-bypass(62523)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2673" source="VUPEN" adv="1">ADV-2010-2673</ref>
      <ref url="http://www.securitytracker.com/id?1024929" source="SECTRACK">1024929</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/514284/100/0/threaded" source="BUGTRAQ">20101014 R7-0037: SAP BusinessObjects Axis2 Default Admin Password</ref>
      <ref url="http://www.rapid7.com/security-center/advisories/R7-0037.jsp" source="MISC">http://www.rapid7.com/security-center/advisories/R7-0037.jsp</ref>
      <ref url="http://www.osvdb.org/70233" source="OSVDB">70233</ref>
      <ref url="http://www.exploit-db.com/exploits/15869" source="EXPLOIT-DB">15869</ref>
      <ref url="http://spl0it.org/files/talks/source_barcelona10/Hacking%20SAP%20BusinessObjects.pdf" source="MISC">http://spl0it.org/files/talks/source_barcelona10/Hacking%20SAP%20BusinessObjects.pdf</ref>
      <ref url="http://secunia.com/advisories/42763" source="SECUNIA">42763</ref>
      <ref url="http://secunia.com/advisories/41799" source="SECUNIA" adv="1">41799</ref>
      <ref url="http://retrogod.altervista.org/9sg_ca_d2d.html" source="MISC">http://retrogod.altervista.org/9sg_ca_d2d.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apache" name="axis2">
        <vers num="1.3"/>
        <vers num="1.4"/>
        <vers num="1.4.1"/>
        <vers num="1.5"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.6"/>
      </prod>
      <prod vendor="sap" name="businessobjects">
        <vers num="3.2" edition=""/>
        <vers num="3.2" edition=":enterprise_xi"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0220" published="2010-01-07" name="CVE-2010-0220" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The nsObserverList::FillObserverArray function in xpcom/ds/nsObserverList.cpp in Mozilla Firefox before 3.5.7 allows remote attackers to cause a denial of service (application crash) via a crafted web site that triggers memory consumption and an accompanying Low Memory alert dialog, and also triggers attempted removal of an observer from an empty observers array.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.mozilla.com/en-US/firefox/3.5.7/releasenotes/" source="CONFIRM" patch="1">http://www.mozilla.com/en-US/firefox/3.5.7/releasenotes/</ref>
      <ref url="http://isc.sans.org/diary.html?storyid=7897" source="MISC" patch="1">http://isc.sans.org/diary.html?storyid=7897</ref>
      <ref url="https://bugzilla.mozilla.org/show_bug.cgi?id=507114" source="CONFIRM">https://bugzilla.mozilla.org/show_bug.cgi?id=507114</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55550" source="XF">firefox-nsobserverlist-dos(55550)</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:000" source="MANDRIVA">MDVSA-2010:000</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8292" source="OVAL">oval:org.mitre.oval:def:8292</ref>
      <ref url="http://hg.mozilla.org/mozilla-central/rev/51396f6c9f20" source="CONFIRM">http://hg.mozilla.org/mozilla-central/rev/51396f6c9f20</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mozilla" name="firefox">
        <vers num="0.1"/>
        <vers num="0.10"/>
        <vers num="0.10.1"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.5"/>
        <vers num="0.6"/>
        <vers num="0.6.1"/>
        <vers num="0.7"/>
        <vers num="0.7.1"/>
        <vers num="0.8"/>
        <vers num="0.9" edition="rc"/>
        <vers num="0.9.1"/>
        <vers num="0.9.2"/>
        <vers num="0.9.3"/>
        <vers num="1.0" edition="preview_release"/>
        <vers num="1.0.1"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.4.1"/>
        <vers num="1.5" edition="beta1"/>
        <vers num="1.5" edition="beta2"/>
        <vers num="1.5.0.1"/>
        <vers num="1.5.0.10"/>
        <vers num="1.5.0.11"/>
        <vers num="1.5.0.12"/>
        <vers num="1.5.0.2"/>
        <vers num="1.5.0.3"/>
        <vers num="1.5.0.4"/>
        <vers num="1.5.0.5"/>
        <vers num="1.5.0.6"/>
        <vers num="1.5.0.7"/>
        <vers num="1.5.0.8"/>
        <vers num="1.5.0.9"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="1.5.4"/>
        <vers num="1.5.5"/>
        <vers num="1.5.6"/>
        <vers num="1.5.7"/>
        <vers num="1.5.8"/>
        <vers num="1.8"/>
        <vers num="2.0"/>
        <vers num="2.0.0.1"/>
        <vers num="2.0.0.10"/>
        <vers num="2.0.0.11"/>
        <vers num="2.0.0.2"/>
        <vers num="2.0.0.3"/>
        <vers num="2.0.0.4"/>
        <vers num="2.0.0.5"/>
        <vers num="2.0.0.6"/>
        <vers num="2.0.0.7"/>
        <vers num="2.0.0.8"/>
        <vers num="2.0.0.9"/>
        <vers num="3.0"/>
        <vers num="3.0.5"/>
        <vers num="3.5"/>
        <vers num="3.5.2"/>
        <vers num="3.5.3"/>
        <vers num="3.5.4"/>
        <vers num="3.5.5"/>
        <vers prev="1" num="3.5.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0221" published="2010-01-07" name="CVE-2010-0221" modified="2011-07-06" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="2.1" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.9" CVSS_base_score="2.1">
    <desc>
      <descript source="cve">Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55477" source="XF">kingston-access-control-sec-bypass(55477)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0080" source="VUPEN" adv="1">ADV-2010-0080</ref>
      <ref url="http://www.syss.de/index.php?id=108&amp;tx_ttnews%5Btt_news%5D=528&amp;cHash=8d16fa63d9" source="MISC">http://www.syss.de/index.php?id=108&amp;tx_ttnews[tt_news]=528&amp;cHash=8d16fa63d9</ref>
      <ref url="http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_Kingston_USB-Stick.pdf" source="MISC">http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_Kingston_USB-Stick.pdf</ref>
      <ref url="http://www.kingston.com/driveupdate/" source="MISC">http://www.kingston.com/driveupdate/</ref>
      <ref url="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" source="MISC">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</ref>
      <ref url="http://securitytracker.com/id?1023410" source="SECTRACK">1023410</ref>
      <ref url="http://news.zdnet.co.uk/security/0,1000000189,39963327,00.htm" source="MISC">http://news.zdnet.co.uk/security/0,1000000189,39963327,00.htm</ref>
      <ref url="http://it.slashdot.org/story/10/01/05/1734242/" source="MISC">http://it.slashdot.org/story/10/01/05/1734242/</ref>
      <ref url="http://blogs.zdnet.com/hardware/?p=6655" source="MISC">http://blogs.zdnet.com/hardware/?p=6655</ref>
    </refs>
    <vuln_soft>
      <prod vendor="kingston" name="datatraveler_blackbox">
        <vers num=""/>
      </prod>
      <prod vendor="kingston" name="datatraveler_elite">
        <vers num="" edition=":privacy"/>
      </prod>
      <prod vendor="kingston" name="datatraveler_secure">
        <vers num="" edition=":privacy"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0222" published="2010-01-07" name="CVE-2010-0222" modified="2011-06-09" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0080" source="VUPEN">ADV-2010-0080</ref>
      <ref url="http://www.syss.de/index.php?id=108&amp;tx_ttnews%5Btt_news%5D=528&amp;cHash=8d16fa63d9" source="MISC">http://www.syss.de/index.php?id=108&amp;tx_ttnews[tt_news]=528&amp;cHash=8d16fa63d9</ref>
      <ref url="http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_Kingston_USB-Stick.pdf" source="MISC">http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_Kingston_USB-Stick.pdf</ref>
      <ref url="http://www.kingston.com/driveupdate/" source="MISC" adv="1">http://www.kingston.com/driveupdate/</ref>
      <ref url="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" source="MISC">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</ref>
      <ref url="http://news.zdnet.co.uk/security/0,1000000189,39963327,00.htm" source="MISC">http://news.zdnet.co.uk/security/0,1000000189,39963327,00.htm</ref>
      <ref url="http://it.slashdot.org/story/10/01/05/1734242/" source="MISC">http://it.slashdot.org/story/10/01/05/1734242/</ref>
      <ref url="http://blogs.zdnet.com/hardware/?p=6655" source="MISC">http://blogs.zdnet.com/hardware/?p=6655</ref>
    </refs>
    <vuln_soft>
      <prod vendor="kingston" name="datatraveler_blackbox">
        <vers num=""/>
      </prod>
      <prod vendor="kingston" name="datatraveler_elite">
        <vers num="" edition=":privacy"/>
      </prod>
      <prod vendor="kingston" name="datatraveler_secure">
        <vers num="" edition=":privacy"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Low" seq="2010-0223" published="2010-01-07" name="CVE-2010-0223" modified="2011-06-09" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="2.1" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="3.9" CVSS_base_score="2.1">
    <desc>
      <descript source="cve">Kingston DataTraveler BlackBox (DTBB), DataTraveler Secure Privacy Edition (DTSP), and DataTraveler Elite Privacy Edition (DTEP) USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0080" source="VUPEN">ADV-2010-0080</ref>
      <ref url="http://www.syss.de/index.php?id=108&amp;tx_ttnews%5Btt_news%5D=528&amp;cHash=8d16fa63d9" source="MISC">http://www.syss.de/index.php?id=108&amp;tx_ttnews[tt_news]=528&amp;cHash=8d16fa63d9</ref>
      <ref url="http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_Kingston_USB-Stick.pdf" source="MISC">http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_Kingston_USB-Stick.pdf</ref>
      <ref url="http://www.kingston.com/driveupdate/" source="MISC" adv="1">http://www.kingston.com/driveupdate/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="kingston" name="datatraveler_blackbox">
        <vers num=""/>
      </prod>
      <prod vendor="kingston" name="datatraveler_elite">
        <vers num="" edition=":privacy"/>
      </prod>
      <prod vendor="kingston" name="datatraveler_secure">
        <vers num="" edition=":privacy"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0224" published="2010-01-07" name="CVE-2010-0224" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">SanDisk Cruzer Enterprise USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55475" source="XF">sandisk-access-control-sec-bypass(55475)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0078" source="VUPEN">ADV-2010-0078</ref>
      <ref url="http://www.syss.de/index.php?id=108&amp;tx_ttnews%5Btt_news%5D=528&amp;cHash=8d16fa63d9" source="MISC">http://www.syss.de/index.php?id=108&amp;tx_ttnews[tt_news]=528&amp;cHash=8d16fa63d9</ref>
      <ref url="http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_SanDisk_USB-Stick.pdf" source="MISC">http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_SanDisk_USB-Stick.pdf</ref>
      <ref url="http://www.securityfocus.com/bid/37677" source="BID">37677</ref>
      <ref url="http://www.sandisk.com/business-solutions/enterprise/technical-support/security-bulletin-december-2009" source="MISC" adv="1">http://www.sandisk.com/business-solutions/enterprise/technical-support/security-bulletin-december-2009</ref>
      <ref url="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" source="MISC">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</ref>
      <ref url="http://securitytracker.com/id?1023408" source="SECTRACK">1023408</ref>
      <ref url="http://it.slashdot.org/story/10/01/05/1734242/" source="MISC">http://it.slashdot.org/story/10/01/05/1734242/</ref>
      <ref url="http://blogs.zdnet.com/hardware/?p=6655" source="MISC">http://blogs.zdnet.com/hardware/?p=6655</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sandisk" name="cruzer_enterprise_usb">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0225" published="2010-01-07" name="CVE-2010-0225" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">SanDisk Cruzer Enterprise USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0078" source="VUPEN">ADV-2010-0078</ref>
      <ref url="http://www.syss.de/index.php?id=108&amp;tx_ttnews%5Btt_news%5D=528&amp;cHash=8d16fa63d9" source="MISC">http://www.syss.de/index.php?id=108&amp;tx_ttnews[tt_news]=528&amp;cHash=8d16fa63d9</ref>
      <ref url="http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_SanDisk_USB-Stick.pdf" source="MISC">http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_SanDisk_USB-Stick.pdf</ref>
      <ref url="http://www.securityfocus.com/bid/37677" source="BID">37677</ref>
      <ref url="http://www.sandisk.com/business-solutions/enterprise/technical-support/security-bulletin-december-2009" source="MISC" adv="1">http://www.sandisk.com/business-solutions/enterprise/technical-support/security-bulletin-december-2009</ref>
      <ref url="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" source="MISC">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</ref>
      <ref url="http://it.slashdot.org/story/10/01/05/1734242/" source="MISC">http://it.slashdot.org/story/10/01/05/1734242/</ref>
      <ref url="http://blogs.zdnet.com/hardware/?p=6655" source="MISC">http://blogs.zdnet.com/hardware/?p=6655</ref>
    </refs>
    <vuln_soft>
      <prod vendor="scandisk" name="cruzer_enterprise_usb">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0226" published="2010-01-07" name="CVE-2010-0226" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">SanDisk Cruzer Enterprise USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0078" source="VUPEN">ADV-2010-0078</ref>
      <ref url="http://www.syss.de/index.php?id=108&amp;tx_ttnews%5Btt_news%5D=528&amp;cHash=8d16fa63d9" source="MISC">http://www.syss.de/index.php?id=108&amp;tx_ttnews[tt_news]=528&amp;cHash=8d16fa63d9</ref>
      <ref url="http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_SanDisk_USB-Stick.pdf" source="MISC">http://www.syss.de/fileadmin/ressources/040_veroeffentlichungen/dokumente/SySS_knackt_SanDisk_USB-Stick.pdf</ref>
      <ref url="http://www.securityfocus.com/bid/37677" source="BID">37677</ref>
      <ref url="http://www.sandisk.com/business-solutions/enterprise/technical-support/security-bulletin-december-2009" source="MISC" adv="1">http://www.sandisk.com/business-solutions/enterprise/technical-support/security-bulletin-december-2009</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sandisk" name="cruzer_enterprise_usb">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0227" published="2010-01-07" name="CVE-2010-0227" modified="2010-01-08" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives validate passwords with a program running on the host computer rather than the device hardware, which allows physically proximate attackers to access the cleartext drive contents via a modified program.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.verbatim.com/security/security-update.cfm" source="MISC" adv="1">http://www.verbatim.com/security/security-update.cfm</ref>
      <ref url="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" source="MISC">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</ref>
      <ref url="http://securitytracker.com/id?1023409" source="SECTRACK">1023409</ref>
      <ref url="http://it.slashdot.org/story/10/01/05/1734242/" source="MISC">http://it.slashdot.org/story/10/01/05/1734242/</ref>
      <ref url="http://blogs.zdnet.com/hardware/?p=6655" source="MISC">http://blogs.zdnet.com/hardware/?p=6655</ref>
    </refs>
    <vuln_soft>
      <prod vendor="verbatim" name="corporate_secure">
        <vers num="" edition=":"/>
        <vers num="" edition="::fips"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0228" published="2010-01-07" name="CVE-2010-0228" modified="2010-01-08" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives use a fixed 256-bit key for obtaining access to the cleartext drive contents, which makes it easier for physically proximate attackers to read or modify data by determining and providing this key.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.verbatim.com/security/security-update.cfm" source="MISC" adv="1">http://www.verbatim.com/security/security-update.cfm</ref>
      <ref url="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" source="MISC">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</ref>
      <ref url="http://it.slashdot.org/story/10/01/05/1734242/" source="MISC">http://it.slashdot.org/story/10/01/05/1734242/</ref>
      <ref url="http://blogs.zdnet.com/hardware/?p=6655" source="MISC">http://blogs.zdnet.com/hardware/?p=6655</ref>
    </refs>
    <vuln_soft>
      <prod vendor="verbatim" name="corporate_secure">
        <vers num="" edition=":fips"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0229" published="2010-01-07" name="CVE-2010-0229" modified="2010-01-08" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">Verbatim Corporate Secure and Corporate Secure FIPS Edition USB flash drives do not prevent password replay attacks, which allows physically proximate attackers to access the cleartext drive contents by providing a key that was captured in a USB data stream at an earlier time.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://www.ironkey.com/usb-flash-drive-flaw-exposed" source="MISC">https://www.ironkey.com/usb-flash-drive-flaw-exposed</ref>
      <ref url="http://www.verbatim.com/security/security-update.cfm" source="MISC" adv="1">http://www.verbatim.com/security/security-update.cfm</ref>
    </refs>
    <vuln_soft>
      <prod vendor="verbatim" name="corporate_secure">
        <vers num="" edition=":fips"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0230" published="2010-01-22" name="CVE-2010-0230" modified="2011-04-28" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00004.html" source="SUSE">SUSE-SA:2010:011</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00007.html" source="SUSE" adv="1">SUSE-SR:2010:001</ref>
    </refs>
    <vuln_soft>
      <prod vendor="suse" name="opensuse">
        <vers num="11.2"/>
      </prod>
      <prod vendor="suse" name="suse_linux">
        <vers num="10" edition="sp3"/>
        <vers num="10" edition="sp3:enterprise_desktop"/>
        <vers num="10" edition="sp3:enterprise_server"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0231" published="2010-02-10" name="CVE-2010-0231" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not use a sufficient source of entropy, which allows remote attackers to obtain access to files and other SMB resources via a large number of authentication requests, related to server-generated challenges, certain "duplicate values," and spoofing of an authentication token, aka "SMB NTLM Authentication Lack of Entropy Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-012.mspx" source="MS" patch="1" adv="1">MS10-012</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7751" source="OVAL">oval:org.mitre.oval:def:7751</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:pro_x64"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0232" published="2010-01-21" name="CVE-2010-0232" modified="2011-05-10" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="7.2" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.9" CVSS_base_score="7.2">
    <desc>
      <descript source="cve">The kernel in Microsoft Windows NT 3.1 through Windows 7, including Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2, when access to 16-bit applications is enabled on a 32-bit x86 platform, does not properly validate certain BIOS calls, which allows local users to gain privileges by crafting a VDM_TIB data structure in the Thread Environment Block (TEB), and then calling the NtVdmControl function to start the Windows Virtual DOS Machine (aka NTVDM) subsystem, leading to improperly handled exceptions involving the #GP trap handler (nt!KiTrap0D), aka "Windows Kernel Exception Handler Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-015.mspx" source="MS" patch="1" adv="1">MS10-015</ref>
      <ref url="http://www.microsoft.com/technet/security/advisory/979682.mspx" source="CONFIRM" patch="1" adv="1">http://www.microsoft.com/technet/security/advisory/979682.mspx</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55742" source="XF">ms-win-gptrap-privilege-escalation(55742)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0179" source="VUPEN" adv="1">ADV-2010-0179</ref>
      <ref url="http://www.securityfocus.com/bid/37864" source="BID">37864</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509106/100/0/threaded" source="BUGTRAQ">20100119 Microsoft Windows NT #GP Trap Handler Allows Users to Switch Kernel Stack</ref>
      <ref url="http://securitytracker.com/id?1023471" source="SECTRACK">1023471</ref>
      <ref url="http://secunia.com/advisories/38265" source="SECUNIA" adv="1">38265</ref>
      <ref url="http://seclists.org/fulldisclosure/2010/Jan/341" source="FULLDISC">20100119 Microsoft Windows NT #GP Trap Handler Allows Users to Switch Kernel Stack</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8344" source="OVAL">oval:org.mitre.oval:def:8344</ref>
      <ref url="http://lock.cmpxchg8b.com/c0af0967d904cef2ad4db766a00bc6af/KiTrap0D.zip" source="MISC">http://lock.cmpxchg8b.com/c0af0967d904cef2ad4db766a00bc6af/KiTrap0D.zip</ref>
      <ref url="http://lists.immunitysec.com/pipermail/dailydave/2010-January/006000.html" source="MLIST">[dailydave] 20100119 We hold these axioms to be self evident</ref>
      <ref url="http://blogs.technet.com/msrc/archive/2010/01/20/security-advisory-979682-released.aspx" source="CONFIRM">http://blogs.technet.com/msrc/archive/2010/01/20/security-advisory-979682-released.aspx</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows-nt">
        <vers num="3.1"/>
      </prod>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
        <vers num="sp2" edition="x32"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="sp1"/>
        <vers num="sp2"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
        <vers num="sp2"/>
        <vers num="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0233" published="2010-02-10" name="CVE-2010-0233" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="7.2" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.9" CVSS_base_score="7.2">
    <desc>
      <descript source="cve">Double free vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows local users to gain privileges via a crafted application, aka "Windows Kernel Double Free Vulnerability."</descript>
      <descript source="nvd">Per: http://cwe.mitre.org/data/slices/2000.html#d

"CWE-415 Double Free" vulnerability</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-015.mspx" source="MS" adv="1">MS10-015</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8392" source="OVAL">oval:org.mitre.oval:def:8392</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
        <vers num="sp2" edition="x32"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="sp1"/>
        <vers num="sp2"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="sp2"/>
        <vers num="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0234" published="2010-04-14" name="CVE-2010-0234" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:N/A:C)" CVSS_score="4.7" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="3.4" CVSS_base_score="4.7">
    <desc>
      <descript source="cve">The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 does not properly validate a registry-key argument to an unspecified system call, which allows local users to cause a denial of service (reboot) via a crafted application, aka "Windows Kernel Null Pointer Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-021.mspx" source="MS" patch="1" adv="1">MS10-021</ref>
      <ref url="http://www.securitytracker.com/id?1023850" source="SECTRACK">1023850</ref>
      <ref url="http://secunia.com/advisories/39374" source="SECUNIA">39374</ref>
      <ref url="http://secunia.com/advisories/39373" source="SECUNIA">39373</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6814" source="OVAL">oval:org.mitre.oval:def:6814</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
        <vers num="-" edition="sp2:x32"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="sp1"/>
        <vers num="-" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0235" published="2010-04-14" name="CVE-2010-0235" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:N/A:C)" CVSS_score="4.7" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="3.4" CVSS_base_score="4.7">
    <desc>
      <descript source="cve">The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Vista Gold does not perform the expected validation before creating a symbolic link, which allows local users to cause a denial of service (reboot) via a crafted application, aka "Windows Kernel Symbolic Link Value Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-021.mspx" source="MS" patch="1" adv="1">MS10-021</ref>
      <ref url="http://www.securitytracker.com/id?1023850" source="SECTRACK">1023850</ref>
      <ref url="http://secunia.com/advisories/39373" source="SECUNIA">39373</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7509" source="OVAL">oval:org.mitre.oval:def:7509</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0236" published="2010-04-14" name="CVE-2010-0236" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="7.2" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.9" CVSS_base_score="7.2">
    <desc>
      <descript source="cve">The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Vista Gold does not properly allocate memory for the destination key associated with a symbolic-link registry key, which allows local users to gain privileges via a crafted application, aka "Windows Kernel Memory Allocation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-021.mspx" source="MS" patch="1" adv="1">MS10-021</ref>
      <ref url="http://www.securitytracker.com/id?1023850" source="SECTRACK">1023850</ref>
