<?xml version='1.0' encoding='UTF-8'?>
<nvd xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://nvd.nist.gov/feeds/cve/1.2" nvd_xml_version="1.2" pub_date="2010-02-09" xsi:schemaLocation="http://nvd.nist.gov/feeds/cve/1.2 http://nvd.nist.gov/schema/nvdcve.xsd">
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0230" seq="2010-0230" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-25">
        <desc>
            <descript source="cve">SUSE Linux Enterprise 10 SP3 (SLE10-SP3) configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00007.html" adv="1">SUSE-SR:2010:001</ref>
        </refs>
        <vuln_soft>
            <prod vendor="suse" name="suse_linux">
                <vers edition="sp3" num="10" />
                <vers edition="sp3:enterprise_desktop" num="10" />
                <vers edition="sp3:enterprise_server" num="10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0027" seq="2010-0027" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-25">
        <desc>
            <descript source="cve">The URL validation functionality in Microsoft Internet Explorer 7 and 8 does not properly process input parameters, which allows remote attackers to execute arbitrary local programs via a crafted URL, aka "URL Validation Vulnerability."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55773">ie-url-code-execution(55773)</ref>
            <ref source="MS" url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" adv="1">MS10-002</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers num="7" />
                <vers num="7.0" />
                <vers edition="unknown" num="7.0.5730" />
                <vers edition="unknown:gold" num="7.0.5730" />
                <vers num="7.0.5730.11" />
                <vers num="7.00.5730.1100" />
                <vers num="7.00.6000.16386" />
                <vers num="7.00.6000.16441" />
                <vers num="8" />
                <vers num="8.0.6001" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2010-0097" seq="2010-0097" severity="Medium" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-02">
        <desc>
            <descript source="cve">ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta does not properly validate DNSSEC (1) NSEC and (2) NSEC3 records, which allows remote attackers to add the Authenticated Data (AD) flag to a forged NXDOMAIN response for an existing domain.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/360341">VU#360341</ref>
            <ref source="CONFIRM" url="https://www.isc.org/advisories/CVE-2010-0097">https://www.isc.org/advisories/CVE-2010-0097</ref>
            <ref source="REDHAT" url="https://rhn.redhat.com/errata/RHSA-2010-0062.html">RHSA-2010:0062</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=554851">https://bugzilla.redhat.com/show_bug.cgi?id=554851</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55753">bind-dnssecnsec-cache-poisoning(55753)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0176" adv="1">ADV-2010-0176</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-888-1">USN-888-1</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37865">37865</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/61853">61853</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:021">MDVSA-2010:021</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023474">1023474</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38240" adv="1">38240</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38219" adv="1">38219</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38169" adv="1">38169</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html">SUSE-SA:2010:008</ref>
            <ref source="FEDORA" url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034202.html">FEDORA-2010-0868</ref>
            <ref source="FEDORA" url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034196.html">FEDORA-2010-0861</ref>
        </refs>
        <vuln_soft>
            <prod vendor="isc" name="bind">
                <vers num="9.0" />
                <vers num="9.0.1" />
                <vers num="9.1" />
                <vers num="9.1.1" />
                <vers num="9.1.2" />
                <vers num="9.1.3" />
                <vers num="9.2" />
                <vers num="9.2.0" />
                <vers num="9.2.1" />
                <vers edition="p3" num="9.2.2" />
                <vers num="9.2.3" />
                <vers num="9.2.4" />
                <vers num="9.2.5" />
                <vers num="9.2.6" />
                <vers num="9.2.7" />
                <vers num="9.2.9" />
                <vers num="9.3" />
                <vers num="9.3.0" />
                <vers num="9.3.1" />
                <vers num="9.3.2" />
                <vers num="9.3.3" />
                <vers num="9.4" />
                <vers edition="rc1" num="9.4.0" />
                <vers num="9.4.0a1" />
                <vers num="9.4.0a2" />
                <vers num="9.4.0a3" />
                <vers num="9.4.0a4" />
                <vers num="9.4.0a5" />
                <vers num="9.4.0a6" />
                <vers num="9.4.0b1" />
                <vers num="9.4.0b2" />
                <vers num="9.4.0b4" />
                <vers num="9.4.1" />
                <vers num="9.4.2" />
                <vers num="9.4.3" />
                <vers num="9.4.3p1" />
                <vers num="9.4.3p2" />
                <vers num="9.4.3p3" />
                <vers num="9.4.3p4" />
                <vers num="9.5" />
                <vers edition="rc1" num="9.5.0" />
                <vers num="9.5.0-p1" />
                <vers num="9.5.0-p2" />
                <vers num="9.5.0a1" />
                <vers num="9.5.0a2" />
                <vers num="9.5.0a3" />
                <vers num="9.5.0a4" />
                <vers num="9.5.0a5" />
                <vers num="9.5.0a6" />
                <vers num="9.5.0b1" />
                <vers num="9.5.0b2" />
                <vers num="9.5.0b3" />
                <vers edition="rc1" num="9.5.1" />
                <vers num="9.5.1b1" />
                <vers num="9.5.1b2" />
                <vers num="9.5.1b3" />
                <vers num="9.5.2" />
                <vers num="9.5.2p1" />
                <vers edition="p1" num="9.6.0" />
                <vers edition="rc2" num="9.6.0" />
                <vers num="9.6.0a1" />
                <vers edition="p1" num="9.6.1" />
                <vers edition="p2" num="9.6.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0244" seq="2010-0244" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-25">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-2530 and CVE-2009-2531.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55774">ie-deleted-obj-code-exec(55774)</ref>
            <ref source="MS" url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" adv="1">MS10-002</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers edition="sp1" num="6" />
                <vers num="6.0" />
                <vers num="6.0.2600" />
                <vers num="6.0.2800" />
                <vers num="6.0.2800.1106" />
                <vers num="6.0.2900" />
                <vers num="6.0.2900.2180" />
                <vers num="6.00.2462.0000" />
                <vers num="6.00.2479.0006" />
                <vers num="6.00.2600.0000" />
                <vers num="6.00.2800.1106" />
                <vers num="6.00.2900.2180" />
                <vers num="6.00.3663.0000" />
                <vers num="6.00.3718.0000" />
                <vers num="6.00.3790.0000" />
                <vers num="6.00.3790.1830" />
                <vers num="6.00.3790.3959" />
                <vers num="7" />
                <vers num="7.0" />
                <vers edition="unknown" num="7.0.5730" />
                <vers edition="unknown:gold" num="7.0.5730" />
                <vers num="7.0.5730.11" />
                <vers num="7.00.5730.1100" />
                <vers num="7.00.6000.16386" />
                <vers num="7.00.6000.16441" />
                <vers num="8" />
                <vers num="8.0.6001" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0245" seq="2010-0245" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-25">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0246.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MS" patch="1" url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" adv="1">MS10-002</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55775">ie-uninitialized-memory-code-exec(55775)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers num="8" />
                <vers num="8.0.6001" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0246" seq="2010-0246" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-25">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0245.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55776">ie-deleted-object-code-exec(55776)</ref>
            <ref source="MS" url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" adv="1">MS10-002</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers num="8" />
                <vers num="8.0.6001" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0247" seq="2010-0247" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-25">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 5.01 SP4, 6, and 6 SP1 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55777">ie-uninitialized-obj-code-exec(55777)</ref>
            <ref source="MS" url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" adv="1">MS10-002</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers edition="sp4" num="5.01" />
                <vers edition="sp1" num="6" />
                <vers num="6.0" />
                <vers num="6.0.2600" />
                <vers num="6.0.2800" />
                <vers num="6.0.2800.1106" />
                <vers num="6.0.2900" />
                <vers num="6.0.2900.2180" />
                <vers num="6.00.2462.0000" />
                <vers num="6.00.2479.0006" />
                <vers num="6.00.2600.0000" />
                <vers num="6.00.2800.1106" />
                <vers num="6.00.2900.2180" />
                <vers num="6.00.3663.0000" />
                <vers num="6.00.3718.0000" />
                <vers num="6.00.3790.0000" />
                <vers num="6.00.3790.1830" />
                <vers num="6.00.3790.3959" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0248" seq="2010-0248" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-25">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML Object Memory Corruption Vulnerability."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MS" patch="1" url="http://www.microsoft.com/technet/security/Bulletin/MS10-002.mspx" adv="1">MS10-002</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55778">ie-object-memory-code-exec(55778)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers edition="sp1" num="6" />
                <vers num="6.0" />
                <vers num="6.0.2600" />
                <vers num="6.0.2800" />
                <vers num="6.0.2800.1106" />
                <vers num="6.0.2900" />
                <vers num="6.0.2900.2180" />
                <vers num="6.00.2462.0000" />
                <vers num="6.00.2479.0006" />
                <vers num="6.00.2600.0000" />
                <vers num="6.00.2800.1106" />
                <vers num="6.00.2900.2180" />
                <vers num="6.00.3663.0000" />
                <vers num="6.00.3718.0000" />
                <vers num="6.00.3790.0000" />
                <vers num="6.00.3790.1830" />
                <vers num="6.00.3790.3959" />
                <vers num="7" />
                <vers num="7.0" />
                <vers edition="unknown" num="7.0.5730" />
                <vers edition="unknown:gold" num="7.0.5730" />
                <vers num="7.0.5730.11" />
                <vers num="7.00.5730.1100" />
                <vers num="7.00.6000.16386" />
                <vers num="7.00.6000.16441" />
                <vers num="8" />
                <vers num="8.0.6001" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:P)" CVSS_base_score="4.0" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="4.9" name="CVE-2010-0290" seq="2010-0290" severity="Medium" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="4.0" modified="2010-02-02">
        <desc>
            <descript source="cve">Unspecified vulnerability in ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta, with DNSSEC validation enabled and checking disabled (CD), allows remote attackers to conduct DNS cache poisoning attacks by receiving a recursive client query and sending a response that contains (1) CNAME or (2) DNAME records, which do not have the intended validation before caching, aka Bug 20737.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-4022.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://www.isc.org/advisories/CVE-2009-4022v6" adv="1">https://www.isc.org/advisories/CVE-2009-4022v6</ref>
            <ref source="REDHAT" url="https://rhn.redhat.com/errata/RHSA-2010-0062.html">RHSA-2010:0062</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=557121">https://bugzilla.redhat.com/show_bug.cgi?id=557121</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=554851">https://bugzilla.redhat.com/show_bug.cgi?id=554851</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0176" adv="1">ADV-2010-0176</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-888-1">USN-888-1</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:021">MDVSA-2010:021</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38240" adv="1">38240</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38219" adv="1">38219</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126399602810086&amp;w=2">[oss-security] 20100120 Re: BIND CVE-2009-4022 fix incomplete</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126393609503704&amp;w=2">[oss-security] 20100119 BIND CVE-2009-4022 fix incomplete</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html">SUSE-SA:2010:008</ref>
        </refs>
        <vuln_soft>
            <prod vendor="isc" name="bind">
                <vers num="9.0" />
                <vers edition="rc1" num="9.0.0" />
                <vers edition="rc2" num="9.0.0" />
                <vers edition="rc3" num="9.0.0" />
                <vers edition="rc4" num="9.0.0" />
                <vers edition="rc5" num="9.0.0" />
                <vers edition="rc6" num="9.0.0" />
                <vers num="9.0.0b1" />
                <vers num="9.0.0b2" />
                <vers num="9.0.0b3" />
                <vers num="9.0.0b4" />
                <vers num="9.0.0b5" />
                <vers edition="rc1" num="9.0.1" />
                <vers edition="rc2" num="9.0.1" />
                <vers num="9.1" />
                <vers edition="rc1" num="9.1.0" />
                <vers num="9.1.0b1" />
                <vers num="9.1.0b2" />
                <vers num="9.1.0b3" />
                <vers edition="rc1" num="9.1.1" />
                <vers edition="rc2" num="9.1.1" />
                <vers edition="rc3" num="9.1.1" />
                <vers edition="rc4" num="9.1.1" />
                <vers edition="rc5" num="9.1.1" />
                <vers edition="rc6" num="9.1.1" />
                <vers edition="rc7" num="9.1.1" />
                <vers edition="rc1" num="9.1.2" />
                <vers edition="rc1" num="9.1.3" />
                <vers edition="rc2" num="9.1.3" />
                <vers edition="rc3" num="9.1.3" />
                <vers num="9.1.3p2" />
                <vers num="9.1.3p3" />
                <vers edition="rc1" num="9.2.0" />
                <vers edition="rc10" num="9.2.0" />
                <vers edition="rc2" num="9.2.0" />
                <vers edition="rc3" num="9.2.0" />
                <vers edition="rc4" num="9.2.0" />
                <vers edition="rc5" num="9.2.0" />
                <vers edition="rc6" num="9.2.0" />
                <vers edition="rc7" num="9.2.0" />
                <vers edition="rc8" num="9.2.0" />
                <vers edition="rc9" num="9.2.0" />
                <vers num="9.2.0a1" />
                <vers num="9.2.0a2" />
                <vers num="9.2.0a3" />
                <vers num="9.2.0b1" />
                <vers num="9.2.0b2" />
                <vers edition="rc1" num="9.2.1" />
                <vers edition="rc2" num="9.2.1" />
                <vers edition="p2" num="9.2.2" />
                <vers edition="p3" num="9.2.2" />
                <vers edition="rc1" num="9.2.2" />
                <vers edition="rc1" num="9.2.3" />
                <vers edition="rc2" num="9.2.3" />
                <vers edition="rc3" num="9.2.3" />
                <vers edition="rc4" num="9.2.3" />
                <vers edition="rc2" num="9.2.4" />
                <vers edition="rc3" num="9.2.4" />
                <vers edition="rc4" num="9.2.4" />
                <vers edition="rc5" num="9.2.4" />
                <vers edition="rc6" num="9.2.4" />
                <vers edition="rc7" num="9.2.4" />
                <vers edition="rc8" num="9.2.4" />
                <vers edition="beta2" num="9.2.5" />
                <vers edition="rc1" num="9.2.5" />
                <vers edition="rc1" num="9.2.6" />
                <vers num="9.2.6b1" />
                <vers num="9.2.6b2" />
                <vers num="9.2.6p1" />
                <vers num="9.2.6p2" />
                <vers edition="rc1" num="9.2.7" />
                <vers edition="rc2" num="9.2.7" />
                <vers edition="rc3" num="9.2.7" />
                <vers num="9.2.7b1" />
                <vers num="9.2.8" />
                <vers num="9.2.8p1" />
                <vers edition="rc1" num="9.2.9" />
                <vers num="9.2.9b1" />
                <vers edition="beta2" num="9.3.0" />
                <vers edition="beta3" num="9.3.0" />
                <vers edition="beta4" num="9.3.0" />
                <vers edition="rc1" num="9.3.0" />
                <vers edition="rc2" num="9.3.0" />
                <vers edition="rc3" num="9.3.0" />
                <vers edition="rc4" num="9.3.0" />
                <vers edition="beta2" num="9.3.1" />
                <vers edition="rc1" num="9.3.1" />
                <vers edition="rc1" num="9.3.2" />
                <vers num="9.3.2b1" />
                <vers num="9.3.2b2" />
                <vers num="9.3.2p1" />
                <vers num="9.3.2p2" />
                <vers edition="rc1" num="9.3.3" />