      <ref url="http://secunia.com/advisories/39373" source="SECUNIA" adv="1">39373</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7113" source="OVAL">oval:org.mitre.oval:def:7113</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0237" published="2010-04-14" name="CVE-2010-0237" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="6.9" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.4" CVSS_base_score="6.9">
    <desc>
      <descript source="cve">The kernel in Microsoft Windows 2000 SP4 and XP SP2 and SP3 allows local users to gain privileges by creating a symbolic link from an untrusted registry hive to a trusted registry hive, aka "Windows Kernel Symbolic Link Creation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-021.mspx" source="MS" patch="1" adv="1">MS10-021</ref>
      <ref url="http://www.securitytracker.com/id?1023850" source="SECTRACK">1023850</ref>
      <ref url="http://secunia.com/advisories/39373" source="SECUNIA">39373</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7130" source="OVAL">oval:org.mitre.oval:def:7130</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0238" published="2010-04-14" name="CVE-2010-0238" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="4.9" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="3.9" CVSS_base_score="4.9">
    <desc>
      <descript source="cve">Unspecified vulnerability in registry-key validation in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, and Vista Gold allows local users to cause a denial of service (reboot) via a crafted application, aka "Windows Kernel Registry Key Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-021.mspx" source="MS" patch="1" adv="1">MS10-021</ref>
      <ref url="http://www.securitytracker.com/id?1023850" source="SECTRACK">1023850</ref>
      <ref url="http://secunia.com/advisories/39373" source="SECUNIA">39373</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6793" source="OVAL">oval:org.mitre.oval:def:6793</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0239" published="2010-02-10" name="CVE-2010-0239" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Router Advertisement packets, which allows remote attackers to execute arbitrary code via crafted packets, aka "ICMPv6 Router Advertisement Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-009.mspx" source="MS" patch="1" adv="1">MS10-009</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8478" source="OVAL">oval:org.mitre.oval:def:8478</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="gold"/>
        <vers num="-" edition="gold:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0240" published="2010-02-10" name="CVE-2010-0240" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when a custom network driver is used, does not properly handle local fragmentation of Encapsulating Security Payload (ESP) over UDP packets, which allows remote attackers to execute arbitrary code via crafted packets, aka "Header MDL Fragmentation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-009.mspx" source="MS" patch="1" adv="1">MS10-009</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8400" source="OVAL">oval:org.mitre.oval:def:8400</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="gold"/>
        <vers num="-" edition="gold:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0241" published="2010-02-10" name="CVE-2010-0241" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Route Information packets, which allows remote attackers to execute arbitrary code via crafted packets, aka "ICMPv6 Route Information Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-009.mspx" source="MS" patch="1" adv="1">MS10-009</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8516" source="OVAL">oval:org.mitre.oval:def:8516</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="gold"/>
        <vers num="-" edition="gold:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0242" published="2010-02-10" name="CVE-2010-0242" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 allows remote attackers to cause a denial of service (system hang) via crafted packets with malformed TCP selective acknowledgement (SACK) values, aka "TCP/IP Selective Acknowledgement Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-009.mspx" source="MS" patch="1" adv="1">MS10-009</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8449" source="OVAL">oval:org.mitre.oval:def:8449</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="gold"/>
        <vers num="-" edition="gold:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0243" published="2010-02-10" name="CVE-2010-0243" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in MSO.DLL in Microsoft Office XP SP3 and Office 2004 for Mac allows remote attackers to execute arbitrary code via a crafted Office document, aka "MSO.DLL Buffer Overflow."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-003.mspx" source="MS" adv="1">MS10-003</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8399" source="OVAL">oval:org.mitre.oval:def:8399</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="office">
        <vers num="2004"/>
        <vers num="xp" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0244" published="2010-01-22" name="CVE-2010-0244" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-2530 and CVE-2009-2531.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55774" source="XF">ie-deleted-obj-code-exec(55774)</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS" adv="1">MS10-002</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8186" source="OVAL">oval:org.mitre.oval:def:8186</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="6" edition="sp1"/>
        <vers num="6.0"/>
        <vers num="6.0.2600"/>
        <vers num="6.0.2800"/>
        <vers num="6.0.2800.1106"/>
        <vers num="6.0.2900"/>
        <vers num="6.0.2900.2180"/>
        <vers num="6.00.2462.0000"/>
        <vers num="6.00.2479.0006"/>
        <vers num="6.00.2600.0000"/>
        <vers num="6.00.2800.1106"/>
        <vers num="6.00.2900.2180"/>
        <vers num="6.00.3663.0000"/>
        <vers num="6.00.3718.0000"/>
        <vers num="6.00.3790.0000"/>
        <vers num="6.00.3790.1830"/>
        <vers num="6.00.3790.3959"/>
        <vers num="7"/>
        <vers num="7.0"/>
        <vers num="7.0.5730" edition="unknown"/>
        <vers num="7.0.5730" edition="unknown:gold"/>
        <vers num="7.0.5730.11"/>
        <vers num="7.00.5730.1100"/>
        <vers num="7.00.6000.16386"/>
        <vers num="7.00.6000.16441"/>
        <vers num="8"/>
        <vers num="8.0.6001"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0245" published="2010-01-22" name="CVE-2010-0245" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0246.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS" patch="1" adv="1">MS10-002</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55775" source="XF">ie-uninitialized-memory-code-exec(55775)</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8491" source="OVAL">oval:org.mitre.oval:def:8491</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="8"/>
        <vers num="8.0.6001"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0246" published="2010-01-22" name="CVE-2010-0246" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0245.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55776" source="XF">ie-deleted-object-code-exec(55776)</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS" adv="1">MS10-002</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8378" source="OVAL">oval:org.mitre.oval:def:8378</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="8"/>
        <vers num="8.0.6001"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0247" published="2010-01-22" name="CVE-2010-0247" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 5.01 SP4, 6, and 6 SP1 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55777" source="XF">ie-uninitialized-obj-code-exec(55777)</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS" adv="1">MS10-002</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8506" source="OVAL">oval:org.mitre.oval:def:8506</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="5.01" edition="sp4"/>
        <vers num="6" edition="sp1"/>
        <vers num="6.0"/>
        <vers num="6.0.2600"/>
        <vers num="6.0.2800"/>
        <vers num="6.0.2800.1106"/>
        <vers num="6.0.2900"/>
        <vers num="6.0.2900.2180"/>
        <vers num="6.00.2462.0000"/>
        <vers num="6.00.2479.0006"/>
        <vers num="6.00.2600.0000"/>
        <vers num="6.00.2800.1106"/>
        <vers num="6.00.2900.2180"/>
        <vers num="6.00.3663.0000"/>
        <vers num="6.00.3718.0000"/>
        <vers num="6.00.3790.0000"/>
        <vers num="6.00.3790.1830"/>
        <vers num="6.00.3790.3959"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0248" published="2010-01-22" name="CVE-2010-0248" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML Object Memory Corruption Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS" patch="1" adv="1">MS10-002</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55778" source="XF">ie-object-memory-code-exec(55778)</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8267" source="OVAL">oval:org.mitre.oval:def:8267</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="6" edition="sp1"/>
        <vers num="6.0"/>
        <vers num="6.0.2600"/>
        <vers num="6.0.2800"/>
        <vers num="6.0.2800.1106"/>
        <vers num="6.0.2900"/>
        <vers num="6.0.2900.2180"/>
        <vers num="6.00.2462.0000"/>
        <vers num="6.00.2479.0006"/>
        <vers num="6.00.2600.0000"/>
        <vers num="6.00.2800.1106"/>
        <vers num="6.00.2900.2180"/>
        <vers num="6.00.3663.0000"/>
        <vers num="6.00.3718.0000"/>
        <vers num="6.00.3790.0000"/>
        <vers num="6.00.3790.1830"/>
        <vers num="6.00.3790.3959"/>
        <vers num="7"/>
        <vers num="7.0"/>
        <vers num="7.0.5730" edition="unknown"/>
        <vers num="7.0.5730" edition="unknown:gold"/>
        <vers num="7.0.5730.11"/>
        <vers num="7.00.5730.1100"/>
        <vers num="7.00.6000.16386"/>
        <vers num="7.00.6000.16441"/>
        <vers num="8"/>
        <vers num="8.0.6001"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0249" published="2010-01-15" name="CVE-2010-0249" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows remote attackers to execute arbitrary code by accessing a pointer associated with a deleted object, related to incorrectly initialized memory and improper handling of objects in memory, as exploited in the wild in December 2009 and January 2010 during Operation Aurora, aka "HTML Object Memory Corruption Vulnerability."</descript>
      <descript source="nvd">Per: http://cwe.mitre.org/data/definitions/416.htmlhttp://cwe.mitre.org/data/definitions/416.html

CWE-416: Use After Free</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-055A.html" source="CERT">TA10-055A</ref>
      <ref url="http://www.kb.cert.org/vuls/id/492515" source="CERT-VN">VU#492515</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55642" source="XF">ie-freed-object-code-execution(55642)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0135" source="VUPEN">ADV-2010-0135</ref>
      <ref url="http://www.securityfocus.com/bid/37815" source="BID">37815</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" source="MS">MS10-002</ref>
      <ref url="http://www.microsoft.com/technet/security/advisory/979352.mspx" source="CONFIRM" adv="1">http://www.microsoft.com/technet/security/advisory/979352.mspx</ref>
      <ref url="http://www.exploit-db.com/exploits/11167" source="EXPLOIT-DB">11167</ref>
      <ref url="http://support.microsoft.com/kb/979352" source="MSKB" adv="1">979352</ref>
      <ref url="http://securitytracker.com/id?1023462" source="SECTRACK">1023462</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6835" source="OVAL">oval:org.mitre.oval:def:6835</ref>
      <ref url="http://osvdb.org/61697" source="OSVDB">61697</ref>
      <ref url="http://news.cnet.com/8301-27080_3-10435232-245.html" source="MISC">http://news.cnet.com/8301-27080_3-10435232-245.html</ref>
      <ref url="http://blogs.technet.com/msrc/archive/2010/01/14/security-advisory-979352.aspx" source="CONFIRM" adv="1">http://blogs.technet.com/msrc/archive/2010/01/14/security-advisory-979352.aspx</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="internet_explorer">
        <vers num="6" edition="sp1"/>
        <vers num="7"/>
        <vers num="8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0250" published="2010-02-10" name="CVE-2010-0250" modified="2011-01-06" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in DirectShow in Microsoft DirectX, as used in the AVI Filter on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2, and in Quartz on Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, allows remote attackers to execute arbitrary code via an AVI file with a crafted length field in an unspecified video stream, which is not properly handled by the RLE video decompressor, aka "DirectShow Heap Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-015/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-015/</ref>
      <ref url="http://www.securityfocus.com/bid/38112" source="BID">38112</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509472/100/0/threaded" source="BUGTRAQ">20100209 ZDI-10-015: Microsoft Windows RLE Video Decompressor Remote Code Execution Vulnerability</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-013.mspx" source="MS" adv="1">MS10-013</ref>
      <ref url="http://support.avaya.com/css/P8/documents/100074167" source="CONFIRM">http://support.avaya.com/css/P8/documents/100074167</ref>
      <ref url="http://secunia.com/advisories/38511" source="SECUNIA" adv="1">38511</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8064" source="OVAL">oval:org.mitre.oval:def:8064</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x32"/>
        <vers num="-" edition="sp2:itanium"/>
        <vers num="r2" edition=""/>
        <vers num="r2" edition=":x64"/>
        <vers num="r2" edition=":itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0252" published="2010-02-10" name="CVE-2010-0252" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">The Microsoft Data Analyzer ActiveX control (aka the Office Excel ActiveX control for Data Analysis) in max3activex.dll in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote attackers to execute arbitrary code via a crafted web page that corrupts the "system state," aka "Microsoft Data Analyzer ActiveX Control Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-159B.html" source="CERT">TA10-159B</ref>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-040A.html" source="CERT">TA10-040A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-008.mspx" source="MS" patch="1" adv="1">MS10-008</ref>
      <ref url="http://www.microsoft.com/technet/security/bulletin/ms10-034.mspx" source="MS">MS10-034</ref>
      <ref url="http://secunia.com/advisories/40059" source="SECUNIA">40059</ref>
      <ref url="http://secunia.com/advisories/38503" source="SECUNIA" adv="1">38503</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8424" source="OVAL">oval:org.mitre.oval:def:8424</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:itanium"/>
        <vers num="r2" edition=""/>
        <vers num="r2" edition=":x64"/>
        <vers num="r2" edition=":itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="sp1"/>
        <vers num="-" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0254" published="2010-04-14" name="CVE-2010-0254" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_score="7.6" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="4.9" CVSS_base_score="7.6">
    <desc>
      <descript source="cve">Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 and SP2 does not properly validate attributes in Visio files, which allows remote attackers to execute arbitrary code via a crafted file, aka "Visio Attribute Validation Memory Corruption Vulnerability."</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.microsoft.com/technet/security/Bulletin/MS10-028.mspx

'Users of Microsoft Office Visio 2002 and later versions of Visio will be prompted with Open, Save, or Cancel before opening a document. This is a mitigating factor because the vulnerability requires more than a single user action to complete the exploit.'</impact>
    </impacts>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-028.mspx" source="MS" patch="1" adv="1">MS10-028</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6819" source="OVAL">oval:org.mitre.oval:def:6819</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="visio">
        <vers num="2002" edition="sp2"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0255" published="2010-02-04" name="CVE-2010-0255" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving JavaScript exploit code that constructs a reference to a file://127.0.0.1 URL, aka the dynamic OBJECT tag vulnerability, as demonstrated by obtaining the data from an index.dat file, a variant of CVE-2009-1140 and related to CVE-2008-1448.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-159B.html" source="CERT">TA10-159B</ref>
      <ref url="http://www.securityfocus.com/bid/38056" source="BID">38056</ref>
      <ref url="http://www.securityfocus.com/bid/38055" source="BID">38055</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509345/100/0/threaded" source="BUGTRAQ">20100203 CORE-2009-0625: Internet Explorer Dynamic OBJECT tag and URLMON sniffing vulnerabilities</ref>
      <ref url="http://www.microsoft.com/technet/security/bulletin/ms10-035.mspx" source="MS">MS10-035</ref>
      <ref url="http://www.microsoft.com/technet/security/advisory/980088.mspx" source="CONFIRM" adv="1">http://www.microsoft.com/technet/security/advisory/980088.mspx</ref>
      <ref url="http://www.coresecurity.com/content/internet-explorer-dynamic-object-tag" source="MISC">http://www.coresecurity.com/content/internet-explorer-dynamic-object-tag</ref>
      <ref url="http://support.avaya.com/css/P8/documents/100089747" source="CONFIRM">http://support.avaya.com/css/P8/documents/100089747</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7145" source="OVAL">oval:org.mitre.oval:def:7145</ref>
      <ref url="http://osvdb.org/62156" source="OSVDB">62156</ref>
      <ref url="http://isc.sans.org/diary.html?n&amp;storyid=8152" source="MISC">http://isc.sans.org/diary.html?n&amp;storyid=8152</ref>
      <ref url="http://blogs.technet.com/msrc/archive/2010/02/03/security-advisory-980088-released.aspx" source="CONFIRM">http://blogs.technet.com/msrc/archive/2010/02/03/security-advisory-980088-released.aspx</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="5.01" edition="sp4"/>
        <vers num="6" edition="sp1"/>
        <vers num="7"/>
        <vers num="8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0256" published="2010-04-14" name="CVE-2010-0256" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_score="7.6" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="4.9" CVSS_base_score="7.6">
    <desc>
      <descript source="cve">Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 and SP2 does not properly calculate unspecified indexes associated with Visio files, which allows remote attackers to execute arbitrary code via a crafted file, aka "Visio Index Calculation Memory Corruption Vulnerability."</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.microsoft.com/technet/security/Bulletin/MS10-028.mspx

'Users of Microsoft Office Visio 2002 and later versions of Visio will be prompted with Open, Save, or Cancel before opening a document. This is a mitigating factor because the vulnerability requires more than a single user action to complete the exploit.'</impact>
    </impacts>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-028.mspx" source="MS" patch="1" adv="1">MS10-028</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6732" source="OVAL">oval:org.mitre.oval:def:6732</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="visio">
        <vers num="2002" edition="sp2"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0257" published="2010-03-10" name="CVE-2010-0257" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Office Excel 2002 SP3 does not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Microsoft Office Excel Record Memory Corruption Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8617" source="OVAL">oval:org.mitre.oval:def:8617</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0258" published="2010-03-10" name="CVE-2010-0258" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet that causes memory to be interpreted as a different object type than intended, aka "Microsoft Office Excel Sheet Object Type Confusion Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8545" source="OVAL">oval:org.mitre.oval:def:8545</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=859" source="IDEFENSE">20100309 Microsoft Excel Sheet Object Type Confusion Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0260" published="2010-03-10" name="CVE-2010-0260" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted spreadsheet in which "a MDXTUPLE record is broken up into several records," aka "Microsoft Office Excel MDXTUPLE Record Heap Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7862" source="OVAL">oval:org.mitre.oval:def:7862</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=862" source="IDEFENSE">20100309 Microsoft Excel MDXTUPLE Record Heap Overflow Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0261" published="2010-03-10" name="CVE-2010-0261" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Heap-based buffer overflow in Microsoft Office Excel 2007 SP1 and SP2 and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted spreadsheet in which "a MDXSET record is broken up into several records," aka "Microsoft Office Excel MDXSET Record Heap Overflow Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8479" source="OVAL">oval:org.mitre.oval:def:8479</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=861" source="IDEFENSE">20100309 Microsoft Excel MDXSET Record Heap Overflow Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0262" published="2010-03-10" name="CVE-2010-0262" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Office Excel 2007 SP1 and SP2 and Office 2004 for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet that triggers access of an uninitialized stack variable, aka "Microsoft Office Excel FNGROUPNAME Record Uninitialized Memory Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8562" source="OVAL">oval:org.mitre.oval:def:8562</ref>
      <ref url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=860" source="IDEFENSE">20100309 Microsoft Excel FNGROUPNAME Record Uninitialized Memory Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0263" published="2010-03-10" name="CVE-2010-0263" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Office Excel 2007 SP1 and SP2; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; and Office SharePoint Server 2007 SP1 and SP2 do not validate ZIP headers during decompression of Open XML (.XLSX) documents, which allows remote attackers to execute arbitrary code via a crafted document that triggers access to uninitialized memory locations, aka "Microsoft Office Excel XLSX File Parsing Code Execution Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.zerodayinitiative.com/advisories/ZDI-10-025/" source="MISC">http://www.zerodayinitiative.com/advisories/ZDI-10-025/</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509979/100/0/threaded" source="BUGTRAQ">20100309 ZDI-10-025: Microsoft Office Excel XLSX File Parsing Remote Code Execution Vulnerability</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8407" source="OVAL">oval:org.mitre.oval:def:8407</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0264" published="2010-03-10" name="CVE-2010-0264" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Microsoft Office Excel DbOrParamQry Record Parsing Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx" source="MS" patch="1" adv="1">MS10-017</ref>
      <ref url="http://www.securitytracker.com/id?1023698" source="SECTRACK">1023698</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7888" source="OVAL">oval:org.mitre.oval:def:7888</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="excel">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office">
        <vers num="2004" edition=""/>
        <vers num="2004" edition=":mac"/>
        <vers num="2008" edition=""/>
        <vers num="2008" edition=":mac"/>
      </prod>
      <prod vendor="microsoft" name="office_compatibility_pack">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_excel_viewer">
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="office_sharepoint_server">
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp1:x64"/>
        <vers num="2007" edition="sp1:x32"/>
        <vers num="2007" edition="sp2"/>
        <vers num="2007" edition="sp2:x64"/>
        <vers num="2007" edition="sp2:x32"/>
      </prod>
      <prod vendor="microsoft" name="open_xml_file_format_converter">
        <vers num="" edition=":mac"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0265" published="2010-03-10" name="CVE-2010-0265" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Buffer overflow in Microsoft Windows Movie Maker 2.1, 2.6, and 6.0, and Microsoft Producer 2003, allows remote attackers to execute arbitrary code via a crafted project (.MSWMM) file, aka "Movie Maker and Producer Buffer Overflow Vulnerability."</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.microsoft.com/technet/security/Bulletin/MS10-016.mspx



'[1]These versions of Windows Movie Maker are delivered with the indicated operating systems.