                <vers edition="rc2" num="9.3.3" />
                <vers edition="rc3" num="9.3.3" />
                <vers num="9.3.3b1" />
                <vers num="9.3.4" />
                <vers num="9.3.4p1" />
                <vers edition="rc1" num="9.3.5" />
                <vers edition="rc2" num="9.3.5" />
                <vers num="9.3.5-p2" />
                <vers num="9.3.5-p2-w1" />
                <vers num="9.3.5-p2-w2" />
                <vers num="9.3.5b1" />
                <vers edition="rc1" num="9.3.6" />
                <vers num="9.3.6b1" />
                <vers num="9.3.6p1" />
                <vers edition="rc1" num="9.4.0" />
                <vers edition="rc2" num="9.4.0" />
                <vers num="9.4.0a5" />
                <vers num="9.4.0a6" />
                <vers num="9.4.0b1" />
                <vers num="9.4.0b2" />
                <vers num="9.4.0b3" />
                <vers num="9.4.0b4" />
                <vers num="9.4.1" />
                <vers num="9.4.1p1" />
                <vers edition="rc1" num="9.4.2" />
                <vers edition="rc2" num="9.4.2" />
                <vers num="9.4.2b1" />
                <vers num="9.4.2p1" />
                <vers num="9.4.2p2" />
                <vers num="9.4.2p2-w1" />
                <vers num="9.4.2p2-w2" />
                <vers num="9.4.3p1" />
                <vers num="9.4.3p2" />
                <vers num="9.4.3p3" />
                <vers num="9.4.3p4" />
                <vers num="9.5" />
                <vers edition="rc1" num="9.5.0" />
                <vers num="9.5.0a5" />
                <vers num="9.5.0a6" />
                <vers num="9.5.0a7" />
                <vers num="9.5.0b1" />
                <vers num="9.5.0b2" />
                <vers num="9.5.0b3" />
                <vers edition="rc1" num="9.5.1" />
                <vers edition="rc2" num="9.5.1" />
                <vers num="9.5.1b1" />
                <vers num="9.5.1b2" />
                <vers num="9.5.1b3" />
                <vers num="9.5.1p1" />
                <vers num="9.5.1p2" />
                <vers num="9.5.1p3" />
                <vers edition="rc1" num="9.5.2" />
                <vers num="9.5.2b1" />
                <vers num="9.5.2p1" />
                <vers edition="p1" num="9.6.0" />
                <vers edition="rc1" num="9.6.0" />
                <vers edition="rc2" num="9.6.0" />
                <vers num="9.6.0a1" />
                <vers num="9.6.0b1" />
                <vers edition="p1" num="9.6.1" />
                <vers edition="p2" num="9.6.1" />
                <vers edition="beta" num="9.7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0380" seq="2010-0380" severity="Medium" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="5.0" modified="2010-01-25">
        <desc>
            <descript source="cve">install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request.  NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11082">http://www.exploit-db.com/exploits/11082</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/phpcalendars-xss.txt">http://packetstormsecurity.org/1001-exploits/phpcalendars-xss.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="jce-tech" name="php_calendars_script">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0381" seq="2010-0381" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-25">
        <desc>
            <descript source="cve">SQL injection vulnerability in modules/arcade/index.php in PHP MySpace Gold Edition 8.0 and 8.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a show_stats action.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38245" adv="1">38245</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpmyspace" name="phpmyspace">
                <vers edition="" num="8.0" />
                <vers edition=":gold" num="8.0" />
                <vers edition="" num="8.10" />
                <vers edition=":gold" num="8.10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="10.0" name="CVE-2010-0382" seq="2010-0382" severity="High" type="CVE" published="2010-01-22" CVSS_version="2.0" CVSS_score="7.6" modified="2010-01-25">
        <desc>
            <descript source="cve">ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta handles out-of-bailiwick data accompanying a secure response without re-fetching from the original source, which allows remote attackers to have an unspecified impact via a crafted response, aka Bug 20819.  NOTE: this vulnerability exists because of a regression during the fix for CVE-2009-4022.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://www.isc.org/advisories/CVE-2009-4022v6" adv="1">https://www.isc.org/advisories/CVE-2009-4022v6</ref>
        </refs>
        <vuln_soft>
            <prod vendor="isc" name="bind">
                <vers num="9.0" />
                <vers edition="rc1" num="9.0.0" />
                <vers edition="rc2" num="9.0.0" />
                <vers edition="rc3" num="9.0.0" />
                <vers edition="rc4" num="9.0.0" />
                <vers edition="rc5" num="9.0.0" />
                <vers edition="rc6" num="9.0.0" />
                <vers num="9.0.0b1" />
                <vers num="9.0.0b2" />
                <vers num="9.0.0b3" />
                <vers num="9.0.0b4" />
                <vers num="9.0.0b5" />
                <vers edition="rc1" num="9.0.1" />
                <vers edition="rc2" num="9.0.1" />
                <vers num="9.1" />
                <vers edition="rc1" num="9.1.0" />
                <vers num="9.1.0b1" />
                <vers num="9.1.0b2" />
                <vers num="9.1.0b3" />
                <vers edition="rc1" num="9.1.1" />
                <vers edition="rc2" num="9.1.1" />
                <vers edition="rc3" num="9.1.1" />
                <vers edition="rc4" num="9.1.1" />
                <vers edition="rc5" num="9.1.1" />
                <vers edition="rc6" num="9.1.1" />
                <vers edition="rc7" num="9.1.1" />
                <vers edition="rc1" num="9.1.2" />
                <vers edition="rc1" num="9.1.3" />
                <vers edition="rc2" num="9.1.3" />
                <vers edition="rc3" num="9.1.3" />
                <vers num="9.1.3p2" />
                <vers num="9.1.3p3" />
                <vers edition="rc1" num="9.2.0" />
                <vers edition="rc10" num="9.2.0" />
                <vers edition="rc2" num="9.2.0" />
                <vers edition="rc3" num="9.2.0" />
                <vers edition="rc4" num="9.2.0" />
                <vers edition="rc5" num="9.2.0" />
                <vers edition="rc6" num="9.2.0" />
                <vers edition="rc7" num="9.2.0" />
                <vers edition="rc8" num="9.2.0" />
                <vers edition="rc9" num="9.2.0" />
                <vers num="9.2.0a1" />
                <vers num="9.2.0a2" />
                <vers num="9.2.0a3" />
                <vers num="9.2.0b1" />
                <vers num="9.2.0b2" />
                <vers edition="rc1" num="9.2.1" />
                <vers edition="rc2" num="9.2.1" />
                <vers edition="p2" num="9.2.2" />
                <vers edition="p3" num="9.2.2" />
                <vers edition="rc1" num="9.2.2" />
                <vers edition="rc1" num="9.2.3" />
                <vers edition="rc2" num="9.2.3" />
                <vers edition="rc3" num="9.2.3" />
                <vers edition="rc4" num="9.2.3" />
                <vers edition="rc2" num="9.2.4" />
                <vers edition="rc3" num="9.2.4" />
                <vers edition="rc4" num="9.2.4" />
                <vers edition="rc5" num="9.2.4" />
                <vers edition="rc6" num="9.2.4" />
                <vers edition="rc7" num="9.2.4" />
                <vers edition="rc8" num="9.2.4" />
                <vers edition="beta2" num="9.2.5" />
                <vers edition="rc1" num="9.2.5" />
                <vers edition="rc1" num="9.2.6" />
                <vers num="9.2.6b1" />
                <vers num="9.2.6b2" />
                <vers num="9.2.6p1" />
                <vers num="9.2.6p2" />
                <vers edition="rc1" num="9.2.7" />
                <vers edition="rc2" num="9.2.7" />
                <vers edition="rc3" num="9.2.7" />
                <vers num="9.2.7b1" />
                <vers num="9.2.8" />
                <vers num="9.2.8p1" />
                <vers edition="rc1" num="9.2.9" />
                <vers num="9.2.9b1" />
                <vers edition="beta2" num="9.3.0" />
                <vers edition="beta3" num="9.3.0" />
                <vers edition="beta4" num="9.3.0" />
                <vers edition="rc1" num="9.3.0" />
                <vers edition="rc2" num="9.3.0" />
                <vers edition="rc3" num="9.3.0" />
                <vers edition="rc4" num="9.3.0" />
                <vers edition="beta2" num="9.3.1" />
                <vers edition="rc1" num="9.3.1" />
                <vers edition="rc1" num="9.3.2" />
                <vers num="9.3.2b1" />
                <vers num="9.3.2b2" />
                <vers num="9.3.2p1" />
                <vers num="9.3.2p2" />
                <vers edition="rc1" num="9.3.3" />
                <vers edition="rc2" num="9.3.3" />
                <vers edition="rc3" num="9.3.3" />