[2]Windows Movie Maker 2.6 is an optional download that can be installed on the indicated operating systems. Windows 7 systems without Movie Maker 2.6 installed are not affected.</impact>
    </impacts>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-016.mspx" source="MS" patch="1" adv="1">MS10-016</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8595" source="OVAL">oval:org.mitre.oval:def:8595</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="producer">
        <vers num="2003"/>
      </prod>
      <prod vendor="microsoft" name="windows_movie_maker">
        <vers num="2.1"/>
        <vers num="2.6"/>
        <vers num="6.0"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0266" published="2010-07-15" name="CVE-2010-0266" modified="2010-09-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Office Outlook 2002 SP3, 2003 SP3, and 2007 SP1 and SP2 does not properly verify e-mail attachments with a PR_ATTACH_METHOD property value of ATTACH_BY_REFERENCE, which allows user-assisted remote attackers to execute arbitrary code via a crafted message, aka "Microsoft Outlook SMB Attachment Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-194A.html" source="CERT">TA10-194A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-045.mspx" source="MS" patch="1" adv="1">MS10-045</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11623" source="OVAL">oval:org.mitre.oval:def:11623</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="outlook">
        <vers num="2002" edition="sp3"/>
        <vers num="2003" edition="sp3"/>
        <vers num="2007" edition="sp1"/>
        <vers num="2007" edition="sp2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0267" published="2010-03-31" name="CVE-2010-0267" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Microsoft Internet Explorer 6, 6 SP1, and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."</descript>
    </desc>
    <impacts>
      <impact source="nvd">Per: http://www.microsoft.com/technet/security/Bulletin/MS10-018.mspx

'Internet Explorer 5.01 Service Pack 4 and Internet Explorer 8 are not affected by this vulnerability.'</impact>
    </impacts>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot admin="1"/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-089A.html" source="CERT">TA10-089A</ref>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-068A.html" source="CERT">TA10-068A</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0744" source="VUPEN" patch="1" adv="1">ADV-2010-0744</ref>
      <ref url="http://www.securityfocus.com/bid/39023" source="BID" patch="1">39023</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-018.mspx" source="MS" patch="1" adv="1">MS10-018</ref>
      <ref url="http://securitytracker.com/id?1023773" source="SECTRACK">1023773</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8554" source="OVAL">oval:org.mitre.oval:def:8554</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="ie">
        <vers num="6" edition="sp1"/>
        <vers num="7"/>
      </prod>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition=":x32"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x32"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0268" published="2010-04-14" name="CVE-2010-0268" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Windows Media Player ActiveX control in Windows Media Player (WMP) 9 on Microsoft Windows 2000 SP4 and XP SP2 and SP3 allows remote attackers to execute arbitrary code via crafted media content, aka "Media Player Remote Code Execution Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-027.mspx" source="MS" patch="1" adv="1">MS10-027</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7281" source="OVAL">oval:org.mitre.oval:def:7281</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_media_player">
        <vers num="9"/>
      </prod>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0269" published="2010-04-14" name="CVE-2010-0269" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The SMB client in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly allocate memory for SMB responses, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted (1) SMBv1 or (2) SMBv2 response, aka "SMB Client Memory Allocation Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-020.mspx" source="MS" patch="1" adv="1">MS10-020</ref>
      <ref url="http://secunia.com/advisories/39372" source="SECUNIA">39372</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7129" source="OVAL">oval:org.mitre.oval:def:7129</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_2000">
        <vers num="" edition="sp4"/>
      </prod>
      <prod vendor="microsoft" name="windows_2003_server">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2003">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition=":itanium"/>
        <vers num="" edition=":x64"/>
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
        <vers num="-" edition="sp2:x32"/>
        <vers num="-" edition="sp2:itanium"/>
      </prod>
      <prod vendor="microsoft" name="windows_vista">
        <vers num="" edition=":x64"/>
        <vers num="" edition="sp1"/>
        <vers num="" edition="sp1:x64"/>
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp2:x64"/>
        <vers num="-" edition="sp1"/>
        <vers num="-" edition="sp2"/>
      </prod>
      <prod vendor="microsoft" name="windows_xp">
        <vers num="" edition="sp2"/>
        <vers num="" edition="sp3"/>
        <vers num="-" edition="sp2"/>
        <vers num="-" edition="sp2:x64"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0270" published="2010-04-14" name="CVE-2010-0270" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate fields in SMB transaction responses, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and reboot) via a crafted (1) SMBv1 or (2) SMBv2 response, aka "SMB Client Transaction Vulnerability."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.us-cert.gov/cas/techalerts/TA10-103A.html" source="CERT">TA10-103A</ref>
      <ref url="http://www.microsoft.com/technet/security/Bulletin/MS10-020.mspx" source="MS" patch="1" adv="1">MS10-020</ref>
      <ref url="http://secunia.com/advisories/39372" source="SECUNIA">39372</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7164" source="OVAL">oval:org.mitre.oval:def:7164</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_7">
        <vers num="-" edition="-"/>
        <vers num="-" edition="-:x32"/>
        <vers num="-" edition="-:x64"/>
      </prod>
      <prod vendor="microsoft" name="windows_server_2008">
        <vers num="" edition="r2"/>
        <vers num="" edition="r2:x64"/>
        <vers num="" edition="r2:itanium"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0271" published="2010-01-08" name="CVE-2010-0271" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">hald in Sun OpenSolaris snv_51 through snv_130 does not have the proc_audit privilege during unspecified attempts to write to the auditing log, which makes it easier for physically proximate attackers to avoid detection of changes to the set of connected hardware devices supporting the Hardware Abstraction Layer (HAL) specification.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55461" source="XF">opensolaris-hald-weak-security(55461)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0076" source="VUPEN">ADV-2010-0076</ref>
      <ref url="http://www.securitytracker.com/id?1023416" source="SECTRACK">1023416</ref>
      <ref url="http://www.securityfocus.com/bid/37656" source="BID">37656</ref>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-274830-1" source="SUNALERT" adv="1">274830</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="opensolaris">
        <vers num="snv_100" edition=""/>
        <vers num="snv_100" edition=":x86"/>
        <vers num="snv_100" edition=":sparc"/>
        <vers num="snv_101" edition=""/>
        <vers num="snv_101" edition=":x86"/>
        <vers num="snv_101" edition=":sparc"/>
        <vers num="snv_102" edition=""/>
        <vers num="snv_102" edition=":x86"/>
        <vers num="snv_102" edition=":sparc"/>
        <vers num="snv_103" edition=""/>
        <vers num="snv_103" edition=":sparc"/>
        <vers num="snv_103" edition=":x86"/>
        <vers num="snv_104" edition=""/>
        <vers num="snv_104" edition=":x86"/>
        <vers num="snv_104" edition=":sparc"/>
        <vers num="snv_105" edition=""/>
        <vers num="snv_105" edition=":x86"/>
        <vers num="snv_105" edition=":sparc"/>
        <vers num="snv_106" edition=""/>
        <vers num="snv_106" edition=":sparc"/>
        <vers num="snv_106" edition=":x86"/>
        <vers num="snv_107" edition=""/>
        <vers num="snv_107" edition=":sparc"/>
        <vers num="snv_107" edition=":x86"/>
        <vers num="snv_108" edition=""/>
        <vers num="snv_108" edition=":sparc"/>
        <vers num="snv_108" edition=":x86"/>
        <vers num="snv_109" edition=""/>
        <vers num="snv_109" edition=":x86"/>
        <vers num="snv_109" edition=":sparc"/>
        <vers num="snv_110" edition=""/>
        <vers num="snv_110" edition=":sparc"/>
        <vers num="snv_110" edition=":x86"/>
        <vers num="snv_111" edition=""/>
        <vers num="snv_111" edition=":x86"/>
        <vers num="snv_111" edition=":sparc"/>
        <vers num="snv_112" edition=""/>
        <vers num="snv_112" edition=":x86"/>
        <vers num="snv_112" edition=":sparc"/>
        <vers num="snv_113" edition=""/>
        <vers num="snv_113" edition=":sparc"/>
        <vers num="snv_113" edition=":x86"/>
        <vers num="snv_114" edition=""/>
        <vers num="snv_114" edition=":x86"/>
        <vers num="snv_114" edition=":sparc"/>
        <vers num="snv_115" edition=""/>
        <vers num="snv_115" edition=":sparc"/>
        <vers num="snv_115" edition=":x86"/>
        <vers num="snv_116" edition=""/>
        <vers num="snv_116" edition=":sparc"/>
        <vers num="snv_116" edition=":x86"/>
        <vers num="snv_117" edition=""/>
        <vers num="snv_117" edition=":x86"/>
        <vers num="snv_117" edition=":sparc"/>
        <vers num="snv_118" edition=""/>
        <vers num="snv_118" edition=":x86"/>
        <vers num="snv_118" edition=":sparc"/>
        <vers num="snv_119" edition=""/>
        <vers num="snv_119" edition=":x86"/>
        <vers num="snv_119" edition=":sparc"/>
        <vers num="snv_12" edition=""/>
        <vers num="snv_12" edition=":sparc"/>
        <vers num="snv_120" edition=""/>
        <vers num="snv_120" edition=":sparc"/>
        <vers num="snv_120" edition=":x86"/>
        <vers num="snv_121" edition=""/>
        <vers num="snv_121" edition=":x86"/>
        <vers num="snv_121" edition=":sparc"/>
        <vers num="snv_122" edition=""/>
        <vers num="snv_122" edition=":sparc"/>
        <vers num="snv_122" edition=":x86"/>
        <vers num="snv_123" edition=""/>
        <vers num="snv_123" edition=":x86"/>
        <vers num="snv_123" edition=":sparc"/>
        <vers num="snv_124" edition=""/>
        <vers num="snv_124" edition=":sparc"/>
        <vers num="snv_124" edition=":x86"/>
        <vers num="snv_125" edition=""/>
        <vers num="snv_125" edition=":x86"/>
        <vers num="snv_125" edition=":sparc"/>
        <vers num="snv_126" edition=""/>
        <vers num="snv_126" edition=":sparc"/>
        <vers num="snv_126" edition=":x86"/>
        <vers num="snv_127" edition=""/>
        <vers num="snv_127" edition=":x86"/>
        <vers num="snv_127" edition=":sparc"/>
        <vers num="snv_128" edition=""/>
        <vers num="snv_128" edition=":sparc"/>
        <vers num="snv_128" edition=":x86"/>
        <vers num="snv_129" edition=""/>
        <vers num="snv_129" edition=":x86"/>
        <vers num="snv_129" edition=":sparc"/>
        <vers num="snv_130" edition=""/>
        <vers num="snv_130" edition=":sparc"/>
        <vers num="snv_130" edition=":x86"/>
        <vers num="snv_51" edition=""/>
        <vers num="snv_51" edition=":x86"/>
        <vers num="snv_51" edition=":sparc"/>
        <vers num="snv_52" edition=""/>
        <vers num="snv_52" edition=":x86"/>
        <vers num="snv_52" edition=":sparc"/>
        <vers num="snv_53" edition=""/>
        <vers num="snv_53" edition=":x86"/>
        <vers num="snv_54" edition=""/>
        <vers num="snv_54" edition=":sparc"/>
        <vers num="snv_54" edition=":x86"/>
        <vers num="snv_55" edition=""/>
        <vers num="snv_55" edition=":sparc"/>
        <vers num="snv_55" edition=":x86"/>
        <vers num="snv_56" edition=""/>
        <vers num="snv_56" edition=":x86"/>
        <vers num="snv_56" edition=":sparc"/>
        <vers num="snv_57" edition=""/>
        <vers num="snv_57" edition=":x86"/>
        <vers num="snv_57" edition=":sparc"/>
        <vers num="snv_58" edition=""/>
        <vers num="snv_58" edition=":sparc"/>
        <vers num="snv_58" edition=":x86"/>
        <vers num="snv_59" edition=""/>
        <vers num="snv_59" edition=":sparc"/>
        <vers num="snv_59" edition=":x86"/>
        <vers num="snv_60" edition=""/>
        <vers num="snv_60" edition=":x86"/>
        <vers num="snv_60" edition=":sparc"/>
        <vers num="snv_61" edition=""/>
        <vers num="snv_61" edition=":sparc"/>
        <vers num="snv_61" edition=":x86"/>
        <vers num="snv_62" edition=""/>
        <vers num="snv_62" edition=":x86"/>
        <vers num="snv_62" edition=":sparc"/>
        <vers num="snv_63" edition=""/>
        <vers num="snv_63" edition=":x86"/>
        <vers num="snv_63" edition=":sparc"/>
        <vers num="snv_64" edition=""/>
        <vers num="snv_64" edition=":x86"/>
        <vers num="snv_64" edition=":sparc"/>
        <vers num="snv_65" edition=""/>
        <vers num="snv_65" edition=":sparc"/>
        <vers num="snv_65" edition=":x86"/>
        <vers num="snv_66" edition=""/>
        <vers num="snv_66" edition=":x86"/>
        <vers num="snv_66" edition=":sparc"/>
        <vers num="snv_67" edition=""/>
        <vers num="snv_67" edition=":sparc"/>
        <vers num="snv_67" edition=":x86"/>
        <vers num="snv_68" edition=""/>
        <vers num="snv_68" edition=":x86"/>
        <vers num="snv_68" edition=":sparc"/>
        <vers num="snv_69" edition=""/>
        <vers num="snv_69" edition=":sparc"/>
        <vers num="snv_69" edition=":x86"/>
        <vers num="snv_70" edition=""/>
        <vers num="snv_70" edition=":sparc"/>
        <vers num="snv_70" edition=":x86"/>
        <vers num="snv_71" edition=""/>
        <vers num="snv_71" edition=":sparc"/>
        <vers num="snv_71" edition=":x86"/>
        <vers num="snv_72" edition=""/>
        <vers num="snv_72" edition=":x86"/>
        <vers num="snv_72" edition=":sparc"/>
        <vers num="snv_73" edition=""/>
        <vers num="snv_73" edition=":x86"/>
        <vers num="snv_73" edition=":sparc"/>
        <vers num="snv_74" edition=""/>
        <vers num="snv_74" edition=":x86"/>
        <vers num="snv_74" edition=":sparc"/>
        <vers num="snv_75" edition=""/>
        <vers num="snv_75" edition=":x86"/>
        <vers num="snv_75" edition=":sparc"/>
        <vers num="snv_76" edition=""/>
        <vers num="snv_76" edition=":sparc"/>
        <vers num="snv_76" edition=":x86"/>
        <vers num="snv_77" edition=""/>
        <vers num="snv_77" edition=":sparc"/>
        <vers num="snv_77" edition=":x86"/>
        <vers num="snv_78" edition=""/>
        <vers num="snv_78" edition=":sparc"/>
        <vers num="snv_78" edition=":x86"/>
        <vers num="snv_79" edition=""/>
        <vers num="snv_79" edition=":x86"/>
        <vers num="snv_79" edition=":sparc"/>
        <vers num="snv_80" edition=""/>
        <vers num="snv_80" edition=":x86"/>
        <vers num="snv_80" edition=":sparc"/>
        <vers num="snv_81" edition=""/>
        <vers num="snv_81" edition=":x86"/>
        <vers num="snv_81" edition=":sparc"/>
        <vers num="snv_82" edition=""/>
        <vers num="snv_82" edition=":x86"/>
        <vers num="snv_82" edition=":sparc"/>
        <vers num="snv_83" edition=""/>
        <vers num="snv_83" edition=":sparc"/>
        <vers num="snv_83" edition=":x86"/>
        <vers num="snv_84" edition=""/>
        <vers num="snv_84" edition=":x86"/>
        <vers num="snv_84" edition=":sparc"/>
        <vers num="snv_85" edition=""/>
        <vers num="snv_85" edition=":sparc"/>
        <vers num="snv_85" edition=":x86"/>
        <vers num="snv_86" edition=""/>
        <vers num="snv_86" edition=":sparc"/>
        <vers num="snv_86" edition=":x86"/>
        <vers num="snv_87" edition=""/>
        <vers num="snv_87" edition=":sparc"/>
        <vers num="snv_87" edition=":x86"/>
        <vers num="snv_88" edition=""/>
        <vers num="snv_88" edition=":x86"/>
        <vers num="snv_88" edition=":sparc"/>
        <vers num="snv_89" edition=""/>
        <vers num="snv_89" edition=":x86"/>
        <vers num="snv_89" edition=":sparc"/>
        <vers num="snv_90" edition=""/>
        <vers num="snv_90" edition=":sparc"/>
        <vers num="snv_90" edition=":x86"/>
        <vers num="snv_91" edition=""/>
        <vers num="snv_91" edition=":x86"/>
        <vers num="snv_91" edition=":sparc"/>
        <vers num="snv_92" edition=""/>
        <vers num="snv_92" edition=":x86"/>
        <vers num="snv_92" edition=":sparc"/>
        <vers num="snv_93" edition=""/>
        <vers num="snv_93" edition=":sparc"/>
        <vers num="snv_93" edition=":x86"/>
        <vers num="snv_94" edition=""/>
        <vers num="snv_94" edition=":x86"/>
        <vers num="snv_94" edition=":sparc"/>
        <vers num="snv_95" edition=""/>
        <vers num="snv_95" edition=":x86"/>
        <vers num="snv_95" edition=":sparc"/>
        <vers num="snv_96" edition=""/>
        <vers num="snv_96" edition=":sparc"/>
        <vers num="snv_96" edition=":x86"/>
        <vers num="snv_97" edition=""/>
        <vers num="snv_97" edition=":x86"/>
        <vers num="snv_97" edition=":sparc"/>
        <vers num="snv_98" edition=""/>
        <vers num="snv_98" edition=":x86"/>
        <vers num="snv_98" edition=":sparc"/>
        <vers num="snv_99" edition=""/>
        <vers num="snv_99" edition=":sparc"/>
        <vers num="snv_99" edition=":x86"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0272" published="2010-01-08" name="CVE-2010-0272" modified="2010-04-15" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Heap-based buffer overflow in Sun Java System Web Server 7.0 Update 6 on Linux allows remote attackers to discover process memory locations via crafted data to TCP port 80, as demonstrated by the vd_sjws2 module in VulnDisco.  NOTE: as of 20100106, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55527" source="XF">jsws-data-information-disclosure(55527)</ref>
      <ref url="http://www.intevydis.com/blog/?p=102" source="MISC">http://www.intevydis.com/blog/?p=102</ref>
      <ref url="http://intevydis.com/sjws_demo.html" source="MISC">http://intevydis.com/sjws_demo.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="java_system_web_server">
        <vers num="7.0" edition="update_6"/>
        <vers num="7.0" edition="update_6:linux"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0273" published="2010-01-08" name="CVE-2010-0273" modified="2010-01-11" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Unspecified vulnerability in Sun Java System Web Server 7.0 Update 6 on Linux allows remote attackers to execute arbitrary code by sending a process memory address and crafted data to TCP port 80, as demonstrated by the vd_sjws2 module in VulnDisco.  NOTE: as of 20100106, this disclosure has no actionable information. However, because the VulnDisco author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.intevydis.com/blog/?p=102" source="MISC">http://www.intevydis.com/blog/?p=102</ref>
      <ref url="http://intevydis.com/sjws_demo.html" source="MISC">http://intevydis.com/sjws_demo.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="java_system_web_server">
        <vers num="7.0" edition="update_6"/>
        <vers num="7.0" edition="update_6:linux"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0274" published="2010-01-09" name="CVE-2010-0274" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Edit Contact scene in Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 has unknown impact and attack vectors, aka SPR LSHR7TBLY5.</descript>
    </desc>
    <sols>
      <sol source="nvd">http://www-933.ibm.com/support/fixcentral/</sol>
    </sols>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55470" source="XF">domino-ultralight-unspecified(55470)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0077" source="VUPEN" adv="1">ADV-2010-0077</ref>
      <ref url="http://www.securityfocus.com/bid/37675" source="BID">37675</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg27017776" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg27017776</ref>
      <ref url="http://secunia.com/advisories/38026" source="SECUNIA" adv="1">38026</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="lotus_inotes">
        <vers num="229.011"/>
        <vers num="229.021"/>
        <vers num="229.031"/>
        <vers num="229.041"/>
        <vers num="229.051"/>
        <vers num="229.061"/>
        <vers num="229.101"/>
        <vers num="229.111"/>
        <vers num="229.131"/>
        <vers num="229.141"/>
        <vers num="229.151"/>
        <vers num="229.161"/>
        <vers num="229.171"/>
        <vers num="229.181"/>
        <vers num="229.191"/>
        <vers num="229.201"/>
        <vers num="229.211"/>
        <vers num="229.221"/>
        <vers prev="1" num="229.231"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0275" published="2010-01-09" name="CVE-2010-0275" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Ultra-light Mode in IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 does not properly handle script commands in the status-alerts URL, which has unspecified impact and attack vectors, aka SPR LSHR7TBM58.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55471" source="XF">domino-script-command-unspecified(55471)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0077" source="VUPEN" adv="1">ADV-2010-0077</ref>
      <ref url="http://www.securityfocus.com/bid/37675" source="BID">37675</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg27017776" source="CONFIRM" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg27017776</ref>
      <ref url="http://secunia.com/advisories/38026" source="SECUNIA" adv="1">38026</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="lotus_inotes">
        <vers num="229.011"/>
        <vers num="229.021"/>
        <vers num="229.031"/>
        <vers num="229.041"/>
        <vers num="229.051"/>
        <vers num="229.061"/>
        <vers num="229.101"/>
        <vers num="229.111"/>
        <vers num="229.131"/>
        <vers num="229.141"/>
        <vers num="229.151"/>
        <vers num="229.161"/>
        <vers num="229.171"/>
        <vers num="229.181"/>
        <vers num="229.191"/>
        <vers num="229.201"/>
        <vers num="229.211"/>
        <vers num="229.221"/>
        <vers prev="1" num="229.231"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0276" published="2010-01-09" name="CVE-2010-0276" modified="2010-03-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">IBM Lotus iNotes (aka Domino Web Access or DWA) before 229.241 for Domino 8.0.2 FP3 does not properly handle navigation of the "Try Lotus iNotes anyway" link from the page that reports use of an unsupported browser, which has unspecified impact and attack vectors, aka SPR LSHR7TBMQU.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55473" source="XF">domino-trylotus-unspecified(55473)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0077" source="VUPEN" adv="1">ADV-2010-0077</ref>
      <ref url="http://www.securityfocus.com/bid/37675" source="BID">37675</ref>
      <ref url="http://www-01.ibm.com/support/docview.wss?uid=swg27017776" source="CONFIRM">http://www-01.ibm.com/support/docview.wss?uid=swg27017776</ref>
      <ref url="http://secunia.com/advisories/38026" source="SECUNIA" adv="1">38026</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="domino_web_access">
        <vers num=""/>
      </prod>
      <prod vendor="ibm" name="lotus_domino">
        <vers num="8.0.2.3"/>
      </prod>
      <prod vendor="ibm" name="lotus_inotes">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0277" published="2010-01-09" name="CVE-2010-0277" modified="2010-11-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">slp.c in the MSN protocol plugin in libpurple in Pidgin before 2.6.6, including 2.6.4, and Adium 1.3.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a malformed MSNSLP INVITE request in an SLP message, a different issue than CVE-2010-0013.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0115.html" source="REDHAT">RHSA-2010:0115</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=554335" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=554335</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2693" source="VUPEN" adv="1">ADV-2010-2693</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1020" source="VUPEN" adv="1">ADV-2010-1020</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0413" source="VUPEN" adv="1">ADV-2010-0413</ref>