                <vers num="9.3.3b1" />
                <vers num="9.3.4" />
                <vers num="9.3.4p1" />
                <vers edition="rc1" num="9.3.5" />
                <vers edition="rc2" num="9.3.5" />
                <vers num="9.3.5-p2" />
                <vers num="9.3.5-p2-w1" />
                <vers num="9.3.5-p2-w2" />
                <vers num="9.3.5b1" />
                <vers edition="rc1" num="9.3.6" />
                <vers num="9.3.6b1" />
                <vers num="9.3.6p1" />
                <vers edition="rc1" num="9.4.0" />
                <vers edition="rc2" num="9.4.0" />
                <vers num="9.4.0a5" />
                <vers num="9.4.0a6" />
                <vers num="9.4.0b1" />
                <vers num="9.4.0b2" />
                <vers num="9.4.0b3" />
                <vers num="9.4.0b4" />
                <vers num="9.4.1" />
                <vers num="9.4.1p1" />
                <vers edition="rc1" num="9.4.2" />
                <vers edition="rc2" num="9.4.2" />
                <vers num="9.4.2b1" />
                <vers num="9.4.2p1" />
                <vers num="9.4.2p2" />
                <vers num="9.4.2p2-w1" />
                <vers num="9.4.2p2-w2" />
                <vers num="9.4.3p1" />
                <vers num="9.4.3p2" />
                <vers num="9.4.3p3" />
                <vers num="9.4.3p4" />
                <vers num="9.5" />
                <vers edition="rc1" num="9.5.0" />
                <vers num="9.5.0a5" />
                <vers num="9.5.0a6" />
                <vers num="9.5.0a7" />
                <vers num="9.5.0b1" />
                <vers num="9.5.0b2" />
                <vers num="9.5.0b3" />
                <vers edition="rc1" num="9.5.1" />
                <vers edition="rc2" num="9.5.1" />
                <vers num="9.5.1b1" />
                <vers num="9.5.1b2" />
                <vers num="9.5.1b3" />
                <vers num="9.5.1p1" />
                <vers num="9.5.1p2" />
                <vers num="9.5.1p3" />
                <vers edition="rc1" num="9.5.2" />
                <vers num="9.5.2b1" />
                <vers num="9.5.2p1" />
                <vers edition="p1" num="9.6.0" />
                <vers edition="rc1" num="9.6.0" />
                <vers edition="rc2" num="9.6.0" />
                <vers num="9.6.0a1" />
                <vers num="9.6.0b1" />
                <vers edition="p1" num="9.6.1" />
                <vers edition="p2" num="9.6.1" />
                <vers edition="beta" num="9.7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-7253" seq="2008-7253" severity="Medium" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="4.3" modified="2010-01-26">
        <desc>
            <descript source="cve">The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authentication credentials via a cross-site tracing (XST) attack, a related issue to CVE-2004-2763 and CVE-2005-3398.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/867593">VU#867593</ref>
            <ref source="CONFIRM" url="http://www.kb.cert.org/vuls/id/AAMN-5K42VT">http://www.kb.cert.org/vuls/id/AAMN-5K42VT</ref>
            <ref source="CONFIRM" url="http://www.kb.cert.org/vuls/id/AAMN-5K42VN">http://www.kb.cert.org/vuls/id/AAMN-5K42VN</ref>
            <ref source="CONFIRM" url="http://www-01.ibm.com/support/docview.wss?&amp;uid=swg21201202">http://www-01.ibm.com/support/docview.wss?&amp;uid=swg21201202</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="lotus_domino_server">
                <vers num="6.0" />
                <vers num="6.5" />
                <vers num="7.0" />
                <vers num="8.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4241" seq="2009-4241" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-26">
        <desc>
            <descript source="cve">Heap-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote attackers to execute arbitrary code via a file with invalid ASMRuleBook structures that trigger heap memory corruption.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at:

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.zerodayinitiative.com/advisories/ZDI-10-005/">http://www.zerodayinitiative.com/advisories/ZDI-10-005/</ref>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55794">realplayer-asmrulebook-bo(55794)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509100/100/0/threaded">20100121 ZDI-10-005: RealNetworks RealPlayer ASMRulebook Remote Code Execution Vulnerability</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4242" seq="2009-4242" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-02-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.0 through 11.0.4; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, and 11.0; Linux RealPlayer 10; and Helix Player 10.x allows remote attackers to execute arbitrary code via a GIF file with crafted chunk sizes that trigger improper memory allocation.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.zerodayinitiative.com/advisories/ZDI-10-006/">http://www.zerodayinitiative.com/advisories/ZDI-10-006/</ref>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55795">realplayer-gif-bo(55795)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509096/100/0/threaded">20100121 ZDI-10-006: RealNetworks RealPlayer GIF Handling Remote Code Execution Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
            <ref source="OSVDB" url="http://osvdb.org/61966">61966</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4243" seq="2009-4243" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-02-05">
        <desc>
            <descript source="cve">RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allow remote attackers to have an unspecified impact via a crafted media file that uses HTTP chunked transfer coding, related to an "overflow."</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55796">realplayer-httpchunk-bo(55796)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
            <ref source="OSVDB" url="http://osvdb.org/61967">61967</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4244" seq="2009-4244" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-26">
        <desc>
            <descript source="cve">Heap-based buffer overflow in RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.0 through 11.0.4; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, and 11.0; Linux RealPlayer 10; and Helix Player 10.x allows remote attackers to execute arbitrary code via an SIPR codec field with a small length value that triggers incorrect memory allocation.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.zerodayinitiative.com/advisories/ZDI-10-008/">http://www.zerodayinitiative.com/advisories/ZDI-10-008/</ref>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55797">realplayer-sipr-bo(55797)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509098/100/0/threaded">20100121 ZDI-10-008: RealNetworks RealPlayer SIPR Codec Remote Code Execution Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4245" seq="2009-4245" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-02-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote attackers to have an unspecified impact via a compressed GIF file.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55800">realplayer-gifimage-bo(55800)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
            <ref source="OSVDB" url="http://osvdb.org/61969">61969</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4246" seq="2009-4246" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-26">
        <desc>
            <descript source="cve">Stack-based buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows user-assisted remote attackers to execute arbitrary code via a malformed .RJS skin file that contains a web.xmb file with crafted length values.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.zerodayinitiative.com/advisories/ZDI-10-010/">http://www.zerodayinitiative.com/advisories/ZDI-10-010/</ref>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55799">realplayer-skin-bo(55799)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509104/100/0/threaded">20100121 ZDI-10-010: RealNetworks RealPlayer Skin Parsing Remote Code Execution Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4247" seq="2009-4247" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-26">
        <desc>
            <descript source="cve">RealNetworks RealPlayer 10; RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741; RealPlayer 11 11.0.x; RealPlayer SP 1.0.0 and 1.0.1; RealPlayer Enterprise; Mac RealPlayer 10, 10.1, 11.0, and 11.0.1; Linux RealPlayer 10, 11.0.0, and 11.0.1; and Helix Player 10.x, 11.0.0, and 11.0.1 allow remote attackers to have an unspecified impact via a crafted ASM RuleBook, related to an "array overflow."</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55802">realplayer-rulebook-overflow(55802)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4248" seq="2009-4248" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-26">
        <desc>