      <ref url="http://www.ubuntu.com/usn/USN-902-1" source="UBUNTU">USN-902-1</ref>
      <ref url="http://www.securityfocus.com/bid/38294" source="BID">38294</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/07/2" source="MLIST">[oss-security] 20100107 Re: CVE request - pidgin MSN arbitrary file upload</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:085" source="MANDRIVA">MDVSA-2010:085</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:041" source="MANDRIVA">MDVSA-2010:041</ref>
      <ref url="http://secunia.com/advisories/41868" source="SECUNIA" adv="1">41868</ref>
      <ref url="http://secunia.com/advisories/38915" source="SECUNIA" adv="1">38915</ref>
      <ref url="http://secunia.com/advisories/38712" source="SECUNIA" adv="1">38712</ref>
      <ref url="http://secunia.com/advisories/38658" source="SECUNIA" adv="1">38658</ref>
      <ref url="http://secunia.com/advisories/38640" source="SECUNIA" adv="1">38640</ref>
      <ref url="http://secunia.com/advisories/38563" source="SECUNIA" adv="1">38563</ref>
      <ref url="http://pidgin.im/news/security/?id=43" source="CONFIRM">http://pidgin.im/news/security/?id=43</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9421" source="OVAL">oval:org.mitre.oval:def:9421</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.html" source="SUSE">SUSE-SR:2010:006</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035409.html" source="FEDORA">FEDORA-2010-1383</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035347.html" source="FEDORA">FEDORA-2010-1934</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035332.html" source="FEDORA">FEDORA-2010-1279</ref>
      <ref url="http://events.ccc.de/congress/2009/Fahrplan/events/3596.en.html" source="MISC">http://events.ccc.de/congress/2009/Fahrplan/events/3596.en.html</ref>
      <ref url="http://developer.pidgin.im/wiki/ChangeLog" source="CONFIRM">http://developer.pidgin.im/wiki/ChangeLog</ref>
      <ref url="http://blogs.sun.com/security/entry/cve_2010_0277_malformed_msn" source="CONFIRM">http://blogs.sun.com/security/entry/cve_2010_0277_malformed_msn</ref>
    </refs>
    <vuln_soft>
      <prod vendor="adium" name="adium">
        <vers num="1.3.8"/>
      </prod>
      <prod vendor="pidgin" name="pidgin">
        <vers num="2.0.0"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers num="2.1.0"/>
        <vers num="2.1.1"/>
        <vers num="2.2.0"/>
        <vers num="2.2.1"/>
        <vers num="2.2.2"/>
        <vers num="2.3.0"/>
        <vers num="2.3.1"/>
        <vers num="2.4.0"/>
        <vers num="2.4.1"/>
        <vers num="2.4.2"/>
        <vers num="2.4.3"/>
        <vers num="2.5.0"/>
        <vers num="2.5.1"/>
        <vers num="2.5.2"/>
        <vers num="2.5.3"/>
        <vers num="2.5.4"/>
        <vers num="2.5.5"/>
        <vers num="2.5.6"/>
        <vers num="2.5.7"/>
        <vers num="2.5.8"/>
        <vers num="2.5.9"/>
        <vers num="2.6.0"/>
        <vers num="2.6.1"/>
        <vers num="2.6.2"/>
        <vers num="2.6.4"/>
        <vers prev="1" num="2.6.5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0278" published="2010-01-12" name="CVE-2010-0278" modified="2010-01-13" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">A certain ActiveX control in msgsc.14.0.8089.726.dll in Microsoft Windows Live Messenger 2009 build 14.0.8089.726 on Windows Vista and Windows 7 allows remote attackers to cause a denial of service (msnmsgr.exe crash) by calling the ViewProfile method with a crafted argument during an MSN Messenger session.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/37680" source="BID">37680</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/508811/100/0/threaded" source="BUGTRAQ">20100108 [HACKATTACK Advisory 080110] Windows Live Messenger 2009 ActiveX DoS Vulnerability</ref>
    </refs>
    <vuln_soft>
      <prod vendor="microsoft" name="windows_live_messenger">
        <vers num="2009"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0279" published="2010-01-12" name="CVE-2010-0279" modified="2010-01-13" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Unrestricted file upload vulnerability in upload.php in BTS-GI Read excel 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.  NOTE: some of these details are obtained from third party information.</descript>
      <descript source="nvd">CWE-434 - http://cwe.mitre.org/data/definitions/434.html</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55462" source="XF">readexcel-upload-file-upload(55462)</ref>
      <ref url="http://www.exploit-db.com/exploits/11057" source="EXPLOIT-DB">11057</ref>
      <ref url="http://secunia.com/advisories/38083" source="SECUNIA" adv="1">38083</ref>
      <ref url="http://osvdb.org/61579" source="OSVDB">61579</ref>
    </refs>
    <vuln_soft>
      <prod vendor="bts-gi.net" name="read_excel">
        <vers num="1.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0280" published="2010-01-15" name="CVE-2010-0280" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Array index error in Jan Eric Kyprianidis lib3ds 1.x, as used in Google SketchUp 7.x before 7.1 M2, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via crafted structures in a 3DS file, probably related to mesh.c.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0133" source="VUPEN">ADV-2010-0133</ref>
      <ref url="http://www.securityfocus.com/bid/37708" source="BID">37708</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/508913/100/0/threaded" source="BUGTRAQ">20100113 [CORE-2009-1209] Google SketchUp 'lib3ds' 3DS Importer Memory Corruption</ref>
      <ref url="http://www.coresecurity.com/content/google-sketchup-vulnerability" source="MISC">http://www.coresecurity.com/content/google-sketchup-vulnerability</ref>
      <ref url="http://sketchup.google.com/support/bin/answer.py?hl=en&amp;answer=141303" source="CONFIRM">http://sketchup.google.com/support/bin/answer.py?hl=en&amp;answer=141303</ref>
      <ref url="http://secunia.com/advisories/38187" source="SECUNIA" adv="1">38187</ref>
      <ref url="http://secunia.com/advisories/38185" source="SECUNIA" adv="1">38185</ref>
    </refs>
    <vuln_soft>
      <prod vendor="google" name="google_sketchup">
        <vers num="7.0"/>
        <vers num="7.0.10247"/>
        <vers num="7.1.4871"/>
        <vers num="7.1.6087"/>
      </prod>
      <prod vendor="jan_eric_krprianidis" name="lib3ds">
        <vers num="1.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0283" published="2010-02-22" name="CVE-2010-0283" modified="2010-06-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2, and 1.8 alpha, allows remote attackers to cause a denial of service (assertion failure and daemon crash) via an invalid (1) AS-REQ or (2) TGS-REQ request.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/1481" source="VUPEN">ADV-2010-1481</ref>
      <ref url="http://www.ubuntu.com/usn/USN-916-1" source="UBUNTU">USN-916-1</ref>
      <ref url="http://www.securityfocus.com/bid/38260" source="BID">38260</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/509553/100/0/threaded" source="BUGTRAQ">20100216 MITKRB5-SA-2010-001 [CVE-2010-0283] krb5-1.7 KDC denial of service</ref>
      <ref url="http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-001.txt" source="CONFIRM" adv="1">http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-001.txt</ref>
      <ref url="http://support.apple.com/kb/HT4188" source="CONFIRM">http://support.apple.com/kb/HT4188</ref>
      <ref url="http://securitytracker.com/id?1023593" source="SECTRACK">1023593</ref>
      <ref url="http://secunia.com/advisories/40220" source="SECUNIA">40220</ref>
      <ref url="http://secunia.com/advisories/39023" source="SECUNIA">39023</ref>
      <ref url="http://secunia.com/advisories/38598" source="SECUNIA">38598</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035222.html" source="FEDORA">FEDORA-2010-1722</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html" source="APPLE">APPLE-SA-2010-06-15-1</ref>
    </refs>
    <vuln_soft>
      <prod vendor="mit" name="kerberos">
        <vers num="5-1.7"/>
        <vers num="5-1.7.1"/>
        <vers num="5-1.8" edition="alpha"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0284" published="2010-06-18" name="CVE-2010-0284" modified="2010-06-24" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="10.0" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="10.0" CVSS_base_score="10.0">
    <desc>
      <descript source="cve">Directory traversal vulnerability in the getEntry method in the PortalModuleInstallManager component in a servlet in nps.jar in the Administration Console (aka Access Management Console) in Novell Access Manager 3.1 before 3.1.2-281 on Windows allows remote attackers to create arbitrary files with any contents, and consequently execute arbitrary code, via a .. (dot dot) in a parameter, aka ZDI-CAN-678.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/59528" source="XF">accessmgr-admincosole-getentry-file-upload(59528)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1516" source="VUPEN" adv="1">ADV-2010-1516</ref>
      <ref url="http://www.securitytracker.com/id?1024132" source="SECTRACK">1024132</ref>
      <ref url="http://www.securityfocus.com/bid/40931" source="BID">40931</ref>
      <ref url="http://www.novell.com/support/viewContent.do?externalId=7006255&amp;sliceId=1" source="CONFIRM">http://www.novell.com/support/viewContent.do?externalId=7006255&amp;sliceId=1</ref>
      <ref url="http://secunia.com/advisories/40198" source="SECUNIA" adv="1">40198</ref>
    </refs>
    <vuln_soft>
      <prod vendor="novell" name="access_manager">
        <vers num="3.1" edition="sp1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0285" published="2010-02-24" name="CVE-2010-0285" modified="2011-08-23" CVSS_version="2.0" CVSS_vector="(AV:L/AC:H/Au:N/C:C/I:C/A:N)" CVSS_score="5.6" CVSS_impact_subscore="9.2" CVSS_exploit_subscore="1.9" CVSS_base_score="5.6">
    <desc>
      <descript source="cve">gnome-screensaver 2.14.3, 2.22.2, 2.27.x, 2.28.0, and 2.28.3, when the X configuration enables the extend screen option, allows physically proximate attackers to bypass screen locking, access an unattended workstation, and view half of the GNOME desktop by attaching an external monitor.</descript>
    </desc>
    <loss_types>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=557525" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=557525</ref>
      <ref url="https://bugzilla.gnome.org/show_bug.cgi?id=593616" source="CONFIRM">https://bugzilla.gnome.org/show_bug.cgi?id=593616</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56366" source="XF">screensaver-monitor-setup-sec-bypass(56366)</ref>
      <ref url="http://www.securityfocus.com/bid/38254" source="BID">38254</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:093" source="MANDRIVA">MDVSA-2011:093</ref>
      <ref url="http://security-tracker.debian.org/tracker/CVE-2010-0285" source="CONFIRM">http://security-tracker.debian.org/tracker/CVE-2010-0285</ref>
      <ref url="http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca" source="CONFIRM">http://git.gnome.org/browse/gnome-screensaver/commit/?id=2f597ea9f1f363277fd4dfc109fa41bbc6225aca</ref>
    </refs>
    <vuln_soft>
      <prod vendor="gnome" name="screensaver">
        <vers num="2.14.3"/>
        <vers num="2.22.2"/>
        <vers num="2.27"/>
        <vers num="2.28.0"/>
        <vers num="2.28.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0286" published="2010-02-22" name="CVE-2010-0286" modified="2010-03-04" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:P/I:P/A:P)" CVSS_score="5.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="4.9" CVSS_base_score="5.1">
    <desc>
      <descript source="cve">Unspecified vulnerability in the OpenID Identity Authentication extension in TYPO3 4.3.0 allows remote attackers to bypass authentication and gain access to a backend user account via unknown attack vectors in which both the attacker and victim have an OpenID provider that discards identities during authentication.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0127" source="VUPEN" patch="1" adv="1">ADV-2010-0127</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55609" source="XF">typo3-openid-security-bypass(55609)</ref>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2010-001/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2010-001/</ref>
      <ref url="http://secunia.com/advisories/38206" source="SECUNIA" adv="1">38206</ref>
      <ref url="http://osvdb.org/61680" source="OSVDB">61680</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="typo3">
        <vers num="4.3.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0287" published="2010-02-15" name="CVE-2010-0287" modified="2010-03-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Directory traversal vulnerability in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25b allows remote attackers to list the contents of arbitrary directories via a .. (dot dot) in the ns parameter.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55660" source="XF">dokuwiki-ajax-dir-traversal(55660)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0150" source="VUPEN">ADV-2010-0150</ref>
      <ref url="http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security" source="CONFIRM">http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security</ref>
      <ref url="http://www.securityfocus.com/bid/37821" source="BID">37821</ref>
      <ref url="http://www.exploit-db.com/exploits/11141" source="EXPLOIT-DB">11141</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1976" source="DEBIAN">DSA-1976</ref>
      <ref url="http://secunia.com/advisories/38183" source="SECUNIA" adv="1">38183</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034831.html" source="FEDORA">FEDORA-2010-0800</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034729.html" source="FEDORA">FEDORA-2010-0770</ref>
      <ref url="http://bugs.splitbrain.org/index.php?do=details&amp;task_id=1847" source="CONFIRM">http://bugs.splitbrain.org/index.php?do=details&amp;task_id=1847</ref>
    </refs>
    <vuln_soft>
      <prod vendor="dokuwiki" name="dokuwiki">
        <vers num="release_2004-07-04"/>
        <vers num="release_2004-07-07"/>
        <vers num="release_2004-07-12"/>
        <vers num="release_2004-07-21"/>
        <vers num="release_2004-07-25"/>
        <vers num="release_2004-08-08"/>
        <vers num="release_2004-08-15a"/>
        <vers num="release_2004-08-22"/>
        <vers num="release_2004-09-12"/>
        <vers num="release_2004-09-25"/>
        <vers num="release_2004-09-30"/>
        <vers num="release_2004-11-01"/>
        <vers num="release_2004-11-02"/>
        <vers num="release_2004-11-10"/>
        <vers num="release_2005-01-14"/>
        <vers num="release_2005-01-15"/>
        <vers num="release_2005-01-16a"/>
        <vers num="release_2005-02-06"/>
        <vers num="release_2005-02-18"/>
        <vers num="release_2005-05-07"/>
        <vers num="release_2005-07-01"/>
        <vers num="release_2005-07-13"/>
        <vers num="release_2005-09-19"/>
        <vers num="release_2005-09-22"/>
        <vers num="release_2006-03-05"/>
        <vers num="release_2006-03-09"/>
        <vers num="release_2006-03-09e"/>
        <vers num="release_2006-06-04"/>
        <vers prev="1" num="release_2009-02-14"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0288" published="2010-02-15" name="CVE-2010-0288" modified="2010-03-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">A typo in the administrator permission check in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25b allows remote attackers to gain privileges and access closed wikis by editing current ACL statements, as demonstrated in the wild in January 2010.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55661" source="XF">dokuwiki-ajax-security-bypass(55661)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0150" source="VUPEN">ADV-2010-0150</ref>
      <ref url="http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security" source="CONFIRM">http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security</ref>
      <ref url="http://www.securityfocus.com/bid/37820" source="BID">37820</ref>
      <ref url="http://www.exploit-db.com/exploits/11141" source="EXPLOIT-DB">11141</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1976" source="DEBIAN">DSA-1976</ref>
      <ref url="http://secunia.com/advisories/38183" source="SECUNIA" adv="1">38183</ref>
      <ref url="http://osvdb.org/61710" source="OSVDB">61710</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034831.html" source="FEDORA">FEDORA-2010-0800</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034729.html" source="FEDORA">FEDORA-2010-0770</ref>
      <ref url="http://bugs.splitbrain.org/index.php?do=details&amp;task_id=1847" source="CONFIRM">http://bugs.splitbrain.org/index.php?do=details&amp;task_id=1847</ref>
    </refs>
    <vuln_soft>
      <prod vendor="dokuwiki" name="dokuwiki">
        <vers num="release_2004-07-04"/>
        <vers num="release_2004-07-07"/>
        <vers num="release_2004-07-12"/>
        <vers num="release_2004-07-21"/>
        <vers num="release_2004-07-25"/>
        <vers num="release_2004-08-08"/>
        <vers num="release_2004-08-15a"/>
        <vers num="release_2004-08-22"/>
        <vers num="release_2004-09-12"/>
        <vers num="release_2004-09-25"/>
        <vers num="release_2004-09-30"/>
        <vers num="release_2004-11-01"/>
        <vers num="release_2004-11-02"/>
        <vers num="release_2004-11-10"/>
        <vers num="release_2005-01-14"/>
        <vers num="release_2005-01-15"/>
        <vers num="release_2005-01-16a"/>
        <vers num="release_2005-02-06"/>
        <vers num="release_2005-02-18"/>
        <vers num="release_2005-05-07"/>
        <vers num="release_2005-07-01"/>
        <vers num="release_2005-07-13"/>
        <vers num="release_2005-09-19"/>
        <vers num="release_2005-09-22"/>
        <vers num="release_2006-03-05"/>
        <vers num="release_2006-03-09"/>
        <vers num="release_2006-03-09e"/>
        <vers num="release_2006-06-04"/>
        <vers prev="1" num="release_2009-02-14"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0289" published="2010-02-15" name="CVE-2010-0289" modified="2010-03-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Multiple cross-site request forgery (CSRF) vulnerabilities in the ACL Manager plugin (plugins/acl/ajax.php) in DokuWiki before 2009-12-25c allow remote attackers to hijack the authentication of administrators for requests that modify access control rules, and other unspecified requests, via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security" source="CONFIRM">http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1976" source="DEBIAN">DSA-1976</ref>
      <ref url="http://secunia.com/advisories/38205" source="SECUNIA" adv="1">38205</ref>
      <ref url="http://osvdb.org/61708" source="OSVDB">61708</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034831.html" source="FEDORA">FEDORA-2010-0800</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034729.html" source="FEDORA">FEDORA-2010-0770</ref>
      <ref url="http://freshmeat.net/projects/dokuwiki/tags/security-fix" source="CONFIRM">http://freshmeat.net/projects/dokuwiki/tags/security-fix</ref>
      <ref url="http://bugs.splitbrain.org/index.php?do=details&amp;task_id=1853" source="CONFIRM">http://bugs.splitbrain.org/index.php?do=details&amp;task_id=1853</ref>
    </refs>
    <vuln_soft>
      <prod vendor="dokuwiki" name="dokuwiki">
        <vers num="release_2004-07-04"/>
        <vers num="release_2004-07-07"/>
        <vers num="release_2004-07-12"/>
        <vers num="release_2004-07-21"/>
        <vers num="release_2004-07-25"/>
        <vers num="release_2004-08-08"/>
        <vers num="release_2004-08-15a"/>
        <vers num="release_2004-08-22"/>
        <vers num="release_2004-09-12"/>
        <vers num="release_2004-09-25"/>
        <vers num="release_2004-09-30"/>
        <vers num="release_2004-11-01"/>
        <vers num="release_2004-11-02"/>
        <vers num="release_2004-11-10"/>
        <vers num="release_2005-01-14"/>
        <vers num="release_2005-01-15"/>
        <vers num="release_2005-01-16a"/>
        <vers num="release_2005-02-06"/>
        <vers num="release_2005-02-18"/>
        <vers num="release_2005-05-07"/>
        <vers num="release_2005-07-01"/>
        <vers num="release_2005-07-13"/>
        <vers num="release_2005-09-19"/>
        <vers num="release_2005-09-22"/>
        <vers num="release_2006-03-05"/>
        <vers num="release_2006-03-09"/>
        <vers num="release_2006-03-09e"/>
        <vers num="release_2006-06-04"/>
        <vers prev="1" num="release_2009-02-14"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0290" published="2010-01-22" name="CVE-2010-0290" modified="2011-07-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:P)" CVSS_score="4.0" CVSS_impact_subscore="4.9" CVSS_exploit_subscore="4.9" CVSS_base_score="4.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.</descript>
    </desc>
    <loss_types>
      <avail/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://www.isc.org/advisories/CVE-2009-4022v6" source="CONFIRM" adv="1">https://www.isc.org/advisories/CVE-2009-4022v6</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0062.html" source="REDHAT">RHSA-2010:0062</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=557121" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=557121</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=554851" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=554851</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1352" source="VUPEN">ADV-2010-1352</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0622" source="VUPEN">ADV-2010-0622</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0176" source="VUPEN" adv="1">ADV-2010-0176</ref>
      <ref url="http://www.ubuntu.com/usn/USN-888-1" source="UBUNTU">USN-888-1</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:021" source="MANDRIVA">MDVSA-2010:021</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2054" source="DEBIAN">DSA-2054</ref>
      <ref url="http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018" source="CONFIRM">http://wiki.rpath.com/wiki/Advisories:rPSA-2010-0018</ref>
      <ref url="http://secunia.com/advisories/40086" source="SECUNIA">40086</ref>
      <ref url="http://secunia.com/advisories/38240" source="SECUNIA" adv="1">38240</ref>
      <ref url="http://secunia.com/advisories/38219" source="SECUNIA" adv="1">38219</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8884" source="OVAL">oval:org.mitre.oval:def:8884</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:7512" source="OVAL">oval:org.mitre.oval:def:7512</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:6815" source="OVAL">oval:org.mitre.oval:def:6815</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126399602810086&amp;w=2" source="MLIST">[oss-security] 20100120 Re: BIND CVE-2009-4022 fix incomplete</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126393609503704&amp;w=2" source="MLIST">[oss-security] 20100119 BIND CVE-2009-4022 fix incomplete</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html" source="SUSE">SUSE-SA:2010:008</ref>
    </refs>
    <vuln_soft>
      <prod vendor="isc" name="bind">
        <vers num="9.0"/>
        <vers num="9.0.0" edition="rc1"/>
        <vers num="9.0.0" edition="rc2"/>
        <vers num="9.0.0" edition="rc3"/>
        <vers num="9.0.0" edition="rc4"/>
        <vers num="9.0.0" edition="rc5"/>
        <vers num="9.0.0" edition="rc6"/>
        <vers num="9.0.0b1"/>
        <vers num="9.0.0b2"/>
        <vers num="9.0.0b3"/>
        <vers num="9.0.0b4"/>
        <vers num="9.0.0b5"/>
        <vers num="9.0.1" edition="rc1"/>
        <vers num="9.0.1" edition="rc2"/>
        <vers num="9.1"/>
        <vers num="9.1.0" edition="rc1"/>
        <vers num="9.1.0b1"/>
        <vers num="9.1.0b2"/>
        <vers num="9.1.0b3"/>
        <vers num="9.1.1" edition="rc1"/>
        <vers num="9.1.1" edition="rc2"/>
        <vers num="9.1.1" edition="rc3"/>
        <vers num="9.1.1" edition="rc4"/>
        <vers num="9.1.1" edition="rc5"/>
        <vers num="9.1.1" edition="rc6"/>
        <vers num="9.1.1" edition="rc7"/>
        <vers num="9.1.2" edition="rc1"/>
        <vers num="9.1.3" edition="rc1"/>
        <vers num="9.1.3" edition="rc2"/>
        <vers num="9.1.3" edition="rc3"/>
        <vers num="9.1.3p2"/>
        <vers num="9.1.3p3"/>
        <vers num="9.2.0" edition="rc1"/>
        <vers num="9.2.0" edition="rc10"/>
        <vers num="9.2.0" edition="rc2"/>
        <vers num="9.2.0" edition="rc3"/>
        <vers num="9.2.0" edition="rc4"/>
        <vers num="9.2.0" edition="rc5"/>
        <vers num="9.2.0" edition="rc6"/>
        <vers num="9.2.0" edition="rc7"/>
        <vers num="9.2.0" edition="rc8"/>
        <vers num="9.2.0" edition="rc9"/>
        <vers num="9.2.0a1"/>
        <vers num="9.2.0a2"/>
        <vers num="9.2.0a3"/>
        <vers num="9.2.0b1"/>
        <vers num="9.2.0b2"/>
        <vers num="9.2.1" edition="rc1"/>
        <vers num="9.2.1" edition="rc2"/>
        <vers num="9.2.2" edition="p2"/>
        <vers num="9.2.2" edition="p3"/>
        <vers num="9.2.2" edition="rc1"/>
        <vers num="9.2.3" edition="rc1"/>
        <vers num="9.2.3" edition="rc2"/>
        <vers num="9.2.3" edition="rc3"/>
        <vers num="9.2.3" edition="rc4"/>
        <vers num="9.2.4" edition="rc2"/>
        <vers num="9.2.4" edition="rc3"/>
        <vers num="9.2.4" edition="rc4"/>
        <vers num="9.2.4" edition="rc5"/>
        <vers num="9.2.4" edition="rc6"/>
        <vers num="9.2.4" edition="rc7"/>
        <vers num="9.2.4" edition="rc8"/>
        <vers num="9.2.5" edition="beta2"/>
        <vers num="9.2.5" edition="rc1"/>
        <vers num="9.2.6" edition="rc1"/>
        <vers num="9.2.6b1"/>
        <vers num="9.2.6b2"/>
        <vers num="9.2.6p1"/>
        <vers num="9.2.6p2"/>
        <vers num="9.2.7" edition="rc1"/>
        <vers num="9.2.7" edition="rc2"/>
        <vers num="9.2.7" edition="rc3"/>
        <vers num="9.2.7b1"/>
        <vers num="9.2.8"/>
        <vers num="9.2.8p1"/>
        <vers num="9.2.9" edition="rc1"/>
        <vers num="9.2.9b1"/>
        <vers num="9.3.0" edition="beta2"/>
        <vers num="9.3.0" edition="beta3"/>
        <vers num="9.3.0" edition="beta4"/>
        <vers num="9.3.0" edition="rc1"/>
        <vers num="9.3.0" edition="rc2"/>
        <vers num="9.3.0" edition="rc3"/>
        <vers num="9.3.0" edition="rc4"/>
        <vers num="9.3.1" edition="beta2"/>
        <vers num="9.3.1" edition="rc1"/>
        <vers num="9.3.2" edition="rc1"/>
        <vers num="9.3.2b1"/>
        <vers num="9.3.2b2"/>
        <vers num="9.3.2p1"/>
        <vers num="9.3.2p2"/>
        <vers num="9.3.3" edition="rc1"/>
        <vers num="9.3.3" edition="rc2"/>
        <vers num="9.3.3" edition="rc3"/>
        <vers num="9.3.3b1"/>
        <vers num="9.3.4"/>
        <vers num="9.3.4p1"/>
        <vers num="9.3.5" edition="rc1"/>
        <vers num="9.3.5" edition="rc2"/>
        <vers num="9.3.5-p2"/>
        <vers num="9.3.5-p2-w1"/>
        <vers num="9.3.5-p2-w2"/>
        <vers num="9.3.5b1"/>
        <vers num="9.3.6" edition="rc1"/>
        <vers num="9.3.6b1"/>
        <vers num="9.3.6p1"/>
        <vers num="9.4.0" edition="rc1"/>
        <vers num="9.4.0" edition="rc2"/>
        <vers num="9.4.0a5"/>
        <vers num="9.4.0a6"/>
        <vers num="9.4.0b1"/>
        <vers num="9.4.0b2"/>
        <vers num="9.4.0b3"/>
        <vers num="9.4.0b4"/>
        <vers num="9.4.1"/>
        <vers num="9.4.1p1"/>
        <vers num="9.4.2" edition="rc1"/>
        <vers num="9.4.2" edition="rc2"/>
        <vers num="9.4.2b1"/>
        <vers num="9.4.2p1"/>
        <vers num="9.4.2p2"/>
        <vers num="9.4.2p2-w1"/>
        <vers num="9.4.2p2-w2"/>
        <vers num="9.4.3p1"/>
        <vers num="9.4.3p2"/>
        <vers num="9.4.3p3"/>
        <vers num="9.4.3p4"/>
        <vers num="9.5"/>
        <vers num="9.5.0" edition="rc1"/>
        <vers num="9.5.0a5"/>
        <vers num="9.5.0a6"/>
        <vers num="9.5.0a7"/>
        <vers num="9.5.0b1"/>
        <vers num="9.5.0b2"/>
        <vers num="9.5.0b3"/>
        <vers num="9.5.1" edition="rc1"/>
        <vers num="9.5.1" edition="rc2"/>
        <vers num="9.5.1b1"/>
        <vers num="9.5.1b2"/>
        <vers num="9.5.1b3"/>
        <vers num="9.5.1p1"/>
        <vers num="9.5.1p2"/>
        <vers num="9.5.1p3"/>
        <vers num="9.5.2" edition="rc1"/>
        <vers num="9.5.2b1"/>
        <vers num="9.5.2p1"/>
        <vers num="9.6.0" edition="p1"/>
        <vers num="9.6.0" edition="rc1"/>
        <vers num="9.6.0" edition="rc2"/>
        <vers num="9.6.0a1"/>
        <vers num="9.6.0b1"/>
        <vers num="9.6.1" edition="p1"/>
        <vers num="9.6.1" edition="p2"/>
        <vers num="9.7.0" edition="beta"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0291" published="2010-02-15" name="CVE-2010-0291" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">The Linux kernel before 2.6.32.4 allows local users to gain privileges or cause a denial of service (panic) by calling the (1) mmap or (2) mremap function, aka the "do_mremap() mess" or "mremap/mmap mess."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4" source="CONFIRM" patch="1">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=556703" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=556703</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.securityfocus.com/bid/37906" source="BID">37906</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0161.html" source="REDHAT">RHSA-2010:0161</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2005" source="DEBIAN">DSA-2005</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://secunia.com/advisories/43315" source="SECUNIA">43315</ref>
      <ref url="http://secunia.com/advisories/39033" source="SECUNIA">39033</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA">38492</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11824" source="OVAL">oval:org.mitre.oval:def:11824</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126406814304720&amp;w=2" source="MLIST">[oss-security] 20100121 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126400443123998&amp;w=2" source="MLIST">[oss-security] 20100120 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126399980216047&amp;w=2" source="MLIST">[oss-security] 20100120 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126396609004884&amp;w=2" source="MLIST">[oss-security] 20100120 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126396065732697&amp;w=2" source="MLIST">[oss-security] 20100120 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126395874130875&amp;w=2" source="MLIST">[oss-security] 20100120 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126393370931972&amp;w=2" source="MLIST">[oss-security] 20100119 Re: CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126388181420690&amp;w=2" source="MLIST">[oss-security] 20100119 CVE request - kernel: untangle the do_mremap() mess</ref>
      <ref url="http://marc.info/?l=linux-arch&amp;m=126004438008670&amp;w=2" source="MLIST">[linux-kernel] 20091205 [RFC][PATCHSET] mremap/mmap mess</ref>
      <ref url="http://groups.google.com/group/linux.kernel/msg/895f20870532241e" source="MLIST">[linux-kernel] 20100114 [PATCH 01/52] untangle the do_mremap() mess</ref>
      <ref url="http://groups.google.co.jp/group/fa.linux.kernel/browse_thread/thread/8bf22336b1082090" source="CONFIRM">http://groups.google.co.jp/group/fa.linux.kernel/browse_thread/thread/8bf22336b1082090</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f8b7256096a20436f6d0926747e3ac3d64c81d24" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f8b7256096a20436f6d0926747e3ac3d64c81d24</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f106af4e90eadd76cfc0b5325f659619e08fb762" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=f106af4e90eadd76cfc0b5325f659619e08fb762</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ecc1a8993751de4e82eb18640d631dae1f626bd6" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=ecc1a8993751de4e82eb18640d631dae1f626bd6</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=e77414e0aad6a1b063ba5e5750c582c75327ea6a" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=e77414e0aad6a1b063ba5e5750c582c75327ea6a</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=c4caa778157dbbf04116f0ac2111e389b5cd7a29" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=c4caa778157dbbf04116f0ac2111e389b5cd7a29</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=bb52d6694002b9d632bb355f64daa045c6293a4e" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=bb52d6694002b9d632bb355f64daa045c6293a4e</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=aa65607373a4daf2010e8c3867b6317619f3c1a3" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=aa65607373a4daf2010e8c3867b6317619f3c1a3</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=935874141df839c706cd6cdc438e85eb69d1525e" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=935874141df839c706cd6cdc438e85eb69d1525e</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=9206de95b1ea68357996ec02be5db0638a0de2c1" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=9206de95b1ea68357996ec02be5db0638a0de2c1</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=8c7b49b3ecd48923eb64ff57e07a1cdb74782970" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=8c7b49b3ecd48923eb64ff57e07a1cdb74782970</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=570dcf2c15463842e384eb597a87c1e39bead99b" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=570dcf2c15463842e384eb597a87c1e39bead99b</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=564b3bffc619dcbdd160de597b0547a7017ea010" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=564b3bffc619dcbdd160de597b0547a7017ea010</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=54f5de709984bae0d31d823ff03de755f9dcac54" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=54f5de709984bae0d31d823ff03de755f9dcac54</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2ea1d13f64efdf49319e86c87d9ba38c30902782" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2ea1d13f64efdf49319e86c87d9ba38c30902782</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2c6a10161d0b5fc047b5bd81b03693b9af99fab5" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2c6a10161d0b5fc047b5bd81b03693b9af99fab5</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=1a0ef85f84feb13f07b604fcf5b90ef7c2b5c82f" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=1a0ef85f84feb13f07b604fcf5b90ef7c2b5c82f</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0ec62d290912bb4b989be7563851bc364ec73b56" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0ec62d290912bb4b989be7563851bc364ec73b56</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=097eed103862f9c6a97f2e415e21d1134017b135" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=097eed103862f9c6a97f2e415e21d1134017b135</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=05d72faa6d13c9d857478a5d35c85db9adada685" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=05d72faa6d13c9d857478a5d35c85db9adada685</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0067bd8a55862ac9dd212bd1c4f6f5bff1ca1301" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=0067bd8a55862ac9dd212bd1c4f6f5bff1ca1301</ref>
    </refs>
    <vuln_soft>
      <prod vendor="intel" name="e1000">
        <vers num="5.2.22"/>
        <vers num="5.2.30.1"/>
        <vers num="5.2.52"/>
        <vers num="5.3.19"/>
        <vers num="5.4.11"/>
        <vers num="5.5.4"/>
        <vers num="5.6.10"/>
        <vers num="5.6.10.1"/>
        <vers num="5.7.6"/>
        <vers num="6.0.54"/>
        <vers num="6.0.60"/>
        <vers num="6.1.16"/>
        <vers num="6.2.15"/>
        <vers num="6.3.9"/>
        <vers num="7.0.33"/>
        <vers num="7.0.41"/>
        <vers num="7.1.9"/>
        <vers num="7.2.7"/>
        <vers num="7.2.9"/>
        <vers num="7.3.15"/>
        <vers num="7.3.20"/>
        <vers num="7.4.27"/>
        <vers prev="1" num="7.4.35"/>
      </prod>
      <prod vendor="linux" name="kernel">
        <vers num="2.6.24.7"/>
        <vers num="2.6.25.15"/>
      </prod>
      <prod vendor="linux" name="linux_kernel">
        <vers num="2.2.27"/>
        <vers num="2.4.36"/>
        <vers num="2.4.36.1"/>
        <vers num="2.4.36.2"/>
        <vers num="2.4.36.3"/>
        <vers num="2.4.36.4"/>
        <vers num="2.4.36.5"/>
        <vers num="2.4.36.6"/>
        <vers num="2.6"/>
        <vers num="2.6.18" edition="rc1"/>
        <vers num="2.6.18" edition="rc2"/>
        <vers num="2.6.18" edition="rc3"/>
        <vers num="2.6.18" edition="rc4"/>
        <vers num="2.6.18" edition="rc5"/>
        <vers num="2.6.18" edition="rc6"/>
        <vers num="2.6.18" edition="rc7"/>
        <vers num="2.6.19.4"/>
        <vers num="2.6.19.5"/>
        <vers num="2.6.19.6"/>
        <vers num="2.6.19.7"/>
        <vers num="2.6.20.16"/>
        <vers num="2.6.20.17"/>
        <vers num="2.6.20.18"/>
        <vers num="2.6.20.19"/>
        <vers num="2.6.20.20"/>
        <vers num="2.6.20.21"/>
        <vers num="2.6.21.5"/>
        <vers num="2.6.21.6"/>
        <vers num="2.6.21.7"/>
        <vers num="2.6.22"/>
        <vers num="2.6.22.1"/>
        <vers num="2.6.22.10"/>
        <vers num="2.6.22.11"/>
        <vers num="2.6.22.12"/>
        <vers num="2.6.22.13"/>
        <vers num="2.6.22.14"/>
        <vers num="2.6.22.15"/>
        <vers num="2.6.22.17"/>
        <vers num="2.6.22.18"/>
        <vers num="2.6.22.19"/>
        <vers num="2.6.22.2"/>
        <vers num="2.6.22.20"/>
        <vers num="2.6.22.21"/>
        <vers num="2.6.22.22"/>
        <vers num="2.6.22.8"/>
        <vers num="2.6.22.9"/>
        <vers num="2.6.22_rc1"/>
        <vers num="2.6.22_rc7"/>
        <vers num="2.6.23"/>
        <vers num="2.6.23.10"/>
        <vers num="2.6.23.11"/>
        <vers num="2.6.23.12"/>
        <vers num="2.6.23.13"/>
        <vers num="2.6.23.15"/>
        <vers num="2.6.23.16"/>
        <vers num="2.6.23.17"/>
        <vers num="2.6.23.8"/>
        <vers num="2.6.23.9"/>
        <vers num="2.6.23_rc1"/>
        <vers num="2.6.24"/>
        <vers num="2.6.24.1"/>
        <vers num="2.6.24.2"/>
        <vers num="2.6.24.3"/>
        <vers num="2.6.24.4"/>
        <vers num="2.6.24.5"/>
        <vers num="2.6.24.6"/>
        <vers num="2.6.24_rc1"/>
        <vers num="2.6.24_rc4"/>
        <vers num="2.6.24_rc5"/>
        <vers num="2.6.25" edition=""/>
        <vers num="2.6.25" edition=":x86_64"/>
        <vers num="2.6.25.1" edition=""/>
        <vers num="2.6.25.1" edition=":x86_64"/>
        <vers num="2.6.25.10" edition=""/>
        <vers num="2.6.25.10" edition=":x86_64"/>
        <vers num="2.6.25.11" edition=""/>
        <vers num="2.6.25.11" edition=":x86_64"/>
        <vers num="2.6.25.12" edition=""/>
        <vers num="2.6.25.12" edition=":x86_64"/>
        <vers num="2.6.25.13"/>
        <vers num="2.6.25.14"/>
        <vers num="2.6.25.16"/>
        <vers num="2.6.25.17"/>
        <vers num="2.6.25.2" edition=""/>
        <vers num="2.6.25.2" edition=":x86_64"/>
        <vers num="2.6.25.3" edition=""/>
        <vers num="2.6.25.3" edition=":x86_64"/>
        <vers num="2.6.25.4" edition=""/>
        <vers num="2.6.25.4" edition=":x86_64"/>
        <vers num="2.6.25.5" edition=""/>
        <vers num="2.6.25.5" edition=":x86_64"/>
        <vers num="2.6.25.6" edition=""/>
        <vers num="2.6.25.6" edition=":x86_64"/>
        <vers num="2.6.25.7" edition=""/>
        <vers num="2.6.25.7" edition=":x86_64"/>
        <vers num="2.6.25.8" edition=""/>
        <vers num="2.6.25.8" edition=":x86_64"/>
        <vers num="2.6.25.9" edition=""/>
        <vers num="2.6.25.9" edition=":x86_64"/>
        <vers num="2.6.26"/>
        <vers num="2.6.26.1"/>
        <vers num="2.6.26.2"/>
        <vers num="2.6.26.3"/>
        <vers num="2.6.26.4"/>
        <vers num="2.6.26.5"/>
        <vers num="2.6.27"/>
        <vers prev="1" num="2.6.28"/>
        <vers num="2.6.29" edition="git1"/>
        <vers num="2.6.29" edition="rc1"/>
        <vers num="2.6.29" edition="rc2"/>
        <vers num="2.6.29" edition="rc2_git7"/>
        <vers num="2.6.29" edition="rc8-kk"/>
        <vers num="2.6.29.3"/>
        <vers num="2.6.29.rc1"/>
        <vers num="2.6.29.rc2-git1"/>
        <vers prev="1" num="2.6.30" edition="rc1"/>
        <vers prev="1" num="2.6.30" edition="rc2"/>
        <vers prev="1" num="2.6.30" edition="rc3"/>
        <vers prev="1" num="2.6.30" edition="rc7-git6"/>
        <vers num="2.6.32" edition="git-6"/>
        <vers num="2.6.32" edition="rc1"/>
        <vers num="2.6.32" edition="rc3"/>
        <vers num="2.6.32" edition="rc4"/>
        <vers num="2.6.32" edition="rc5"/>
        <vers num="2.6.32" edition="rc6"/>
        <vers num="2.6.32" edition="rc7"/>
        <vers num="2.6.32" edition="rc8"/>
        <vers num="2.6.32.1"/>
        <vers num="2.6.32.2"/>
        <vers prev="1" num="2.6.32.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0292" published="2010-02-08" name="CVE-2010-0292" modified="2010-02-09" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The read_from_cmd_socket function in cmdmon.c in chronyd in Chrony before 1.23.1, and 1.24-pre1, allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by sending a spoofed cmdmon packet that triggers a continuous exchange of NOHOSTACCESS messages between two daemons, a related issue to CVE-2009-3563.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38106" source="BID" patch="1">38106</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=555367" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=555367</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1992" source="DEBIAN">DSA-1992</ref>
      <ref url="http://secunia.com/advisories/38480" source="SECUNIA" adv="1">38480</ref>
      <ref url="http://secunia.com/advisories/38428" source="SECUNIA" adv="1">38428</ref>
      <ref url="http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=7864c7a70ce00369194e734eb2842ecc5f8db531" source="CONFIRM">http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=7864c7a70ce00369194e734eb2842ecc5f8db531</ref>
      <ref url="http://chrony.tuxfamily.org/News.html" source="CONFIRM" adv="1">http://chrony.tuxfamily.org/News.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="tuxfamily" name="chrony">
        <vers num="1.18"/>
        <vers num="1.19"/>
        <vers num="1.19-1"/>
        <vers num="1.19.99.1"/>
        <vers num="1.19.99.2"/>
        <vers num="1.19.99.3"/>
        <vers num="1.20"/>
        <vers num="1.21"/>
        <vers num="1.21-pre1"/>
        <vers prev="1" num="1.23-pre1"/>
        <vers num="1.24-pre1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0293" published="2010-02-08" name="CVE-2010-0293" modified="2010-02-09" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The client logging functionality in chronyd in Chrony before 1.23.1 does not restrict the amount of memory used for storage of client information, which allows remote attackers to cause a denial of service (memory consumption) via spoofed (1) NTP or (2) cmdmon packets.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=555367" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=555367</ref>
      <ref url="http://www.securityfocus.com/bid/38106" source="BID">38106</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1992" source="DEBIAN">DSA-1992</ref>
      <ref url="http://secunia.com/advisories/38480" source="SECUNIA" adv="1">38480</ref>
      <ref url="http://secunia.com/advisories/38428" source="SECUNIA" adv="1">38428</ref>
      <ref url="http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=2f63cf448560fdb96b80d8488aae6a15b802a753" source="CONFIRM">http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=2f63cf448560fdb96b80d8488aae6a15b802a753</ref>
      <ref url="http://chrony.tuxfamily.org/News.html" source="CONFIRM" adv="1">http://chrony.tuxfamily.org/News.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="tuxfamily" name="chrony">
        <vers num="1.18"/>
        <vers num="1.19"/>
        <vers num="1.19-1"/>
        <vers num="1.19.99.1"/>
        <vers num="1.19.99.2"/>
        <vers num="1.19.99.3"/>
        <vers num="1.20"/>
        <vers num="1.21"/>
        <vers num="1.21-pre1"/>
        <vers prev="1" num="1.23-pre1"/>
        <vers num="1.24-pre1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0294" published="2010-02-08" name="CVE-2010-0294" modified="2010-02-09" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38106" source="BID" patch="1">38106</ref>
      <ref url="http://chrony.tuxfamily.org/News.html" source="CONFIRM" patch="1" adv="1">http://chrony.tuxfamily.org/News.html</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=555367" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=555367</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1992" source="DEBIAN">DSA-1992</ref>
      <ref url="http://secunia.com/advisories/38480" source="SECUNIA" adv="1">38480</ref>
      <ref url="http://secunia.com/advisories/38428" source="SECUNIA" adv="1">38428</ref>
      <ref url="http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=0b710499f994823bd938fc6895f097eefb9cc59f" source="CONFIRM">http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=0b710499f994823bd938fc6895f097eefb9cc59f</ref>
    </refs>
    <vuln_soft>
      <prod vendor="tuxfamily" name="chrony">
        <vers num="1.18"/>
        <vers num="1.19"/>
        <vers num="1.19-1"/>
        <vers num="1.19.99.1"/>
        <vers num="1.19.99.2"/>
        <vers num="1.19.99.3"/>
        <vers num="1.20"/>
        <vers num="1.21"/>
        <vers num="1.21-pre1"/>
        <vers prev="1" num="1.23-pre1"/>
        <vers num="1.24-pre1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0295" published="2010-02-03" name="CVE-2010-0295" modified="2011-01-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">lighttpd before 1.4.26, and 1.5.x, allocates a buffer for each read operation that occurs for a request, which allows remote attackers to cause a denial of service (memory consumption) by breaking a request into small pieces that are sent at a slow rate.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.securityfocus.com/bid/38036" source="BID" patch="1">38036</ref>
      <ref url="http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2010_01.txt" source="CONFIRM" patch="1">http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2010_01.txt</ref>
      <ref url="http://download.lighttpd.net/lighttpd/security/lighttpd-1.5_fix_slow_request_dos.patch" source="CONFIRM" patch="1">http://download.lighttpd.net/lighttpd/security/lighttpd-1.5_fix_slow_request_dos.patch</ref>
      <ref url="http://download.lighttpd.net/lighttpd/security/lighttpd-1.4.x_fix_slow_request_dos.patch" source="CONFIRM" patch="1">http://download.lighttpd.net/lighttpd/security/lighttpd-1.4.x_fix_slow_request_dos.patch</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56038" source="XF">lighttpd-slow-request-dos(56038)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0172" source="VUPEN">ADV-2011-0172</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/01/8" source="MLIST">[oss-security] 20100202 lighttpd: slow request dos/oom attack [CVE-2010-0295]</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1987" source="DEBIAN">DSA-1987</ref>
      <ref url="http://security.gentoo.org/glsa/glsa-201006-17.xml" source="GENTOO">GLSA-201006-17</ref>
      <ref url="http://secunia.com/advisories/39765" source="SECUNIA">39765</ref>
      <ref url="http://secunia.com/advisories/38403" source="SECUNIA" adv="1">38403</ref>
      <ref url="http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2711" source="CONFIRM">http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2711</ref>
      <ref url="http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2710" source="CONFIRM">http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2710</ref>
      <ref url="http://redmine.lighttpd.net/issues/2147" source="CONFIRM">http://redmine.lighttpd.net/issues/2147</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00003.html" source="SUSE">SUSE-SR:2010:003</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041307.html" source="FEDORA">FEDORA-2010-7643</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041296.html" source="FEDORA">FEDORA-2010-7611</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-May/041264.html" source="FEDORA">FEDORA-2010-7636</ref>
      <ref url="http://blogs.sun.com/security/entry/cve_2010_0295_vulnerability_in" source="CONFIRM">http://blogs.sun.com/security/entry/cve_2010_0295_vulnerability_in</ref>
    </refs>
    <vuln_soft>
      <prod vendor="lighttpd" name="lighttpd">
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="1.2.0"/>
        <vers num="1.2.1"/>
        <vers num="1.2.2"/>
        <vers num="1.2.3"/>
        <vers num="1.2.5"/>
        <vers num="1.2.6"/>
        <vers num="1.2.7"/>
        <vers num="1.2.8"/>
        <vers num="1.3.0"/>
        <vers num="1.3.1"/>
        <vers num="1.3.10"/>
        <vers num="1.3.11"/>
        <vers num="1.3.12"/>
        <vers num="1.3.13"/>
        <vers num="1.3.14"/>
        <vers num="1.3.15"/>
        <vers num="1.3.16"/>
        <vers num="1.3.2"/>
        <vers num="1.3.3"/>
        <vers num="1.3.4"/>
        <vers num="1.3.5"/>
        <vers num="1.3.6"/>
        <vers num="1.3.8"/>
        <vers num="1.3.9"/>
        <vers num="1.4.0"/>
        <vers num="1.4.10"/>
        <vers num="1.4.11"/>
        <vers num="1.4.12"/>
        <vers num="1.4.13"/>
        <vers num="1.4.14"/>
        <vers num="1.4.15"/>
        <vers num="1.4.16"/>
        <vers num="1.4.17"/>
        <vers num="1.4.18"/>
        <vers num="1.4.19"/>
        <vers num="1.4.2"/>
        <vers num="1.4.20"/>
        <vers num="1.4.21"/>
        <vers num="1.4.22"/>
        <vers num="1.4.23"/>