            <descript source="cve">Buffer overflow in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10, and Helix Player 10.x allows remote attackers to have an unspecified impact via a crafted RTSP SET_PARAMETER request.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55801">realplayer-rtsp-setparameter-bo(55801)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2009-4257" seq="2009-4257" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-31">
        <desc>
            <descript source="cve">Heap-based buffer overflow in smlrender.dll in RealNetworks RealPlayer 10, RealPlayer 10.5 6.0.12.1040 through 6.0.12.1741, RealPlayer 11 11.0.0 through 11.0.4, RealPlayer Enterprise, Mac RealPlayer 10 and 10.1, Linux RealPlayer 10 and 11.0.0, and Helix Player 10.x and 11.0.0 allows remote attackers to execute arbitrary code via an SMIL file with crafted string lengths.</descript>
            <descript source="nvd">Specific affected release information can be found from RealNetworks at: 

http://service.real.com/realplayer/security/01192010_player/en/</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.zerodayinitiative.com/advisories/ZDI-10-007/">http://www.zerodayinitiative.com/advisories/ZDI-10-007/</ref>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0178" adv="1">ADV-2010-0178</ref>
            <ref source="CONFIRM" patch="1" url="http://service.real.com/realplayer/security/01192010_player/en/" adv="1">http://service.real.com/realplayer/security/01192010_player/en/</ref>
            <ref source="SECTRACK" patch="1" url="http://securitytracker.com/id?1023489">1023489</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55798">realnetworks-realplayer-smil-bo(55798)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37880">37880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509105/100/0/threaded">20100121 ZDI-10-007: RealNetworks RealPlayer SMIL getAtom Remote Code Execution Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38218" adv="1">38218</ref>
        </refs>
        <vuln_soft>
            <prod vendor="realnetworks" name="helix_player">
                <vers num="10.0" />
                <vers num="11.0.0" />
                <vers num="11.0.1" />
            </prod>
            <prod vendor="realnetworks" name="realplayer">
                <vers edition="" num="10.0" />
                <vers edition=":linux" num="10.0" />
                <vers num="10.1" />
                <vers num="10.5" />
                <vers num="11.0" />
                <vers edition="" num="11.0.0" />
                <vers edition=":linux" num="11.0.0" />
                <vers edition="" num="11.0.1" />
                <vers edition=":linux" num="11.0.1" />
                <vers num="11.0.2" />
                <vers num="11.0.3" />
                <vers num="11.0.4" />
                <vers num="11.0.5" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_enterprise">
                <vers num="" />
            </prod>
            <prod vendor="realnetworks" name="realplayer_sp">
                <vers num="1.0.0" />
                <vers num="1.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0383" seq="2010-0383" severity="Medium" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">Tor before 0.2.1.22, and 0.2.2.x before 0.2.2.7-alpha, uses deprecated identity keys for certain directory authorities, which makes it easier for man-in-the-middle attackers to compromise the anonymity of traffic sources and destinations.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/37901">37901</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38198" adv="1">38198</ref>
            <ref source="OSVDB" url="http://osvdb.org/61977">61977</ref>
            <ref source="MLIST" url="http://archives.seul.org/or/talk/Jan-2010/msg00165.html">[or-talk] 20100120 Re: Tor Project infrastructure updates in response to security breach</ref>
            <ref source="MLIST" url="http://archives.seul.org/or/talk/Jan-2010/msg00162.html">[or-talk] 20100120 Tor 0.2.2.7-alpha is out</ref>
            <ref source="MLIST" url="http://archives.seul.org/or/talk/Jan-2010/msg00161.html">[or-talk] 20100120 Tor Project infrastructure updates in response to security breach</ref>
            <ref source="MLIST" url="http://archives.seul.org/or/announce/Jan-2010/msg00000.html">[or-announce] 20100121 Tor 0.2.1.22 is released (security fix)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tor" name="tor">
                <vers num="0.0.2" />
                <vers num="0.0.2_pre13" />
                <vers num="0.0.2_pre14" />
                <vers num="0.0.2_pre15" />
                <vers num="0.0.2_pre16" />
                <vers num="0.0.2_pre17" />
                <vers num="0.0.2_pre18" />
                <vers num="0.0.2_pre19" />
                <vers num="0.0.2_pre20" />
                <vers num="0.0.2_pre21" />
                <vers num="0.0.2_pre22" />
                <vers num="0.0.2_pre23" />
                <vers num="0.0.2_pre24" />
                <vers num="0.0.2_pre25" />
                <vers num="0.0.2_pre26" />
                <vers num="0.0.2_pre27" />
                <vers num="0.0.3" />
                <vers num="0.0.4" />
                <vers num="0.0.5" />
                <vers num="0.0.6" />
                <vers num="0.0.6.1" />
                <vers num="0.0.6.2" />
                <vers num="0.0.7" />
                <vers num="0.0.7.1" />
                <vers num="0.0.7.2" />
                <vers num="0.0.7.3" />
                <vers num="0.0.8" />
                <vers num="0.0.8.1" />
                <vers num="0.0.9" />
                <vers num="0.0.9.1" />
                <vers num="0.0.9.10" />
                <vers num="0.0.9.2" />
                <vers num="0.0.9.3" />
                <vers num="0.0.9.4" />
                <vers num="0.0.9.5" />
                <vers num="0.0.9.6" />
                <vers num="0.0.9.7" />
                <vers num="0.0.9.8" />
                <vers num="0.0.9.9" />
                <vers num="0.1.0.1" />
                <vers num="0.1.0.10" />
                <vers num="0.1.0.11" />
                <vers num="0.1.0.12" />
                <vers num="0.1.0.13" />
                <vers num="0.1.0.14" />
                <vers num="0.1.0.15" />
                <vers num="0.1.0.16" />
                <vers num="0.1.0.17" />
                <vers num="0.1.0.18" />
                <vers num="0.1.0.19" />
                <vers num="0.1.0.2" />
                <vers num="0.1.0.3" />
                <vers num="0.1.0.4" />
                <vers num="0.1.0.5" />
                <vers num="0.1.0.6" />
                <vers num="0.1.0.7" />
                <vers num="0.1.0.8" />
                <vers num="0.1.0.9" />
                <vers num="0.1.1" />
                <vers num="0.1.1.1" />
                <vers num="0.1.1.10" />
                <vers num="0.1.1.10_alpha" />
                <vers num="0.1.1.11" />
                <vers num="0.1.1.12" />
                <vers num="0.1.1.13" />
                <vers num="0.1.1.14" />
                <vers num="0.1.1.15" />
                <vers num="0.1.1.16" />
                <vers num="0.1.1.17" />
                <vers num="0.1.1.18" />
                <vers num="0.1.1.19" />
                <vers num="0.1.1.1_alpha" />
                <vers num="0.1.1.2" />
                <vers num="0.1.1.20" />
                <vers num="0.1.1.21" />
                <vers num="0.1.1.22" />
                <vers num="0.1.1.23" />
                <vers num="0.1.1.25" />
                <vers num="0.1.1.26" />
                <vers num="0.1.1.2_alpha" />
                <vers num="0.1.1.3" />
                <vers num="0.1.1.3_alpha" />
                <vers num="0.1.1.4" />
                <vers num="0.1.1.4_alpha" />
                <vers num="0.1.1.5" />
                <vers num="0.1.1.5_alpha" />
                <vers num="0.1.1.6" />
                <vers num="0.1.1.6_alpha" />
                <vers num="0.1.1.7" />
                <vers num="0.1.1.7_alpha" />
                <vers num="0.1.1.8" />
                <vers num="0.1.1.8_alpha" />
                <vers num="0.1.1.9" />
                <vers num="0.1.1.9_alpha" />
                <vers num="0.1.2.10" />
                <vers num="0.1.2.11" />
                <vers num="0.1.2.12" />
                <vers num="0.1.2.13" />
                <vers num="0.1.2.14" />
                <vers num="0.1.2.16" />
                <vers num="0.1.2.18" />
                <vers num="0.1.2.19" />
                <vers num="0.1.2.1_alpha-cvs" />
                <vers num="0.1.2.2" />
                <vers num="0.1.2.30" />
                <vers num="0.1.2.4" />
                <vers edition="alpha" num="0.1.2.5" />
                <vers edition="alpha" num="0.1.2.7" />
                <vers num="0.1.2.9" />
                <vers num="0.2.1.1.12" />
                <vers num="0.2.1.1.13" />
                <vers num="0.2.1.1.14" />
                <vers num="0.2.1.1.15" />
                <vers num="0.2.1.1.16" />
                <vers num="0.2.1.1.17" />
                <vers num="0.2.1.1.18" />
                <vers num="0.2.1.1.19" />
                <vers num="0.2.1.1.20" />
                <vers num="0.2.1.1.21" />
                <vers edition="alpha" num="0.2.2.1" />
                <vers edition="alpha" num="0.2.2.2" />
                <vers edition="alpha" num="0.2.2.3" />
                <vers edition="alpha" num="0.2.2.4" />