        <vers num="1.4.24"/>
        <vers prev="1" num="1.4.25"/>
        <vers num="1.4.3"/>
        <vers num="1.4.4"/>
        <vers num="1.4.5"/>
        <vers num="1.4.6"/>
        <vers num="1.4.7"/>
        <vers num="1.4.8"/>
        <vers num="1.4.9"/>
        <vers num="1.5.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0296" published="2010-06-01" name="CVE-2010-0296" modified="2011-10-25" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="7.2" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.9" CVSS_base_score="7.2">
    <desc>
      <descript source="cve">The encode_name macro in misc/mntent_r.c in the GNU C Library (aka glibc or libc6) 2.11.1 and earlier, as used by ncpmount and mount.cifs, does not properly handle newline characters in mountpoint names, which allows local users to cause a denial of service (mtab corruption), or possibly modify mount options and gain privileges, via a crafted mount request.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=559579" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=559579</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/59240" source="XF">gnuclibrary-encodenamemacro-dos(59240)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0863" source="VUPEN">ADV-2011-0863</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1246" source="VUPEN" adv="1">ADV-2010-1246</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0012.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0012.html</ref>
      <ref url="http://www.ubuntu.com/usn/USN-944-1" source="UBUNTU">USN-944-1</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/520102/100/0/threaded" source="BUGTRAQ">20111013 VMSA-2011-0012 VMware ESXi and ESX updates to third party libraries and ESX Service Console</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2011-0412.html" source="REDHAT">RHSA-2011:0412</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:112" source="MANDRIVA">MDVSA-2010:112</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:111" source="MANDRIVA">MDVSA-2010:111</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2058" source="DEBIAN">DSA-2058</ref>
      <ref url="http://sourceware.org/git/?p=glibc.git;a=commit;h=ab00f4eac8f4932211259ff87be83144f5211540" source="CONFIRM">http://sourceware.org/git/?p=glibc.git;a=commit;h=ab00f4eac8f4932211259ff87be83144f5211540</ref>
      <ref url="http://securitytracker.com/id?1024043" source="SECTRACK">1024043</ref>
      <ref url="http://security.gentoo.org/glsa/glsa-201011-01.xml" source="GENTOO">GLSA-201011-01</ref>
      <ref url="http://secunia.com/advisories/46397" source="SECUNIA">46397</ref>
      <ref url="http://secunia.com/advisories/43830" source="SECUNIA">43830</ref>
      <ref url="http://secunia.com/advisories/39900" source="SECUNIA" adv="1">39900</ref>
      <ref url="http://frugalware.org/security/662" source="CONFIRM">http://frugalware.org/security/662</ref>
    </refs>
    <vuln_soft>
      <prod vendor="gnu" name="glibc">
        <vers num="2.0"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers num="2.0.3"/>
        <vers num="2.0.4"/>
        <vers num="2.0.5"/>
        <vers num="2.0.6"/>
        <vers num="2.1"/>
        <vers num="2.1.1"/>
        <vers num="2.1.1.6"/>
        <vers num="2.1.2"/>
        <vers num="2.1.3"/>
        <vers num="2.1.9"/>
        <vers num="2.10"/>
        <vers num="2.10.1"/>
        <vers num="2.11"/>
        <vers prev="1" num="2.11.1"/>
        <vers num="2.2"/>
        <vers num="2.2.1"/>
        <vers num="2.2.2"/>
        <vers num="2.2.3"/>
        <vers num="2.2.4"/>
        <vers num="2.2.5"/>
        <vers num="2.3"/>
        <vers num="2.3.1"/>
        <vers num="2.3.10"/>
        <vers num="2.3.2"/>
        <vers num="2.3.3"/>
        <vers num="2.3.4"/>
        <vers num="2.3.5"/>
        <vers num="2.3.6"/>
        <vers num="2.4"/>
        <vers num="2.5"/>
        <vers num="2.5.1"/>
        <vers num="2.6"/>
        <vers num="2.6.1"/>
        <vers num="2.7"/>
        <vers num="2.8"/>
        <vers num="2.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0297" published="2010-02-12" name="CVE-2010-0297" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_score="7.2" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.9" CVSS_base_score="7.2">
    <desc>
      <descript source="cve">Buffer overflow in the usb_host_handle_control function in the USB passthrough handling implementation in usb-linux.c in QEMU before 0.11.1 allows guest OS users to cause a denial of service (guest OS crash or hang) or possibly execute arbitrary code on the host OS via a crafted USB packet.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0088.html" source="REDHAT">RHSA-2010:0088</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=557025" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=557025</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56194" source="XF">kernel-usb-bo(56194)</ref>
      <ref url="http://www.securityfocus.com/bid/38158" source="BID">38158</ref>
      <ref url="http://www.mail-archive.com/kvm@vger.kernel.org/msg19596.html" source="MLIST">[kvm] 20090721 Re: KVM crashes when using certain USB device</ref>
      <ref url="http://www.mail-archive.com/kvm@vger.kernel.org/msg19581.html" source="MLIST">[kvm] 20090721 Re: KVM crashes when using certain USB device</ref>
      <ref url="http://www.mail-archive.com/kvm@vger.kernel.org/msg18447.html" source="MLIST">[kvm] 20090702 KVM crashes when using certain USB device</ref>
      <ref url="http://wiki.qemu.org/ChangeLog" source="CONFIRM">http://wiki.qemu.org/ChangeLog</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11786" source="OVAL">oval:org.mitre.oval:def:11786</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126527304127254&amp;w=2" source="MLIST">[oss-security] 20100204 Re: KVM possible security issues fixed</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126510479211473&amp;w=2" source="MLIST">[oss-security] 20100202 KVM possible security issues fixed</ref>
      <ref url="http://git.savannah.gnu.org/cgit/qemu.git/commit/?id=babd03fde68093482528010a5435c14ce9128e3f" source="CONFIRM">http://git.savannah.gnu.org/cgit/qemu.git/commit/?id=babd03fde68093482528010a5435c14ce9128e3f</ref>
    </refs>
    <vuln_soft>
      <prod vendor="qemu" name="qemu">
        <vers num="0.1"/>
        <vers num="0.1.1"/>
        <vers num="0.1.2"/>
        <vers num="0.1.3"/>
        <vers num="0.1.4"/>
        <vers num="0.1.5"/>
        <vers num="0.1.6"/>
        <vers num="0.10.0"/>
        <vers num="0.10.1"/>
        <vers num="0.10.2"/>
        <vers num="0.10.3"/>
        <vers num="0.10.4"/>
        <vers num="0.10.5"/>
        <vers num="0.10.6"/>
        <vers prev="1" num="0.11.0"/>
        <vers num="0.11.0-rc0"/>
        <vers num="0.11.0-rc1"/>
        <vers num="0.11.0-rc2"/>
        <vers num="0.2"/>
        <vers num="0.3"/>
        <vers num="0.4"/>
        <vers num="0.4.1"/>
        <vers num="0.4.2"/>
        <vers num="0.4.3"/>
        <vers num="0.5.0"/>
        <vers num="0.5.1"/>
        <vers num="0.5.2"/>
        <vers num="0.5.3"/>
        <vers num="0.5.4"/>
        <vers num="0.5.5"/>
        <vers num="0.6.0"/>
        <vers num="0.6.1"/>
        <vers num="0.7.0"/>
        <vers num="0.7.1"/>
        <vers num="0.7.2"/>
        <vers num="0.8.0"/>
        <vers num="0.8.1"/>
        <vers num="0.8.2"/>
        <vers num="0.9.0"/>
        <vers num="0.9.1"/>
        <vers num="0.9.1-5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0298" published="2010-02-12" name="CVE-2010-0298" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_score="6.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.0" CVSS_base_score="6.5">
    <desc>
      <descript source="cve">The x86 emulator in KVM 83 does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) in determining the memory access available to CPL3 code, which allows guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, a related issue to CVE-2010-0306.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0095.html" source="REDHAT">RHSA-2010:0095</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0088.html" source="REDHAT">RHSA-2010:0088</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=559091" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=559091</ref>
      <ref url="http://www.securityfocus.com/bid/38158" source="BID">38158</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA">38492</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11335" source="OVAL">oval:org.mitre.oval:def:11335</ref>
    </refs>
    <vuln_soft>
      <prod vendor="linux" name="linux_kernel">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0299" published="2010-02-22" name="CVE-2010-0299" modified="2010-03-04" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="4.6" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="3.9" CVSS_base_score="4.6">
    <desc>
      <descript source="cve">openSUSE 11.2 installs the devtmpfs root directory with insecure permissions (1777), which allows local users to gain privileges via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-02/msg00002.html" source="SUSE" patch="1" adv="1">SUSE-SA:2010:010</ref>
    </refs>
    <vuln_soft>
      <prod vendor="novell" name="opensuse">
        <vers num="11.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0300" published="2010-02-04" name="CVE-2010-0300" modified="2010-02-05" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">cache.c in ircd-ratbox before 2.2.9 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a HELP command.</descript>
      <descript source="nvd">Per: http://cwe.mitre.org/data/definitions/476.html

'CWE-476: NULL Pointer Dereference'</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.debian.org/security/2010/dsa-1980" source="DEBIAN">DSA-1980</ref>
      <ref url="http://security.debian.org/pool/updates/main/i/ircd-ratbox/ircd-ratbox_2.2.8.dfsg-2+lenny1.diff.gz" source="CONFIRM">http://security.debian.org/pool/updates/main/i/ircd-ratbox/ircd-ratbox_2.2.8.dfsg-2+lenny1.diff.gz</ref>
      <ref url="http://secunia.com/advisories/38383" source="SECUNIA" adv="1">38383</ref>
      <ref url="http://secunia.com/advisories/38210" source="SECUNIA" adv="1">38210</ref>
      <ref url="http://lists.ratbox.org/pipermail/ircd-ratbox/2010-January/000891.html" source="MLIST">[ircd-ratbox] 20100125 ircd-ratbox-2.2.9 released</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ircd-ratbox" name="ircd-ratbox">
        <vers num="1.0"/>
        <vers num="1.1"/>
        <vers num="1.1.1"/>
        <vers num="1.1.2"/>
        <vers num="1.2.1"/>
        <vers num="1.2.2"/>
        <vers num="1.2.3"/>
        <vers num="1.3"/>
        <vers num="1.3.1"/>
        <vers num="1.3.2"/>
        <vers num="1.4" edition="rc1"/>
        <vers num="1.4" edition="rc2"/>
        <vers num="1.4.1"/>
        <vers num="1.4.2"/>
        <vers num="1.5"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.5.3"/>
        <vers num="2.0.0"/>
        <vers num="2.0.1"/>
        <vers num="2.0.10"/>
        <vers num="2.0.11"/>
        <vers num="2.0.2"/>
        <vers num="2.0.3"/>
        <vers num="2.0.4"/>
        <vers num="2.0.5"/>
        <vers num="2.0.6"/>
        <vers num="2.0.7"/>
        <vers num="2.0.8"/>
        <vers num="2.0.9"/>
        <vers num="2.1.0" edition="beta1"/>
        <vers num="2.1.0" edition="beta2"/>
        <vers num="2.1.1"/>
        <vers num="2.1.2"/>
        <vers num="2.1.3"/>
        <vers num="2.1.4"/>
        <vers num="2.1.5"/>
        <vers num="2.1.6"/>
        <vers num="2.1.7"/>
        <vers num="2.1.8"/>
        <vers num="2.2.0" edition="rc1"/>
        <vers num="2.2.0" edition="rc2"/>
        <vers num="2.2.0" edition="rc3"/>
        <vers num="2.2.1"/>
        <vers num="2.2.2"/>
        <vers num="2.2.3"/>
        <vers num="2.2.4"/>
        <vers num="2.2.5"/>
        <vers num="2.2.6"/>
        <vers num="2.2.7"/>
        <vers num="2.2.7.1"/>
        <vers prev="1" num="2.2.8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0301" published="2010-02-04" name="CVE-2010-0301" modified="2011-01-06" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="6.9" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.4" CVSS_base_score="6.9">
    <desc>
      <descript source="cve">main.C in maildrop 2.3.0 and earlier, when run by root with the -d option, uses the gid of root for execution of the .mailfilter file in a user's home directory, which allows local users to gain privileges via a crafted file.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=559681" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=559681</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55980" source="XF">maildrop-group-priv-escalation(55980)</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1981" source="DEBIAN">DSA-1981</ref>
      <ref url="http://www.courier-mta.org/maildrop/changelog.html" source="CONFIRM">http://www.courier-mta.org/maildrop/changelog.html</ref>
      <ref url="http://securitytracker.com/id?1023515" source="SECTRACK">1023515</ref>
      <ref url="http://secunia.com/advisories/38374" source="SECUNIA" adv="1">38374</ref>
      <ref url="http://secunia.com/advisories/38367" source="SECUNIA" adv="1">38367</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126468618017829&amp;w=2" source="MLIST">[oss-security] 20100128 Re: CVE id request: maildrop</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126468551017070&amp;w=2" source="MLIST">[oss-security] 20100128 Re: CVE id request: maildrop</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126468324913920&amp;w=2" source="MLIST">[oss-security] 20100128 Re: CVE id request: maildrop</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126462927918840&amp;w=2" source="MLIST">[oss-security] 20100127 CVE id request: maildrop</ref>
      <ref url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=564601" source="CONFIRM">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=564601</ref>
    </refs>
    <vuln_soft>
      <prod vendor="maildrop" name="maildrop">
        <vers num="0.50"/>
        <vers num="0.51"/>
        <vers num="0.51b"/>
        <vers num="0.51c"/>
        <vers num="0.54"/>
        <vers num="0.54a"/>
        <vers num="0.54b"/>
        <vers num="0.55"/>
        <vers num="0.55a"/>
        <vers num="0.55b"/>
        <vers num="0.55c"/>
        <vers num="0.60"/>
        <vers num="0.61"/>
        <vers num="0.62"/>
        <vers num="0.63"/>
        <vers num="0.64"/>
        <vers num="0.65"/>
        <vers num="0.70"/>
        <vers num="0.71"/>
        <vers num="0.72"/>
        <vers num="0.73"/>
        <vers num="0.74"/>
        <vers num="0.75"/>
        <vers num="0.76"/>
        <vers num="0.99.1"/>
        <vers num="0.99.2"/>
        <vers num="1.0"/>
        <vers num="1.1"/>
        <vers num="1.2"/>
        <vers num="1.2.1"/>
        <vers num="1.2.2"/>
        <vers num="1.3.0"/>
        <vers num="1.3.1"/>
        <vers num="1.3.3"/>
        <vers num="1.3.4"/>
        <vers num="1.3.5"/>
        <vers num="1.3.6"/>
        <vers num="1.3.7"/>
        <vers num="1.3.8"/>
        <vers num="1.3.9"/>
        <vers num="1.4.0"/>
        <vers num="1.5.0"/>
        <vers num="1.5.1"/>
        <vers num="1.5.2"/>
        <vers num="1.6.2"/>
        <vers num="1.6.3"/>
        <vers num="1.7.0"/>
        <vers num="1.8.1"/>
        <vers num="2.0.0"/>
        <vers num="2.0.1"/>
        <vers num="2.0.2"/>
        <vers num="2.0.3"/>
        <vers num="2.0.4"/>
        <vers num="2.1"/>
        <vers num="2.2"/>
        <vers prev="1" num="2.3.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0302" published="2010-03-05" name="CVE-2010-0302" modified="2013-05-14" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epoll is used, allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-3553.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0129.html" source="REDHAT">RHSA-2010:0129</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=557775" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=557775</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/1481" source="VUPEN">ADV-2010-1481</ref>
      <ref url="http://www.ubuntu.com/usn/USN-906-1" source="UBUNTU">USN-906-1</ref>
      <ref url="http://www.securitytracker.com/id?1024124" source="SECTRACK">1024124</ref>
      <ref url="http://www.securityfocus.com/bid/38510" source="BID">38510</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:073" source="MANDRIVA">MDVSA-2010:073</ref>
      <ref url="http://support.apple.com/kb/HT4188" source="CONFIRM">http://support.apple.com/kb/HT4188</ref>
      <ref url="http://security.gentoo.org/glsa/glsa-201207-10.xml" source="GENTOO">GLSA-201207-10</ref>
      <ref url="http://secunia.com/advisories/40220" source="SECUNIA">40220</ref>
      <ref url="http://secunia.com/advisories/38979" source="SECUNIA">38979</ref>
      <ref url="http://secunia.com/advisories/38927" source="SECUNIA">38927</ref>
      <ref url="http://secunia.com/advisories/38785" source="SECUNIA">38785</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11216" source="OVAL">oval:org.mitre.oval:def:11216</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/037174.html" source="FEDORA">FEDORA-2010-2743</ref>
      <ref url="http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html" source="APPLE">APPLE-SA-2010-06-15-1</ref>
      <ref url="http://cups.org/str.php?L3490" source="CONFIRM">http://cups.org/str.php?L3490</ref>
      <ref url="http://cups.org/articles.php?L596" source="CONFIRM">http://cups.org/articles.php?L596</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="cups">
        <vers num="1.3.10"/>
        <vers num="1.3.7"/>
        <vers num="1.3.9"/>
        <vers num="1.4.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0303" published="2010-02-04" name="CVE-2010-0303" modified="2010-02-05" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">mystring.c in hybserv in IRCD-Hybrid (aka Hybrid2 IRC Services) 1.9.2 through 1.9.4 allows remote attackers to cause a denial of service (daemon crash) via a ":help \t" private message to the MemoServ service.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://security.debian.org/pool/updates/main/h/hybserv/hybserv_1.9.2-4+lenny2.diff.gz" source="CONFIRM" patch="1">http://security.debian.org/pool/updates/main/h/hybserv/hybserv_1.9.2-4+lenny2.diff.gz</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55992" source="XF">hybserv2-privatemessage-dos(55992)</ref>
      <ref url="http://www.securityfocus.com/bid/38006" source="BID">38006</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1982" source="DEBIAN">DSA-1982</ref>
      <ref url="http://secunia.com/advisories/38352" source="SECUNIA" adv="1">38352</ref>
      <ref url="http://secunia.com/advisories/38350" source="SECUNIA" adv="1">38350</ref>
      <ref url="http://marc.info/?l=oss-security&amp;m=126476591925300&amp;w=2" source="MLIST">[oss-security] 20100129 Re: CVE id: hybserv</ref>
      <ref url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=550389" source="CONFIRM">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=550389</ref>
    </refs>
    <vuln_soft>
      <prod vendor="dinko_korunic" name="hybserv2">
        <vers num="1.9.2"/>
        <vers num="1.9.3"/>
        <vers num="1.9.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0304" published="2010-02-03" name="CVE-2010-0304" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stack-based buffer overflow to the dissect_getaddrsbyname_request function.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0239" source="VUPEN" patch="1" adv="1">ADV-2010-0239</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55951" source="XF">wireshark-lwres-bo(55951)</ref>
      <ref url="http://www.wireshark.org/security/wnpa-sec-2010-02.html" source="CONFIRM" adv="1">http://www.wireshark.org/security/wnpa-sec-2010-02.html</ref>
      <ref url="http://www.wireshark.org/security/wnpa-sec-2010-01.html" source="CONFIRM">http://www.wireshark.org/security/wnpa-sec-2010-01.html</ref>
      <ref url="http://www.securitytracker.com/id?1023516" source="SECTRACK">1023516</ref>
      <ref url="http://www.securityfocus.com/bid/37985" source="BID">37985</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/29/4" source="MLIST">[oss-security] 20100129 Re: CVE id request: Wireshark</ref>
      <ref url="http://www.metasploit.com/modules/exploit/multi/misc/wireshark_lwres_getaddrbyname" source="MISC">http://www.metasploit.com/modules/exploit/multi/misc/wireshark_lwres_getaddrbyname</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:031" source="MANDRIVA">MDVSA-2010:031</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1983" source="DEBIAN">DSA-1983</ref>
      <ref url="http://secunia.com/advisories/38829" source="SECUNIA">38829</ref>
      <ref url="http://secunia.com/advisories/38348" source="SECUNIA" adv="1">38348</ref>
      <ref url="http://secunia.com/advisories/38257" source="SECUNIA" adv="1">38257</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9933" source="OVAL">oval:org.mitre.oval:def:9933</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8490" source="OVAL">oval:org.mitre.oval:def:8490</ref>
      <ref url="http://osvdb.org/61987" source="OSVDB">61987</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-March/036415.html" source="FEDORA">FEDORA-2010-3556</ref>
      <ref url="http://anonsvn.wireshark.org/viewvc/trunk-1.2/epan/dissectors/packet-lwres.c?view=diff&amp;r1=31596&amp;r2=28492&amp;diff_format=h" source="MISC">http://anonsvn.wireshark.org/viewvc/trunk-1.2/epan/dissectors/packet-lwres.c?view=diff&amp;r1=31596&amp;r2=28492&amp;diff_format=h</ref>
    </refs>
    <vuln_soft>
      <prod vendor="wireshark" name="wireshark">
        <vers num="0.9.15"/>
        <vers num="1.0"/>
        <vers num="1.0.0"/>
        <vers num="1.0.1"/>
        <vers num="1.0.10"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.2"/>
        <vers num="1.2.0"/>
        <vers num="1.2.1"/>
        <vers num="1.2.2"/>
        <vers num="1.2.3"/>
        <vers num="1.2.4"/>
        <vers num="1.2.5"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0305" published="2010-02-03" name="CVE-2010-0305" modified="2010-05-20" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">ejabberd_c2s.erl in ejabberd before 2.1.3 allows remote attackers to cause a denial of service (daemon crash) via a large number of c2s (aka client2server) messages that trigger a queue overload.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/29/5" source="MLIST" patch="1">[oss-security] 20100129 Re: CVE Request -- ejabberd</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/01/29/1" source="MLIST" patch="1">[oss-security] 20100129 CVE Request -- ejabberd</ref>
      <ref url="https://support.process-one.net/browse/EJAB-1173" source="CONFIRM">https://support.process-one.net/browse/EJAB-1173</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56025" source="XF">ejabberd-client2server-dos(56025)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0894" source="VUPEN">ADV-2010-0894</ref>
      <ref url="http://www.securityfocus.com/bid/38003" source="BID">38003</ref>
      <ref url="http://www.osvdb.org/62066" source="OSVDB">62066</ref>
      <ref url="http://www.debian.org/security/2010/dsa-2033" source="DEBIAN">DSA-2033</ref>
      <ref url="http://secunia.com/advisories/39423" source="SECUNIA">39423</ref>
      <ref url="http://secunia.com/advisories/38337" source="SECUNIA" adv="1">38337</ref>
    </refs>
    <vuln_soft>
      <prod vendor="process-one" name="ejabberd">
        <vers num="0.9"/>
        <vers num="0.9.1"/>
        <vers num="0.9.8"/>
        <vers num="1.0.0"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers num="1.1.1.0"/>
        <vers num="1.1.1.1"/>
        <vers num="1.1.14"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="2.0.0" edition="beta1"/>
        <vers num="2.0.0" edition="rc1"/>
        <vers num="2.0.1_2"/>
        <vers num="2.0.2"/>
        <vers num="2.0.3"/>
        <vers num="2.0.4"/>
        <vers num="2.0.5"/>
        <vers num="2.1.0"/>
        <vers num="2.1.1"/>
        <vers prev="1" num="2.1.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0306" published="2010-02-12" name="CVE-2010-0306" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:S/C:P/I:P/A:P)" CVSS_score="4.1" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="2.7" CVSS_base_score="4.1">
    <desc>
      <descript source="cve">The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not use the Current Privilege Level (CPL) and I/O Privilege Level (IOPL) to restrict instruction execution, which allows guest OS users to cause a denial of service (guest OS crash) or gain privileges on the guest OS by leveraging access to a (1) IO port or (2) MMIO region, and replacing an instruction in between emulator entry and instruction fetch, a related issue to CVE-2010-0298.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
      <user_init/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0095.html" source="REDHAT">RHSA-2010:0095</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0088.html" source="REDHAT">RHSA-2010:0088</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=560654" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=560654</ref>
      <ref url="http://www.securityfocus.com/bid/38158" source="BID">38158</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://secunia.com/advisories/38499" source="SECUNIA" adv="1">38499</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA" adv="1">38492</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10953" source="OVAL">oval:org.mitre.oval:def:10953</ref>
    </refs>
    <vuln_soft>
      <prod vendor="kvm_qumranet" name="kvm">
        <vers num="83"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0307" published="2010-02-17" name="CVE-2010-0307" modified="2012-03-19" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:N/A:C)" CVSS_score="4.7" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="3.4" CVSS_base_score="4.7">
    <desc>
      <descript source="cve">The load_elf_binary function in fs/binfmt_elf.c in the Linux kernel before 2.6.32.8 on the x86_64 platform does not ensure that the ELF interpreter is available before a call to the SET_PERSONALITY macro, which allows local users to cause a denial of service (system crash) via a 32-bit application that attempts to execute a 64-bit application and then triggers a segmentation fault, as demonstrated by amd64_killer, related to the flush_old_exec function.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0146.html" source="REDHAT">RHSA-2010:0146</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=560547" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=560547</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0638" source="VUPEN">ADV-2010-0638</ref>
      <ref url="http://www.vmware.com/security/advisories/VMSA-2011-0003.html" source="CONFIRM">http://www.vmware.com/security/advisories/VMSA-2011-0003.html</ref>
      <ref url="http://www.ubuntu.com/usn/USN-914-1" source="UBUNTU">USN-914-1</ref>
      <ref url="http://www.securityfocus.com/bid/38027" source="BID">38027</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/516397/100/0/threaded" source="BUGTRAQ">20110211 VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0771.html" source="REDHAT">RHSA-2010:0771</ref>
      <ref url="http://www.redhat.com/support/errata/RHSA-2010-0398.html" source="REDHAT">RHSA-2010:0398</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/04/9" source="MLIST">[oss-security] 20100204 Re: CVE request - kernel: DoS on x86_64</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/04/1" source="MLIST">[oss-security] 20100203 Re: CVE request - kernel: DoS on x86_64</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/01/5" source="MLIST">[oss-security] 20100201 Re: CVE request - kernel: DoS on x86_64</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/01/1" source="MLIST">[oss-security] 20100201 CVE request - kernel: DoS on x86_64</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:066" source="MANDRIVA">MDVSA-2010:066</ref>
      <ref url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.8" source="CONFIRM">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.8</ref>
      <ref url="http://www.globalsecuritymag.com/Vigil-nce-Linux-kernel-denial-of,20100202,15754.html" source="MISC">http://www.globalsecuritymag.com/Vigil-nce-Linux-kernel-denial-of,20100202,15754.html</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://support.avaya.com/css/P8/documents/100088287" source="CONFIRM">http://support.avaya.com/css/P8/documents/100088287</ref>
      <ref url="http://secunia.com/advisories/43315" source="SECUNIA">43315</ref>
      <ref url="http://secunia.com/advisories/39649" source="SECUNIA">39649</ref>
      <ref url="http://secunia.com/advisories/38922" source="SECUNIA">38922</ref>
      <ref url="http://secunia.com/advisories/38779" source="SECUNIA">38779</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA">38492</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10870" source="OVAL">oval:org.mitre.oval:def:10870</ref>
      <ref url="http://marc.info/?t=126466700200002&amp;r=1&amp;w=2" source="CONFIRM">http://marc.info/?t=126466700200002&amp;r=1&amp;w=2</ref>
      <ref url="http://marc.info/?l=linux-mm&amp;m=126466407724382&amp;w=2" source="MLIST">[linux-mm] 20100128 DoS on x86_64</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00000.html" source="SUSE">SUSE-SA:2010:014</ref>
      <ref url="http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035159.html" source="FEDORA">FEDORA-2010-1787</ref>
      <ref url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=221af7f87b97431e3ee21ce4b0e77d5411cf1549" source="CONFIRM">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=221af7f87b97431e3ee21ce4b0e77d5411cf1549</ref>
    </refs>
    <vuln_soft>
      <prod vendor="intel" name="e1000">
        <vers num="5.2.22"/>
        <vers num="5.2.30.1"/>
        <vers num="5.2.52"/>
        <vers num="5.3.19"/>
        <vers num="5.4.11"/>
        <vers num="5.5.4"/>
        <vers num="5.6.10"/>
        <vers num="5.6.10.1"/>
        <vers num="5.7.6"/>
        <vers num="6.0.54"/>
        <vers num="6.0.60"/>
        <vers num="6.1.16"/>
        <vers num="6.2.15"/>
        <vers num="6.3.9"/>
        <vers num="7.0.33"/>
        <vers num="7.0.41"/>
        <vers num="7.1.9"/>
        <vers num="7.2.7"/>
        <vers num="7.2.9"/>
        <vers num="7.3.15"/>
        <vers num="7.3.20"/>
        <vers num="7.4.27"/>
        <vers prev="1" num="7.4.35"/>
      </prod>
      <prod vendor="linux" name="kernel">
        <vers num="2.6.24.7"/>
        <vers num="2.6.25.15"/>
      </prod>
      <prod vendor="linux" name="linux_kernel">
        <vers num="2.2.27"/>
        <vers num="2.4.36"/>
        <vers num="2.4.36.1"/>
        <vers num="2.4.36.2"/>
        <vers num="2.4.36.3"/>
        <vers num="2.4.36.4"/>
        <vers num="2.4.36.5"/>
        <vers num="2.4.36.6"/>
        <vers num="2.6"/>
        <vers num="2.6.18" edition="rc1"/>
        <vers num="2.6.18" edition="rc2"/>
        <vers num="2.6.18" edition="rc3"/>
        <vers num="2.6.18" edition="rc4"/>
        <vers num="2.6.18" edition="rc5"/>
        <vers num="2.6.18" edition="rc6"/>
        <vers num="2.6.18" edition="rc7"/>
        <vers num="2.6.19.4"/>
        <vers num="2.6.19.5"/>
        <vers num="2.6.19.6"/>
        <vers num="2.6.19.7"/>
        <vers num="2.6.20.16"/>
        <vers num="2.6.20.17"/>
        <vers num="2.6.20.18"/>
        <vers num="2.6.20.19"/>
        <vers num="2.6.20.20"/>
        <vers num="2.6.20.21"/>
        <vers num="2.6.21.5"/>
        <vers num="2.6.21.6"/>
        <vers num="2.6.21.7"/>
        <vers num="2.6.22"/>
        <vers num="2.6.22.1"/>
        <vers num="2.6.22.10"/>
        <vers num="2.6.22.11"/>
        <vers num="2.6.22.12"/>
        <vers num="2.6.22.13"/>
        <vers num="2.6.22.14"/>
        <vers num="2.6.22.15"/>
        <vers num="2.6.22.17"/>
        <vers num="2.6.22.18"/>
        <vers num="2.6.22.19"/>
        <vers num="2.6.22.2"/>
        <vers num="2.6.22.20"/>
        <vers num="2.6.22.21"/>
        <vers num="2.6.22.22"/>
        <vers num="2.6.22.8"/>
        <vers num="2.6.22.9"/>
        <vers num="2.6.22_rc1"/>
        <vers num="2.6.22_rc7"/>
        <vers num="2.6.23"/>
        <vers num="2.6.23.10"/>
        <vers num="2.6.23.11"/>
        <vers num="2.6.23.12"/>
        <vers num="2.6.23.13"/>
        <vers num="2.6.23.15"/>
        <vers num="2.6.23.16"/>
        <vers num="2.6.23.17"/>
        <vers num="2.6.23.8"/>
        <vers num="2.6.23.9"/>
        <vers num="2.6.23_rc1"/>
        <vers num="2.6.24"/>
        <vers num="2.6.24.1"/>
        <vers num="2.6.24.2"/>
        <vers num="2.6.24.3"/>
        <vers num="2.6.24.4"/>
        <vers num="2.6.24.5"/>
        <vers num="2.6.24.6"/>
        <vers num="2.6.24_rc1"/>
        <vers num="2.6.24_rc4"/>
        <vers num="2.6.24_rc5"/>
        <vers num="2.6.25" edition=""/>
        <vers num="2.6.25" edition=":x86_64"/>
        <vers num="2.6.25.1" edition=""/>
        <vers num="2.6.25.1" edition=":x86_64"/>
        <vers num="2.6.25.10" edition=""/>
        <vers num="2.6.25.10" edition=":x86_64"/>
        <vers num="2.6.25.11" edition=""/>
        <vers num="2.6.25.11" edition=":x86_64"/>
        <vers num="2.6.25.12" edition=""/>
        <vers num="2.6.25.12" edition=":x86_64"/>
        <vers num="2.6.25.13"/>
        <vers num="2.6.25.14"/>
        <vers num="2.6.25.16"/>
        <vers num="2.6.25.17"/>
        <vers num="2.6.25.2" edition=""/>
        <vers num="2.6.25.2" edition=":x86_64"/>
        <vers num="2.6.25.3" edition=""/>
        <vers num="2.6.25.3" edition=":x86_64"/>
        <vers num="2.6.25.4" edition=""/>
        <vers num="2.6.25.4" edition=":x86_64"/>
        <vers num="2.6.25.5" edition=""/>
        <vers num="2.6.25.5" edition=":x86_64"/>
        <vers num="2.6.25.6" edition=""/>
        <vers num="2.6.25.6" edition=":x86_64"/>
        <vers num="2.6.25.7" edition=""/>
        <vers num="2.6.25.7" edition=":x86_64"/>
        <vers num="2.6.25.8" edition=""/>
        <vers num="2.6.25.8" edition=":x86_64"/>
        <vers num="2.6.25.9" edition=""/>
        <vers num="2.6.25.9" edition=":x86_64"/>
        <vers num="2.6.26"/>
        <vers num="2.6.26.1"/>
        <vers num="2.6.26.2"/>
        <vers num="2.6.26.3"/>
        <vers num="2.6.26.4"/>
        <vers num="2.6.26.5"/>
        <vers num="2.6.27"/>
        <vers prev="1" num="2.6.28"/>
        <vers num="2.6.29" edition="git1"/>
        <vers num="2.6.29" edition="rc1"/>
        <vers num="2.6.29" edition="rc2"/>
        <vers num="2.6.29" edition="rc2_git7"/>
        <vers num="2.6.29" edition="rc8-kk"/>
        <vers num="2.6.29.3"/>
        <vers num="2.6.29.rc1"/>
        <vers num="2.6.29.rc2-git1"/>
        <vers prev="1" num="2.6.30" edition="rc1"/>
        <vers prev="1" num="2.6.30" edition="rc2"/>
        <vers prev="1" num="2.6.30" edition="rc3"/>
        <vers prev="1" num="2.6.30" edition="rc7-git6"/>
        <vers num="2.6.32" edition="git-6"/>
        <vers num="2.6.32" edition="rc1"/>
        <vers num="2.6.32" edition="rc3"/>
        <vers num="2.6.32" edition="rc4"/>
        <vers num="2.6.32" edition="rc5"/>
        <vers num="2.6.32" edition="rc6"/>
        <vers num="2.6.32" edition="rc7"/>
        <vers num="2.6.32" edition="rc8"/>
        <vers num="2.6.32.1"/>
        <vers num="2.6.32.2"/>
        <vers num="2.6.32.3"/>
        <vers num="2.6.32.4"/>
        <vers num="2.6.32.5"/>
        <vers num="2.6.32.6"/>
        <vers prev="1" num="2.6.32.7"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0308" published="2010-02-03" name="CVE-2010-0308" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:N/I:N/A:P)" CVSS_score="4.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.0" CVSS_base_score="4.0">
    <desc>
      <descript source="cve">lib/rfc1035.c in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15 allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.squid-cache.org/Versions/v3/3.0/changesets/squid-3.0-9163.patch" source="MISC" patch="1">http://www.squid-cache.org/Versions/v3/3.0/changesets/squid-3.0-9163.patch</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56001" source="XF">squid-dns-dos(56001)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0260" source="VUPEN" adv="1">ADV-2010-0260</ref>
      <ref url="http://www.squid-cache.org/Versions/v3/3.1/changesets/squid-3.1-9853.patch" source="MISC">http://www.squid-cache.org/Versions/v3/3.1/changesets/squid-3.1-9853.patch</ref>
      <ref url="http://www.squid-cache.org/Versions/v2/HEAD/changesets/12597.patch" source="MISC">http://www.squid-cache.org/Versions/v2/HEAD/changesets/12597.patch</ref>
      <ref url="http://www.squid-cache.org/Advisories/SQUID-2010_1.txt" source="CONFIRM" adv="1">http://www.squid-cache.org/Advisories/SQUID-2010_1.txt</ref>
      <ref url="http://www.securitytracker.com/id?1023520" source="SECTRACK">1023520</ref>
      <ref url="http://www.securityfocus.com/bid/37522" source="BID">37522</ref>
      <ref url="http://secunia.com/advisories/38455" source="SECUNIA" adv="1">38455</ref>
      <ref url="http://secunia.com/advisories/38451" source="SECUNIA" adv="1">38451</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11270" source="OVAL">oval:org.mitre.oval:def:11270</ref>
      <ref url="http://osvdb.org/62044" source="OSVDB">62044</ref>
      <ref url="http://events.ccc.de/congress/2009/Fahrplan/attachments/1483_26c3_ipv4_fuckups.pdf" source="MISC">http://events.ccc.de/congress/2009/Fahrplan/attachments/1483_26c3_ipv4_fuckups.pdf</ref>
    </refs>
    <vuln_soft>
      <prod vendor="squid-cache" name="squid">
        <vers num="2.0"/>
        <vers num="2.1"/>
        <vers num="2.2"/>
        <vers num="2.3"/>
        <vers num="2.4"/>
        <vers num="2.5"/>
        <vers num="2.6"/>
        <vers num="2.7"/>
        <vers num="3.0"/>
        <vers num="3.0.stable1"/>
        <vers num="3.0.stable11"/>
        <vers num="3.0.stable12"/>
        <vers num="3.0.stable13"/>
        <vers num="3.0.stable14"/>
        <vers num="3.0.stable15"/>
        <vers num="3.0.stable16"/>
        <vers num="3.0.stable17"/>
        <vers num="3.0.stable18"/>
        <vers num="3.0.stable19"/>
        <vers num="3.0.stable2"/>
        <vers num="3.0.stable20"/>
        <vers num="3.0.stable21"/>
        <vers num="3.0.stable22"/>
        <vers num="3.0.stable3"/>
        <vers num="3.0.stable4"/>
        <vers num="3.0.stable5"/>
        <vers num="3.0.stable6"/>
        <vers num="3.0.stable7"/>
        <vers num="3.0.stable8"/>
        <vers num="3.0.stable9"/>
        <vers num="3.1"/>
        <vers num="3.1.0.1"/>
        <vers num="3.1.0.10"/>
        <vers num="3.1.0.11"/>
        <vers num="3.1.0.12"/>
        <vers num="3.1.0.13"/>
        <vers num="3.1.0.14"/>
        <vers num="3.1.0.15"/>
        <vers num="3.1.0.2"/>
        <vers num="3.1.0.3"/>
        <vers num="3.1.0.4"/>
        <vers num="3.1.0.5"/>
        <vers num="3.1.0.6"/>
        <vers num="3.1.0.7"/>
        <vers num="3.1.0.8"/>
        <vers num="3.1.0.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0309" published="2010-02-12" name="CVE-2010-0309" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:S/C:N/I:N/A:C)" CVSS_score="6.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="8.0" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">The pit_ioport_read function in the Programmable Interval Timer (PIT) emulation in i8254.c in KVM 83 does not properly use the pit_state data structure, which allows guest OS users to cause a denial of service (host OS crash or hang) by attempting to read the /dev/port file.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0095.html" source="REDHAT" patch="1" adv="1">RHSA-2010:0095</ref>
      <ref url="https://rhn.redhat.com/errata/RHSA-2010-0088.html" source="REDHAT" adv="1">RHSA-2010:0088</ref>
      <ref url="https://bugzilla.redhat.com/show_bug.cgi?id=560887" source="CONFIRM">https://bugzilla.redhat.com/show_bug.cgi?id=560887</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0638" source="VUPEN">ADV-2010-0638</ref>
      <ref url="http://www.ubuntu.com/usn/USN-914-1" source="UBUNTU">USN-914-1</ref>
      <ref url="http://www.securityfocus.com/bid/38158" source="BID">38158</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/02/4" source="MLIST">[oss-security] 20100202 Re: CVE request - kvm: cat /dev/port in the guest can cause host DoS</ref>
      <ref url="http://www.openwall.com/lists/oss-security/2010/02/02/1" source="MLIST">[oss-security] 20100202 CVE request - kvm: cat /dev/port in the guest can cause host DoS</ref>
      <ref url="http://www.mail-archive.com/kvm@vger.kernel.org/msg28002.html" source="MLIST">[kvm] 20100129 KVM: PIT: control word is write-only</ref>
      <ref url="http://www.debian.org/security/2010/dsa-1996" source="DEBIAN">DSA-1996</ref>
      <ref url="http://secunia.com/advisories/38922" source="SECUNIA">38922</ref>
      <ref url="http://secunia.com/advisories/38492" source="SECUNIA">38492</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11095" source="OVAL">oval:org.mitre.oval:def:11095</ref>
    </refs>
    <vuln_soft>
      <prod vendor="linux" name="kernel">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0310" published="2010-01-14" name="CVE-2010-0310" modified="2010-08-21" CVSS_version="2.0" CVSS_vector="(AV:L/AC:L/Au:S/C:C/I:C/A:C)" CVSS_score="6.8" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.1" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Trusted Extensions in Sun Solaris 10 allows local users to gain privileges via vectors related to omission of unspecified libraries from software updates.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-143502-01-1" source="CONFIRM" patch="1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-143502-01-1</ref>
      <ref url="http://www.securityfocus.com/bid/37754" source="BID">37754</ref>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-275410-1" source="SUNALERT" adv="1">275410</ref>
      <ref url="http://securitytracker.com/id?1023448" source="SECTRACK">1023448</ref>
      <ref url="http://secunia.com/advisories/38129" source="SECUNIA" adv="1">38129</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8444" source="OVAL">oval:org.mitre.oval:def:8444</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="solaris">
        <vers num="10.0" edition=""/>
        <vers num="10.0" edition=":sparc"/>
        <vers num="10.0" edition=":x86"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0311" published="2010-01-14" name="CVE-2010-0311" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_score="6.8" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="8.6" CVSS_base_score="6.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in Sun Java System Identity Manager (aka IdM) 8.1.0.5 and 8.1.0.6, when Sun Java System Access Manager, OpenSSO Enterprise 8.0, or IBM Tivoli Access Manager is used, allows remote attackers to obtain administrative access via unknown vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55572" source="XF">jsim-unspecified-security-bypass(55572)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0108" source="VUPEN" adv="1">ADV-2010-0108</ref>
      <ref url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-275010-1" source="SUNALERT" adv="1">275010</ref>
      <ref url="http://securitytracker.com/id?1023447" source="SECTRACK">1023447</ref>
      <ref url="http://secunia.com/advisories/38130" source="SECUNIA" adv="1">38130</ref>
      <ref url="http://osvdb.org/61658" source="OSVDB">61658</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="java_system_identity_server">
        <vers num="8.1.0.5"/>
        <vers num="8.1.0.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0312" published="2010-01-14" name="CVE-2010-0312" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The do_extendedOp function in ibmslapd in IBM Tivoli Directory Server (TDS) 6.2 on Linux allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted SecureWay 3.2 Event Registration Request (aka a 1.3.18.0.2.12.1 request).</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://securitytracker.com/id?1023433" source="SECTRACK">1023433</ref>
      <ref url="http://intevydis.blogspot.com/2010/01/tivoli-directory-server-62-doextendedop.html" source="MISC">http://intevydis.blogspot.com/2010/01/tivoli-directory-server-62-doextendedop.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="ibm" name="tivoli_directory_server">
        <vers num="6.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0313" published="2010-01-14" name="CVE-2010-0313" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">The core_get_proxyauth_dn function in ns-slapd in Sun Java System Directory Server Enterprise Edition 7.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted LDAP Search Request message.</descript>
      <descript source="nvd">Per: http://cwe.mitre.org/data/definitions/476.html

'CWE-476: NULL Pointer Dereference'</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55511" source="XF">jsds-coregetproxyauthdn-dos(55511)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0085" source="VUPEN" adv="1">ADV-2010-0085</ref>
      <ref url="http://www.securityfocus.com/bid/37699" source="BID">37699</ref>
      <ref url="http://securitytracker.com/id?1023431" source="SECTRACK">1023431</ref>
      <ref url="http://secunia.com/advisories/37978" source="SECUNIA" adv="1">37978</ref>
      <ref url="http://intevydis.blogspot.com/2010/01/sun-directory-server-70.html" source="MISC">http://intevydis.blogspot.com/2010/01/sun-directory-server-70.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sun" name="java_system_directory_server">
        <vers num="7.0" edition="-"/>
        <vers num="7.0" edition="-:enterprise"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0314" published="2010-01-14" name="CVE-2010-0314" modified="2011-03-17" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Apple Safari allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2011/0552" source="VUPEN">ADV-2011-0552</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/2722" source="VUPEN">ADV-2010-2722</ref>
      <ref url="http://www.ubuntu.com/usn/USN-1006-1" source="UBUNTU">USN-1006-1</ref>
      <ref url="http://www.mandriva.com/security/advisories?name=MDVSA-2011:039" source="MANDRIVA">MDVSA-2011:039</ref>
      <ref url="http://secunia.com/advisories/41856" source="SECUNIA">41856</ref>
      <ref url="http://nomoreroot.blogspot.com/2010/01/little-bug-in-safari-and-google-chrome.html" source="MISC">http://nomoreroot.blogspot.com/2010/01/little-bug-in-safari-and-google-chrome.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="apple" name="safari">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0315" published="2010-01-14" name="CVE-2010-0315" modified="2012-01-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">WebKit before r53607, as used in Google Chrome before 4.0.249.89, allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading the document.styleSheets[0].href property value, related to an IFRAME element.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="https://bugs.webkit.org/show_bug.cgi?id=33683" source="CONFIRM">https://bugs.webkit.org/show_bug.cgi?id=33683</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/56215" source="XF">googlechrome-iframe-info-disc(56215)</ref>
      <ref url="http://xforce.iss.net/xforce/xfdb/55683" source="XF">google-chrome-href-info-disclosure(55683)</ref>
      <ref url="http://www.vupen.com/english/advisories/2011/0212" source="VUPEN" adv="1">ADV-2011-0212</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0361" source="VUPEN" adv="1">ADV-2010-0361</ref>
      <ref url="http://www.securityfocus.com/bid/38177" source="BID">38177</ref>
      <ref url="http://trac.webkit.org/changeset/53607" source="CONFIRM">http://trac.webkit.org/changeset/53607</ref>
      <ref url="http://sites.google.com/a/chromium.org/dev/Home/chromium-security/chromium-security-bugs" source="CONFIRM">http://sites.google.com/a/chromium.org/dev/Home/chromium-security/chromium-security-bugs</ref>
      <ref url="http://securitytracker.com/id?1023583" source="SECTRACK">1023583</ref>
      <ref url="http://secunia.com/advisories/43068" source="SECUNIA" adv="1">43068</ref>
      <ref url="http://secunia.com/advisories/38545" source="SECUNIA" adv="1">38545</ref>
      <ref url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14452" source="OVAL">oval:org.mitre.oval:def:14452</ref>
      <ref url="http://nomoreroot.blogspot.com/2010/01/little-bug-in-safari-and-google-chrome.html" source="MISC">http://nomoreroot.blogspot.com/2010/01/little-bug-in-safari-and-google-chrome.html</ref>
      <ref url="http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html" source="SUSE">SUSE-SR:2011:002</ref>
      <ref url="http://googlechromereleases.blogspot.com/2010/02/stable-channel-update.html" source="CONFIRM">http://googlechromereleases.blogspot.com/2010/02/stable-channel-update.html</ref>
      <ref url="http://code.google.com/p/chromium/issues/detail?id=32309" source="CONFIRM">http://code.google.com/p/chromium/issues/detail?id=32309</ref>
    </refs>
    <vuln_soft>
      <prod vendor="google" name="chrome">
        <vers num="0.2.149.27"/>
        <vers num="0.2.149.29"/>
        <vers num="0.2.149.30"/>
        <vers num="0.2.152.1"/>
        <vers num="0.2.153.1"/>
        <vers num="0.3.154.0"/>
        <vers num="0.3.154.3"/>
        <vers num="0.4.154.18"/>
        <vers num="0.4.154.22"/>
        <vers num="0.4.154.31"/>
        <vers num="0.4.154.33"/>
        <vers num="1.0.154.36"/>
        <vers num="1.0.154.39"/>
        <vers num="1.0.154.42"/>
        <vers num="1.0.154.43"/>
        <vers num="1.0.154.46"/>
        <vers num="1.0.154.48"/>
        <vers num="1.0.154.52"/>
        <vers num="1.0.154.53"/>
        <vers num="1.0.154.59"/>
        <vers num="1.0.154.65"/>
        <vers num="2.0.156.1"/>
        <vers num="2.0.157.0"/>
        <vers num="2.0.157.2"/>
        <vers num="2.0.158.0"/>
        <vers num="2.0.159.0"/>
        <vers num="2.0.169.0"/>