                <vers edition="alpha" num="0.2.2.5" />
                <vers edition="alpha" num="0.2.2.6" />
                <vers edition="alpha" num="0.2.2.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="2.1" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="2.9" name="CVE-2010-0384" seq="2010-0384" severity="Low" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="2.1" modified="2010-01-26">
        <desc>
            <descript source="cve">Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent logging of the client IP address upon detection of erroneous client behavior, which might make it easier for local users to discover the identities of clients in opportunistic circumstances by reading log files.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="MLIST" url="http://archives.seul.org/or/talk/Jan-2010/msg00162.html">[or-talk] 20100120 Tor 0.2.2.7-alpha is out</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tor" name="tor">
                <vers edition="alpha" num="0.2.2.1" />
                <vers edition="alpha" num="0.2.2.2" />
                <vers edition="alpha" num="0.2.2.3" />
                <vers edition="alpha" num="0.2.2.4" />
                <vers edition="alpha" num="0.2.2.5" />
                <vers edition="alpha" num="0.2.2.6" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0385" seq="2010-0385" severity="Medium" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="5.0" modified="2010-01-26">
        <desc>
            <descript source="cve">Tor before 0.2.1.22, and 0.2.2.x before 0.2.2.7-alpha, when functioning as a bridge directory authority, allows remote attackers to obtain sensitive information about bridge identities and bridge descriptors via a dbg-stability.txt directory query.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/37901">37901</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/61865">61865</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38198" adv="1">38198</ref>
            <ref source="MLIST" url="http://archives.seul.org/or/talk/Jan-2010/msg00162.html">[or-talk] 20100120 Tor 0.2.2.7-alpha is out</ref>
            <ref source="MLIST" url="http://archives.seul.org/or/announce/Jan-2010/msg00000.html">[or-announce] 20100121 Tor 0.2.1.22 is released (security fix)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tor" name="tor">
                <vers num="0.0.2" />
                <vers num="0.0.2_pre13" />
                <vers num="0.0.2_pre14" />
                <vers num="0.0.2_pre15" />
                <vers num="0.0.2_pre16" />
                <vers num="0.0.2_pre17" />
                <vers num="0.0.2_pre18" />
                <vers num="0.0.2_pre19" />
                <vers num="0.0.2_pre20" />
                <vers num="0.0.2_pre21" />
                <vers num="0.0.2_pre22" />
                <vers num="0.0.2_pre23" />
                <vers num="0.0.2_pre24" />
                <vers num="0.0.2_pre25" />
                <vers num="0.0.2_pre26" />
                <vers num="0.0.2_pre27" />
                <vers num="0.0.3" />
                <vers num="0.0.4" />
                <vers num="0.0.5" />
                <vers num="0.0.6" />
                <vers num="0.0.6.1" />
                <vers num="0.0.6.2" />
                <vers num="0.0.7" />
                <vers num="0.0.7.1" />
                <vers num="0.0.7.2" />
                <vers num="0.0.7.3" />
                <vers num="0.0.8" />
                <vers num="0.0.8.1" />
                <vers num="0.0.9" />
                <vers num="0.0.9.1" />
                <vers num="0.0.9.10" />
                <vers num="0.0.9.2" />
                <vers num="0.0.9.3" />
                <vers num="0.0.9.4" />
                <vers num="0.0.9.5" />
                <vers num="0.0.9.6" />
                <vers num="0.0.9.7" />
                <vers num="0.0.9.8" />
                <vers num="0.0.9.9" />
                <vers num="0.1.0.1" />
                <vers num="0.1.0.10" />
                <vers num="0.1.0.11" />
                <vers num="0.1.0.12" />
                <vers num="0.1.0.13" />
                <vers num="0.1.0.14" />
                <vers num="0.1.0.15" />
                <vers num="0.1.0.16" />
                <vers num="0.1.0.17" />
                <vers num="0.1.0.18" />
                <vers num="0.1.0.19" />
                <vers num="0.1.0.2" />
                <vers num="0.1.0.3" />
                <vers num="0.1.0.4" />
                <vers num="0.1.0.5" />
                <vers num="0.1.0.6" />
                <vers num="0.1.0.7" />
                <vers num="0.1.0.8" />
                <vers num="0.1.0.9" />
                <vers num="0.1.1" />
                <vers num="0.1.1.1" />
                <vers num="0.1.1.10" />
                <vers num="0.1.1.10_alpha" />
                <vers num="0.1.1.11" />
                <vers num="0.1.1.12" />
                <vers num="0.1.1.13" />
                <vers num="0.1.1.14" />
                <vers num="0.1.1.15" />
                <vers num="0.1.1.16" />
                <vers num="0.1.1.17" />
                <vers num="0.1.1.18" />
                <vers num="0.1.1.19" />
                <vers num="0.1.1.1_alpha" />
                <vers num="0.1.1.2" />
                <vers num="0.1.1.20" />
                <vers num="0.1.1.21" />
                <vers num="0.1.1.22" />
                <vers num="0.1.1.23" />
                <vers num="0.1.1.25" />
                <vers num="0.1.1.26" />
                <vers num="0.1.1.2_alpha" />
                <vers num="0.1.1.3" />
                <vers num="0.1.1.3_alpha" />
                <vers num="0.1.1.4" />
                <vers num="0.1.1.4_alpha" />
                <vers num="0.1.1.5" />
                <vers num="0.1.1.5_alpha" />
                <vers num="0.1.1.6" />
                <vers num="0.1.1.6_alpha" />
                <vers num="0.1.1.7" />
                <vers num="0.1.1.7_alpha" />
                <vers num="0.1.1.8" />
                <vers num="0.1.1.8_alpha" />
                <vers num="0.1.1.9" />
                <vers num="0.1.1.9_alpha" />
                <vers num="0.1.2.10" />
                <vers num="0.1.2.11" />
                <vers num="0.1.2.12" />
                <vers num="0.1.2.13" />
                <vers num="0.1.2.14" />
                <vers num="0.1.2.16" />
                <vers num="0.1.2.18" />
                <vers num="0.1.2.19" />
                <vers num="0.1.2.1_alpha-cvs" />
                <vers num="0.1.2.2" />
                <vers num="0.1.2.30" />
                <vers num="0.1.2.4" />
                <vers edition="alpha" num="0.1.2.5" />
                <vers edition="alpha" num="0.1.2.7" />
                <vers num="0.1.2.9" />
                <vers num="0.2.1.1.12" />
                <vers num="0.2.1.1.13" />
                <vers num="0.2.1.1.14" />
                <vers num="0.2.1.1.15" />
                <vers num="0.2.1.1.16" />
                <vers num="0.2.1.1.17" />
                <vers num="0.2.1.1.18" />
                <vers num="0.2.1.1.19" />
                <vers num="0.2.1.1.20" />
                <vers num="0.2.1.1.21" />
                <vers edition="alpha" num="0.2.2.1" />
                <vers edition="alpha" num="0.2.2.2" />
                <vers edition="alpha" num="0.2.2.3" />
                <vers edition="alpha" num="0.2.2.4" />
                <vers edition="alpha" num="0.2.2.5" />
                <vers edition="alpha" num="0.2.2.6" />
                <vers edition="alpha" num="0.2.2.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2010-0386" seq="2010-0386" severity="Medium" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="4.3" modified="2010-01-31">
        <desc>
            <descript source="cve">The default configuration of Sun Java System Application Server 7 and 7 2004Q2 enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authentication credentials via a cross-site tracing (XST) attack, a related issue to CVE-2004-2763 and CVE-2005-3398.</descript>
        </desc>
        <impacts>
            <impact source="nvd">Per: http://sunsolve.sun.com/search/document.do?assetkey=1-66-200942-1


Contributing Factors

This issue can occur in the following releases:

    * Sun Java System Application Server Standard Edition 7 and later updates
    * Sun Java System Application Server Standard Edition 7 2004Q2 and later updates
    * Sun Java System Application Server Platform Edition 7 and later updates</impact>
        </impacts>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200942-1" adv="1">200942</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_application_server">
                <vers edition="" num="7.0" />
                <vers edition=":standard" num="7.0" />
                <vers edition=":platform" num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0387" seq="2010-0387" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-26">
        <desc>
            <descript source="cve">Multiple heap-based buffer overflows in (1) webservd and (2) the admin server in Sun Java System Web Server 7.0 Update 7 allow remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via a long string in an "Authorization: Digest" HTTP header.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55792">jsws-digest-header-bo(55792)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37896">37896</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023488">1023488</ref>
            <ref source="MLIST" url="http://lists.immunitysec.com/pipermail/dailydave/2010-January/006014.html">[dailydave] 20100120 Sun Web Server digest auth overflow</ref>
            <ref source="MISC" url="http://intevydis.blogspot.com/2010/01/sun-java-system-web-server-70u7-digest.html">http://intevydis.blogspot.com/2010/01/sun-java-system-web-server-70u7-digest.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_web_server">
                <vers edition="update_7" num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0388" seq="2010-0388" severity="High" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-26">
        <desc>
            <descript source="cve">Format string vulnerability in the WebDAV implementation in webservd in Sun Java System Web Server 7.0 Update 6 allows remote attackers to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in the encoding attribute of the XML declaration in a PROPFIND request.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55812">jsws-webdav-format-string(55812)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37910">37910</ref>
            <ref source="MISC" url="http://intevydis.blogspot.com/2010/01/sun-java-system-web-server-70-webdav.html">http://intevydis.blogspot.com/2010/01/sun-java-system-web-server-70-webdav.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_web_server">
                <vers edition="update_6" num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0389" seq="2010-0389" severity="Medium" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="5.0" modified="2010-01-31">
        <desc>
            <descript source="cve">The admin server in Sun Java System Web Server 7.0 Update 6 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an HTTP request that lacks a method token.</descript>
            <descript source="nvd">Per: http://cwe.mitre.org/data/slices/2000.html

CWE-476 NULL Pointer Dereference</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://intevydis.blogspot.com/2010/01/sun-java-system-web-server-70-admin.html">http://intevydis.blogspot.com/2010/01/sun-java-system-web-server-70-admin.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_web_server">
                <vers edition="update_6" num="7.0" />
                <vers edition="update_7" num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:N/I:N/A:C)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.9" name="CVE-2005-4884" seq="2005-4884" severity="Medium" type="CVE" published="2010-01-25" CVSS_version="2.0" CVSS_score="6.8" modified="2010-01-26">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 10.1.0.4 (10g) allows remote authenticated attackers to affect availability via unknown vectors, aka DB02.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://www.oracle.com/technology/deploy/security/pdf/cpujul2005.html">http://www.oracle.com/technology/deploy/security/pdf/cpujul2005.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2009-4273" seq="2009-4273" severity="High" type="CVE" published="2010-01-26" CVSS_version="2.0" CVSS_score="10.0" modified="2010-01-27">
        <desc>
            <descript source="cve">stap-server in SystemTap before 1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in stap command-line arguments in a request.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://sourceware.org/systemtap/ftp/releases/systemtap-1.1.tar.gz">http://sourceware.org/systemtap/ftp/releases/systemtap-1.1.tar.gz</ref>
            <ref source="FEDORA" patch="1" url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034041.html">FEDORA-2010-0688</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=550172">https://bugzilla.redhat.com/show_bug.cgi?id=550172</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0169" adv="1">ADV-2010-0169</ref>
            <ref source="MLIST" url="http://sourceware.org/ml/systemtap/2010-q1/msg00142.html">[systemtap] 20100115 SystemTap release 1.1</ref>
            <ref source="CONFIRM" url="http://sourceware.org/bugzilla/show_bug.cgi?id=11105">http://sourceware.org/bugzilla/show_bug.cgi?id=11105</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38216" adv="1">38216</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38154" adv="1">38154</ref>
            <ref source="FEDORA" url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034036.html">FEDORA-2010-0671</ref>
        </refs>
        <vuln_soft>
            <prod vendor="systemtap" name="systemtap">
                <vers num="0.2.2" />
                <vers num="0.3" />
                <vers num="0.4" />
                <vers num="0.5" />
                <vers num="0.5.10" />
                <vers num="0.5.12" />
                <vers num="0.5.13" />
                <vers num="0.5.14" />
                <vers num="0.5.3" />
                <vers num="0.5.4" />
                <vers num="0.5.5" />
                <vers num="0.5.7" />
                <vers num="0.5.8" />
                <vers num="0.5.9" />
                <vers num="0.6" />
                <vers num="0.6.2" />
                <vers num="0.7" />
                <vers num="0.7.2" />
                <vers num="0.8" />
                <vers num="0.9" />
                <vers num="0.9.5" />
                <vers num="0.9.7" />
                <vers num="0.9.8" />
                <vers num="0.9.9" />
                <vers num="1.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:P/I:N/A:C)" CVSS_base_score="5.4" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="7.8" name="CVE-2010-0003" seq="2010-0003" severity="Medium" type="CVE" published="2010-01-26" CVSS_version="2.0" CVSS_score="5.4" modified="2010-01-27">
        <desc>
            <descript source="cve">The print_fatal_signal function in kernel/signal.c in the Linux kernel before 2.6.32.4 on the i386 platform, when print-fatal-signals is enabled, allows local users to discover the contents of arbitrary memory locations by jumping to an address and then reading a log file, and might allow local users to cause a denial of service (system slowdown or crash) by jumping to an address.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=554578">https://bugzilla.redhat.com/show_bug.cgi?id=554578</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/13/4">[oss-security] 20100113 Re: CVE request - kernel: infoleak if print-fatal-signals=1</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/12/1">[oss-security] 20100112 CVE request - kernel: infoleak if print-fatal-signals=1</ref>
            <ref source="CONFIRM" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38333" adv="1">38333</ref>
            <ref source="CONFIRM" url="http://patchwork.kernel.org/patch/69752/">http://patchwork.kernel.org/patch/69752/</ref>
            <ref source="FEDORA" url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034250.html">FEDORA-2010-0919</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b45c6e76bc2c72f6426c14bed64fdcbc9bf37cb0">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b45c6e76bc2c72f6426c14bed64fdcbc9bf37cb0</ref>
        </refs>
        <vuln_soft>
            <prod vendor="intel" name="e1000">
                <vers num="5.2.22" />
                <vers num="5.2.30.1" />
                <vers num="5.2.52" />
                <vers num="5.3.19" />
                <vers num="5.4.11" />
                <vers num="5.5.4" />
                <vers num="5.6.10" />
                <vers num="5.6.10.1" />
                <vers num="5.7.6" />
                <vers num="6.0.54" />
                <vers num="6.0.60" />
                <vers num="6.1.16" />
                <vers num="6.2.15" />
                <vers num="6.3.9" />
                <vers num="7.0.33" />
                <vers num="7.0.41" />
                <vers num="7.1.9" />
                <vers num="7.2.7" />
                <vers num="7.2.9" />
                <vers num="7.3.15" />
                <vers num="7.3.20" />
                <vers num="7.4.27" />
                <vers num="7.4.35" prev="1" />
            </prod>
            <prod vendor="linux" name="kernel">
                <vers num="2.6.24.7" />
                <vers num="2.6.25.15" />
            </prod>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers num="2.6.23" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.23_rc1" />
                <vers num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24_rc1" />
                <vers num="2.6.24_rc4" />
                <vers num="2.6.24_rc5" />
                <vers edition="" num="2.6.25" />
                <vers edition=":x86_64" num="2.6.25" />
                <vers edition="" num="2.6.25.1" />
                <vers edition=":x86_64" num="2.6.25.1" />
                <vers edition="" num="2.6.25.10" />
                <vers edition=":x86_64" num="2.6.25.10" />
                <vers edition="" num="2.6.25.11" />
                <vers edition=":x86_64" num="2.6.25.11" />
                <vers edition="" num="2.6.25.12" />
                <vers edition=":x86_64" num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers edition="" num="2.6.25.2" />