        <vers num="2.0.169.1"/>
        <vers num="2.0.170.0"/>
        <vers num="2.0.172"/>
        <vers num="2.0.172.2"/>
        <vers num="2.0.172.27"/>
        <vers num="2.0.172.28"/>
        <vers num="2.0.172.30"/>
        <vers num="2.0.172.31"/>
        <vers num="2.0.172.33"/>
        <vers num="2.0.172.37"/>
        <vers num="2.0.172.38"/>
        <vers num="2.0.172.8"/>
        <vers num="3.0.182.2"/>
        <vers num="3.0.190.2"/>
        <vers num="3.0.193.2" edition="beta"/>
        <vers num="3.0.195.21"/>
        <vers num="3.0.195.24"/>
        <vers num="3.0.195.32"/>
        <vers num="3.0.195.33"/>
        <vers prev="1" num="4.0.249.78"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0316" published="2010-01-15" name="CVE-2010-0316" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="9.3" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="8.6" CVSS_base_score="9.3">
    <desc>
      <descript source="cve">Integer overflow in Google SketchUp before 7.1 M2 allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via a crafted SKP file.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.vupen.com/english/advisories/2010/0133" source="VUPEN" adv="1">ADV-2010-0133</ref>
      <ref url="http://sketchup.google.com/support/bin/answer.py?hl=en&amp;answer=141303" source="CONFIRM">http://sketchup.google.com/support/bin/answer.py?hl=en&amp;answer=141303</ref>
      <ref url="http://secunia.com/advisories/38187" source="SECUNIA" adv="1">38187</ref>
    </refs>
    <vuln_soft>
      <prod vendor="google" name="google_sketchup">
        <vers num="7.0"/>
        <vers num="7.0.10247"/>
        <vers num="7.1.4871"/>
        <vers num="7.1.6087"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0317" published="2010-01-15" name="CVE-2010-0317" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Novell Netware 6.5 SP8 allows remote attackers to cause a denial of service (NULL pointer dereference, memory consumption, ABEND, and crash) via a large number of malformed or AFP requests that are not properly handled by (1) the CIFS functionality in CIFS.nlm Semantic Agent (Build 163 MP) 3.27 or (2) the AFP functionality in AFPTCP.nlm Build 163 SP 3.27.  NOTE: some of these details are obtained from third party information.</descript>
    </desc>
    <loss_types>
      <avail/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55389" source="XF">netware-afptcp-dos(55389)</ref>
      <ref url="http://www.vupen.com/english/advisories/2010/0041" source="VUPEN" adv="1">ADV-2010-0041</ref>
      <ref url="http://www.securitytracker.com/id?1023400" source="SECTRACK">1023400</ref>
      <ref url="http://www.securityfocus.com/bid/37616" source="BID">37616</ref>
      <ref url="http://www.securityfocus.com/archive/1/archive/1/508731/100/0/threaded" source="BUGTRAQ">20100105 {PRL} Novell Netware CIFS And AFP Remote Memory Consumption DoS</ref>
      <ref url="http://www.exploit-db.com/exploits/11009" source="EXPLOIT-DB">11009</ref>
      <ref url="http://secunia.com/advisories/38114" source="SECUNIA" adv="1">38114</ref>
      <ref url="http://protekresearch.blogspot.com/2010/01/prl-cifsnlm-memory-consumption-denial.html" source="MISC">http://protekresearch.blogspot.com/2010/01/prl-cifsnlm-memory-consumption-denial.html</ref>
    </refs>
    <vuln_soft>
      <prod vendor="novell" name="netware">
        <vers num="6.5" edition="sp8"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0318" published="2010-01-15" name="CVE-2010-0318" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_score="6.9" CVSS_impact_subscore="10.0" CVSS_exploit_subscore="3.4" CVSS_base_score="6.9">
    <desc>
      <descript source="cve">The replay functionality for ZFS Intent Log (ZIL) in FreeBSD 7.1, 7.2, and 8.0, when creating files during replay of a setattr transaction, uses 7777 permissions instead of the original permissions, which might allow local users to read or modify unauthorized files in opportunistic circumstances after a system crash or power failure.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <local/>
    </range>
    <refs>
      <ref url="http://security.FreeBSD.org/advisories/FreeBSD-SA-10:03.zfs.asc" source="FREEBSD" patch="1" adv="1">FreeBSD-SA-10:03</ref>
      <ref url="http://www.securitytracker.com/id?1023407" source="SECTRACK">1023407</ref>
      <ref url="http://www.securityfocus.com/bid/37657" source="BID">37657</ref>
      <ref url="http://secunia.com/advisories/38124" source="SECUNIA" adv="1">38124</ref>
    </refs>
    <vuln_soft>
      <prod vendor="freebsd" name="freebsd">
        <vers num="7.1"/>
        <vers num="7.2"/>
        <vers num="8.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0319" published="2010-01-15" name="CVE-2010-0319" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in Docmint 1.0 and 2.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.  NOTE: some of these details are obtained from third party information.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55549" source="XF">docmint-index-xss(55549)</ref>
      <ref url="http://www.securityfocus.com/bid/37721" source="BID">37721</ref>
      <ref url="http://www.exploit-db.com/exploits/11119" source="EXPLOIT-DB">11119</ref>
      <ref url="http://secunia.com/advisories/38149" source="SECUNIA" adv="1">38149</ref>
      <ref url="http://packetstormsecurity.org/1001-exploits/docmintcms-xss.txt" source="MISC">http://packetstormsecurity.org/1001-exploits/docmintcms-xss.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="docmint" name="docmint">
        <vers num="1.0"/>
        <vers num="2.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0320" published="2010-01-15" name="CVE-2010-0320" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in submitlink.php in Glitter Central Script allows remote attackers to inject arbitrary web script or HTML via the catid parameter.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55537" source="XF">glittercentral-submitlink-xss(55537)</ref>
      <ref url="http://www.osvdb.org/61632" source="OSVDB">61632</ref>
      <ref url="http://www.exploit-db.com/exploits/11108" source="EXPLOIT-DB">11108</ref>
      <ref url="http://secunia.com/advisories/38146" source="SECUNIA" adv="1">38146</ref>
      <ref url="http://packetstormsecurity.org/1001-exploits/glittercentral-xss.txt" source="MISC">http://packetstormsecurity.org/1001-exploits/glittercentral-xss.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="x10media" name="glitter_central_script">
        <vers num=""/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0321" published="2010-01-15" name="CVE-2010-0321" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in jobs/index.php in Jamit Job Board 3.0 allows remote attackers to inject arbitrary web script or HTML via the post_id parameter.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://xforce.iss.net/xforce/xfdb/55500" source="XF">jamit-jobboard-index-xss(55500)</ref>
      <ref url="http://www.securityfocus.com/bid/37701" source="BID">37701</ref>
      <ref url="http://www.exploit-db.com/exploits/11073" source="EXPLOIT-DB">11073</ref>
      <ref url="http://secunia.com/advisories/32797" source="SECUNIA" adv="1">32797</ref>
      <ref url="http://packetstormsecurity.org/1001-exploits/jamitjobboard-xss.txt" source="MISC">http://packetstormsecurity.org/1001-exploits/jamitjobboard-xss.txt</ref>
    </refs>
    <vuln_soft>
      <prod vendor="jamit" name="jamit_job_board">
        <vers num="3.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0322" published="2010-01-15" name="CVE-2010-0322" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the init function in MK-AnydropdownMenu (mk_anydropdownmenu) extension 0.3.28 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/mk_anydropdownmenu/0.4.0/info/ChangeLog/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/mk_anydropdownmenu/0.4.0/info/ChangeLog/</ref>
      <ref url="http://typo3.org/extensions/repository/view/mk_anydropdownmenu/0.4.0/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/mk_anydropdownmenu/0.4.0/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="matthias_karr" name="mk_anydropdownmenu">
        <vers num="0.3.10"/>
        <vers num="0.3.12"/>
        <vers num="0.3.13"/>
        <vers num="0.3.23"/>
        <vers num="0.3.25"/>
        <vers num="0.3.26"/>
        <vers num="0.3.27"/>
        <vers prev="1" num="0.3.28"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0323" published="2010-01-15" name="CVE-2010-0323" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_score="7.8" CVSS_impact_subscore="6.9" CVSS_exploit_subscore="10.0" CVSS_base_score="7.8">
    <desc>
      <descript source="cve">Unspecified vulnerability in the Photo Book (goof_fotoboek) extension 1.7.14 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/goof_fotoboek/1.7.15/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/goof_fotoboek/1.7.15/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="arco_van_geest" name="goof_fotoboek">
        <vers num="1.2.4"/>
        <vers num="1.4.0"/>
        <vers num="1.4.1"/>
        <vers num="1.5.1"/>
        <vers num="1.6.1"/>
        <vers num="1.6.4"/>
        <vers num="1.7.0"/>
        <vers num="1.7.10"/>
        <vers num="1.7.11"/>
        <vers num="1.7.12"/>
        <vers num="1.7.13"/>
        <vers prev="1" num="1.7.14"/>
        <vers num="1.7.2"/>
        <vers num="1.7.3"/>
        <vers num="1.7.4"/>
        <vers num="1.7.5"/>
        <vers num="1.7.7"/>
        <vers num="1.7.9"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0324" published="2010-01-15" name="CVE-2010-0324" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Customer Reference List (ref_list) extension 1.0.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/ref_list/1.0.2/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/ref_list/1.0.2/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="patrick_bauerochse" name="ref_list">
        <vers prev="1" num="1.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0325" published="2010-01-15" name="CVE-2010-0325" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the SB Folderdownload (sb_folderdownload) extension 0.2.2 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/sb_folderdownload/0.2.3/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/sb_folderdownload/0.2.3/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="sebastian_baumann" name="sb_folderdownload">
        <vers num="0.1.1"/>
        <vers num="0.2.0"/>
        <vers num="0.2.1"/>
        <vers prev="1" num="0.2.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0326" published="2010-01-15" name="CVE-2010-0326" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the Developer log (devlog) extension 2.9.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/devlog/2.9.2/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/devlog/2.9.2/</ref>
      <ref url="http://secunia.com/advisories/38164" source="SECUNIA" adv="1">38164</ref>
    </refs>
    <vuln_soft>
      <prod vendor="francois_suter" name="devlog">
        <vers num="2.0.0"/>
        <vers num="2.1.0"/>
        <vers num="2.2.0"/>
        <vers num="2.3.0"/>
        <vers num="2.3.1"/>
        <vers num="2.3.2"/>
        <vers num="2.3.3"/>
        <vers num="2.4.0"/>
        <vers num="2.5.0"/>
        <vers num="2.6.0"/>
        <vers num="2.7.0"/>
        <vers num="2.8.0"/>
        <vers num="2.9.0"/>
        <vers prev="1" num="2.9.1"/>
      </prod>
      <prod vendor="rene_fritz" name="devlog">
        <vers num="1.1.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0327" published="2010-01-15" name="CVE-2010-0327" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the KJ: Imagelightbox (kj_imagelightbox2) extension 2.0.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2008-2490.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/kj_imagelightbox2/2.0.2/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/kj_imagelightbox2/2.0.2/</ref>
      <ref url="http://secunia.com/advisories/38165" source="SECUNIA" adv="1">38165</ref>
    </refs>
    <vuln_soft>
      <prod vendor="julian_kleinhans" name="kj_imagelightbox2">
        <vers num="1.4.0"/>
        <vers num="1.4.1"/>
        <vers num="1.4.2"/>
        <vers prev="1" num="2.0.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0328" published="2010-01-15" name="CVE-2010-0328" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the Unit Converter (cs2_unitconv) extension 1.0.4 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" patch="1" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/cs2_unitconv/1.0.5/" source="CONFIRM" patch="1">http://typo3.org/extensions/repository/view/cs2_unitconv/1.0.5/</ref>
      <ref url="http://secunia.com/advisories/38166" source="SECUNIA" adv="1">38166</ref>
    </refs>
    <vuln_soft>
      <prod vendor="rastislav_birka" name="cs2_unitconv">
        <vers num="1.0.4"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0329" published="2010-01-15" name="CVE-2010-0329" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the powermail extension 1.5.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to the "SQL selection field" and "typoscript."</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/powermail/1.5.2/info/changelog.txt/" source="CONFIRM">http://typo3.org/extensions/repository/view/powermail/1.5.2/info/changelog.txt/</ref>
      <ref url="http://typo3.org/extensions/repository/view/powermail/1.5.2/" source="CONFIRM">http://typo3.org/extensions/repository/view/powermail/1.5.2/</ref>
      <ref url="http://secunia.com/advisories/38167" source="SECUNIA" adv="1">38167</ref>
    </refs>
    <vuln_soft>
      <prod vendor="alex_kellner" name="powermail">
        <vers num="1.0.1"/>
        <vers num="1.0.10"/>
        <vers num="1.0.11"/>
        <vers num="1.0.12"/>
        <vers num="1.0.2"/>
        <vers num="1.0.3"/>
        <vers num="1.0.4"/>
        <vers num="1.0.5"/>
        <vers num="1.0.6"/>
        <vers num="1.0.7"/>
        <vers num="1.0.8"/>
        <vers num="1.0.9"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers num="1.1.10"/>
        <vers num="1.1.2"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers num="1.1.5"/>
        <vers num="1.1.6"/>
        <vers num="1.1.7"/>
        <vers num="1.1.8"/>
        <vers num="1.1.9"/>
        <vers num="1.2.0"/>
        <vers num="1.2.1"/>
        <vers num="1.2.2"/>
        <vers num="1.2.3"/>
        <vers num="1.2.4"/>
        <vers num="1.3.1"/>
        <vers num="1.3.10"/>
        <vers num="1.3.11"/>
        <vers num="1.3.12"/>
        <vers num="1.3.13"/>
        <vers num="1.3.14"/>
        <vers num="1.3.15"/>
        <vers num="1.3.16"/>
        <vers num="1.3.2"/>
        <vers num="1.3.3"/>
        <vers num="1.3.4"/>
        <vers num="1.3.5"/>
        <vers num="1.3.6"/>
        <vers num="1.3.7"/>
        <vers num="1.3.8"/>
        <vers num="1.3.9"/>
        <vers num="1.4.1"/>
        <vers num="1.4.10"/>
        <vers num="1.4.11"/>
        <vers num="1.4.12"/>
        <vers num="1.4.13"/>
        <vers num="1.4.14"/>
        <vers num="1.4.15"/>
        <vers num="1.4.16"/>
        <vers num="1.4.17"/>
        <vers num="1.4.18"/>
        <vers num="1.4.2"/>
        <vers num="1.4.3"/>
        <vers num="1.4.4"/>
        <vers num="1.4.5"/>
        <vers num="1.4.6"/>
        <vers num="1.4.7"/>
        <vers num="1.4.8"/>
        <vers num="1.4.9"/>
        <vers num="1.5.0"/>
        <vers prev="1" num="1.5.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0330" published="2010-01-15" name="CVE-2010-0330" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Googlemaps for tt_news (jf_easymaps) extension 1.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
      <ref url="http://typo3.org/extensions/repository/view/jf_easymaps/1.0.3/" source="MISC">http://typo3.org/extensions/repository/view/jf_easymaps/1.0.3/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="julian_fries" name="jf_easymaps">
        <vers prev="1" num="1.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0331" published="2010-01-15" name="CVE-2010-0331" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the TV21 Talkshow (tv21_talkshow) extension 1.0.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="stefan_tannhaeuser" name="tv21_talkshow">
        <vers prev="1" num="1.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0332" published="2010-01-15" name="CVE-2010-0332" modified="2011-08-08" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the TV21 Talkshow (tv21_talkshow) extension 1.0.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
      <sec_prot other="1"/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="stefan_tannhaeuser" name="tv21_talkshow">
        <vers prev="1" num="1.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0333" published="2010-01-15" name="CVE-2010-0333" modified="2011-07-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Helpdesk (mg_help) extension 1.1.6 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="matthias_graubner" name="mg_help">
        <vers num="0.1.0"/>
        <vers num="0.2.0"/>
        <vers num="1.0.0"/>
        <vers num="1.0.2"/>
        <vers num="1.1.0"/>
        <vers num="1.1.1"/>
        <vers num="1.1.3"/>
        <vers num="1.1.4"/>
        <vers prev="1" num="1.1.6"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0334" published="2010-01-15" name="CVE-2010-0334" modified="2011-07-25" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Vote rank for news (vote_for_tt_news) extension 1.0.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="francisco_cifuentes" name="vote_for_tt_news">
        <vers num="1.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0335" published="2010-01-15" name="CVE-2010-0335" modified="2011-07-26" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the Vote rank for news (vote_for_tt_news) extension 1.0.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="francisco_cifuentes" name="vote_for_tt_news">
        <vers prev="1" num="1.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0336" published="2010-01-15" name="CVE-2010-0336" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Unspecified vulnerability in the kiddog_mysqldumper (kiddog_mysqldumper) extension 0.0.3 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="kiddog_mysqldumper">
        <vers prev="1" num="0.0.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0337" published="2010-01-15" name="CVE-2010-0337" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the tt_news Mail alert (dl3_tt_news_alerts) extension 0.2.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="dl3_tt_news_alerts">
        <vers prev="1" num="0.2.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0338" published="2010-01-15" name="CVE-2010-0338" modified="2011-02-01" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the TT_Products editor (ttpedit) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="ttpedit">
        <vers num="0.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0339" published="2010-01-15" name="CVE-2010-0339" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the User Links (vm19_userlinks) extension 0.1.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="vm19_userlinks">
        <vers prev="1" num="0.1.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0340" published="2010-01-15" name="CVE-2010-0340" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the MJS Event Pro (mjseventpro) extension 0.2.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="mjseventpro">
        <vers prev="1" num="0.2.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0341" published="2010-01-15" name="CVE-2010-0341" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the BB Simple Jobs (bb_simplejobs) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="bb_simplejobs">
        <vers prev="1" num="0.1.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0342" published="2010-01-15" name="CVE-2010-0342" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Reports for Job (job_reports) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="job_reports">
        <vers prev="1" num="0.1.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0343" published="2010-01-15" name="CVE-2010-0343" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the Clan Users List (pb_clanlist) extension 0.0.1 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="pb_clanlist">
        <vers num="0.0.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0344" published="2010-01-15" name="CVE-2010-0344" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">SQL injection vulnerability in the zak_store_management extension 1.0.0 and earlier TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="zak_store_management">
        <vers prev="1" num="1.0.0"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0345" published="2010-01-15" name="CVE-2010-0345" modified="2010-01-18" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the Majordomo extension 1.1.3 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="majordomo">
        <vers prev="1" num="1.1.3"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0346" published="2010-01-15" name="CVE-2010-0346" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the Tip many friends (mimi_tipfriends) extension 0.0.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="mimi_tipfriends">
        <vers prev="1" num="0.0.2"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0347" published="2010-01-15" name="CVE-2010-0347" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in the VD / Geomap (vd_geomap) extension 0.3.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/" source="CONFIRM" adv="1">http://typo3.org/teams/security/security-bulletins/typo3-sa-2009-021/</ref>
    </refs>
    <vuln_soft>
      <prod vendor="typo3" name="vd_gemomap">
        <vers prev="1" num="0.3.1"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0348" published="2010-01-15" name="CVE-2010-0348" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_score="5.0" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="10.0" CVSS_base_score="5.0">
    <desc>
      <descript source="cve">Directory traversal vulnerability in C3 Corp. WebCalenderC3 0.32 and earlier allows remote attackers to read arbitrary files via unknown vectors.</descript>
    </desc>
    <loss_types>
      <conf/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://webcal.c-3.jp/zeijakusei.html" source="CONFIRM">http://webcal.c-3.jp/zeijakusei.html</ref>
      <ref url="http://secunia.com/advisories/38135" source="SECUNIA" adv="1">38135</ref>
      <ref url="http://osvdb.org/61630" source="OSVDB">61630</ref>
      <ref url="http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000003.html" source="JVNDB">JVNDB-2010-000003</ref>
      <ref url="http://jvn.jp/en/jp/JVN22247093/index.html" source="JVN">JVN#22247093</ref>
    </refs>
    <vuln_soft>
      <prod vendor="c-3.co.jp" name="webcalenderc3">
        <vers num="0.31" edition="s2"/>
        <vers prev="1" num="0.32"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="Medium" seq="2010-0349" published="2010-01-15" name="CVE-2010-0349" modified="2011-04-29" CVSS_version="2.0" CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_score="4.3" CVSS_impact_subscore="2.9" CVSS_exploit_subscore="8.6" CVSS_base_score="4.3">
    <desc>
      <descript source="cve">Cross-site scripting (XSS) vulnerability in C3 Corp. WebCalenderC3 0.32 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  NOTE: this issue could not be reproduced by the vendor, but a patch was provided anyway. The original researcher is reliable.</descript>
    </desc>
    <loss_types>
      <int/>
    </loss_types>
    <range>
      <network/>
      <user_init/>
    </range>
    <refs>
      <ref url="http://www.osvdb.org/61629" source="OSVDB">61629</ref>
      <ref url="http://webcal.c-3.jp/zeijakusei.html" source="MISC" adv="1">http://webcal.c-3.jp/zeijakusei.html</ref>
      <ref url="http://secunia.com/advisories/38135" source="SECUNIA" adv="1">38135</ref>
      <ref url="http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000002.html" source="JVNDB">JVNDB-2010-000002</ref>
      <ref url="http://jvn.jp/en/jp/JVN33977065/index.html" source="JVN">JVN#33977065</ref>
    </refs>
    <vuln_soft>
      <prod vendor="c-3.co.jp" name="webcalenderc3">
        <vers num="0.31" edition="s2"/>
        <vers prev="1" num="0.32"/>
      </prod>
    </vuln_soft>
  </entry>
  <entry type="CVE" severity="High" seq="2010-0350" published="2010-01-15" name="CVE-2010-0350" modified="2011-05-02" CVSS_version="2.0" CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_score="7.5" CVSS_impact_subscore="6.4" CVSS_exploit_subscore="10.0" CVSS_base_score="7.5">
    <desc>
      <descript source="cve">Directory traversal vulnerability in the Photo Book (goof_fotoboek) extension 1.7.14 and earlier for TYPO3 has unknown impact and remote attack vectors.</descript>
    </desc>
    <loss_types>
      <avail/>
      <conf/>
      <int/>
    </loss_types>
    <range>
      <network/>
    </range>
    <refs>
      <ref url="http://typo3.org/