                <vers edition=":x86_64" num="2.6.25.2" />
                <vers edition="" num="2.6.25.3" />
                <vers edition=":x86_64" num="2.6.25.3" />
                <vers edition="" num="2.6.25.4" />
                <vers edition=":x86_64" num="2.6.25.4" />
                <vers edition="" num="2.6.25.5" />
                <vers edition=":x86_64" num="2.6.25.5" />
                <vers edition="" num="2.6.25.6" />
                <vers edition=":x86_64" num="2.6.25.6" />
                <vers edition="" num="2.6.25.7" />
                <vers edition=":x86_64" num="2.6.25.7" />
                <vers edition="" num="2.6.25.8" />
                <vers edition=":x86_64" num="2.6.25.8" />
                <vers edition="" num="2.6.25.9" />
                <vers edition=":x86_64" num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.27" />
                <vers num="2.6.28" prev="1" />
                <vers edition="git1" num="2.6.29" />
                <vers edition="rc1" num="2.6.29" />
                <vers edition="rc2" num="2.6.29" />
                <vers edition="rc2_git7" num="2.6.29" />
                <vers edition="rc8-kk" num="2.6.29" />
                <vers num="2.6.29.3" />
                <vers num="2.6.29.rc1" />
                <vers num="2.6.29.rc2-git1" />
                <vers edition="rc1" num="2.6.30" prev="1" />
                <vers edition="rc2" num="2.6.30" prev="1" />
                <vers edition="rc3" num="2.6.30" prev="1" />
                <vers edition="rc7-git6" num="2.6.30" prev="1" />
                <vers edition="git-6" num="2.6.32" />
                <vers edition="rc1" num="2.6.32" />
                <vers edition="rc3" num="2.6.32" />
                <vers edition="rc4" num="2.6.32" />
                <vers edition="rc5" num="2.6.32" />
                <vers edition="rc6" num="2.6.32" />
                <vers edition="rc7" num="2.6.32" />
                <vers edition="rc8" num="2.6.32" />
                <vers num="2.6.32.1" />
                <vers num="2.6.32.2" />
                <vers num="2.6.32.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.1" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.9" name="CVE-2010-0006" seq="2010-0006" severity="High" type="CVE" published="2010-01-26" CVSS_version="2.0" CVSS_score="7.1" modified="2010-01-27">
        <desc>
            <descript source="cve">The ipv6_hop_jumbo function in net/ipv6/exthdrs.c in the Linux kernel before 2.6.32.4, when network namespaces are enabled, allows remote attackers to cause a denial of service (NULL pointer dereference) via an invalid IPv6 jumbogram, a related issue to CVE-2007-4567.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=555217">https://bugzilla.redhat.com/show_bug.cgi?id=555217</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37810">37810</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/61876">61876</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/14/2">[oss-security] 20100114 CVE-2010-0006 - kernel: ipv6: skb_dst() can be NULL in ipv6_hop_jumbo()</ref>
            <ref source="CONFIRM" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.32.4</ref>
            <ref source="CONFIRM" url="http://security-tracker.debian.org/tracker/CVE-2010-0006">http://security-tracker.debian.org/tracker/CVE-2010-0006</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38333" adv="1">38333</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38168" adv="1">38168</ref>
            <ref source="MLIST" url="http://marc.info/?l=linux-netdev&amp;m=126343325807340&amp;w=2">[linux-netdev] 20100114 [PATCH]: ipv6: skb_dst() can be NULL in ipv6_hop_jumbo().</ref>
            <ref source="FEDORA" url="http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034250.html">FEDORA-2010-0919</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2570a4f5428bcdb1077622342181755741e7fa60">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=2570a4f5428bcdb1077622342181755741e7fa60</ref>
            <ref source="MISC" url="http://cert.fi/en/reports/2010/vulnerability341748.html">http://cert.fi/en/reports/2010/vulnerability341748.html</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=300951">http://bugs.gentoo.org/show_bug.cgi?id=300951</ref>
        </refs>
        <vuln_soft>
            <prod vendor="intel" name="e1000">
                <vers num="5.2.22" />
                <vers num="5.2.30.1" />
                <vers num="5.2.52" />
                <vers num="5.3.19" />
                <vers num="5.4.11" />
                <vers num="5.5.4" />
                <vers num="5.6.10" />
                <vers num="5.6.10.1" />
                <vers num="5.7.6" />
                <vers num="6.0.54" />
                <vers num="6.0.60" />
                <vers num="6.1.16" />
                <vers num="6.2.15" />
                <vers num="6.3.9" />
                <vers num="7.0.33" />
                <vers num="7.0.41" />
                <vers num="7.1.9" />
                <vers num="7.2.7" />
                <vers num="7.2.9" />
                <vers num="7.3.15" />
                <vers num="7.3.20" />
                <vers num="7.4.27" />
                <vers num="7.4.35" prev="1" />
            </prod>
            <prod vendor="linux" name="kernel">
                <vers num="2.6.24.7" />
                <vers num="2.6.25.15" />
            </prod>
            <prod vendor="linux" name="kernel">
                <vers num="2.2.27" />
                <vers num="2.4.36" />
                <vers num="2.4.36.1" />
                <vers num="2.4.36.2" />
                <vers num="2.4.36.3" />
                <vers num="2.4.36.4" />
                <vers num="2.4.36.5" />
                <vers num="2.4.36.6" />
                <vers num="2.6" />
                <vers edition="rc1" num="2.6.18" />
                <vers edition="rc2" num="2.6.18" />
                <vers edition="rc3" num="2.6.18" />
                <vers edition="rc4" num="2.6.18" />
                <vers edition="rc5" num="2.6.18" />
                <vers edition="rc6" num="2.6.18" />
                <vers edition="rc7" num="2.6.18" />
                <vers num="2.6.19.4" />
                <vers num="2.6.19.5" />
                <vers num="2.6.19.6" />
                <vers num="2.6.19.7" />
                <vers num="2.6.20.16" />
                <vers num="2.6.20.17" />
                <vers num="2.6.20.18" />
                <vers num="2.6.20.19" />
                <vers num="2.6.20.20" />
                <vers num="2.6.20.21" />
                <vers num="2.6.21.5" />
                <vers num="2.6.21.6" />
                <vers num="2.6.21.7" />
                <vers num="2.6.22" />
                <vers num="2.6.22.1" />
                <vers num="2.6.22.10" />
                <vers num="2.6.22.11" />
                <vers num="2.6.22.12" />
                <vers num="2.6.22.13" />
                <vers num="2.6.22.14" />
                <vers num="2.6.22.15" />
                <vers num="2.6.22.17" />
                <vers num="2.6.22.18" />
                <vers num="2.6.22.19" />
                <vers num="2.6.22.2" />
                <vers num="2.6.22.20" />
                <vers num="2.6.22.21" />
                <vers num="2.6.22.22" />
                <vers num="2.6.22.8" />
                <vers num="2.6.22.9" />
                <vers num="2.6.22_rc1" />
                <vers num="2.6.22_rc7" />
                <vers num="2.6.23" />
                <vers num="2.6.23.10" />
                <vers num="2.6.23.11" />
                <vers num="2.6.23.12" />
                <vers num="2.6.23.13" />
                <vers num="2.6.23.15" />
                <vers num="2.6.23.16" />
                <vers num="2.6.23.17" />
                <vers num="2.6.23.8" />
                <vers num="2.6.23.9" />
                <vers num="2.6.23_rc1" />
                <vers num="2.6.24" />
                <vers num="2.6.24.1" />
                <vers num="2.6.24.2" />
                <vers num="2.6.24.3" />
                <vers num="2.6.24.4" />
                <vers num="2.6.24.5" />
                <vers num="2.6.24.6" />
                <vers num="2.6.24_rc1" />
                <vers num="2.6.24_rc4" />
                <vers num="2.6.24_rc5" />
                <vers edition="" num="2.6.25" />
                <vers edition=":x86_64" num="2.6.25" />
                <vers edition="" num="2.6.25.1" />
                <vers edition=":x86_64" num="2.6.25.1" />
                <vers edition="" num="2.6.25.10" />
                <vers edition=":x86_64" num="2.6.25.10" />
                <vers edition="" num="2.6.25.11" />
                <vers edition=":x86_64" num="2.6.25.11" />
                <vers edition="" num="2.6.25.12" />
                <vers edition=":x86_64" num="2.6.25.12" />
                <vers num="2.6.25.13" />
                <vers num="2.6.25.14" />
                <vers num="2.6.25.16" />
                <vers num="2.6.25.17" />
                <vers edition="" num="2.6.25.2" />
                <vers edition=":x86_64" num="2.6.25.2" />
                <vers edition="" num="2.6.25.3" />
                <vers edition=":x86_64" num="2.6.25.3" />
                <vers edition="" num="2.6.25.4" />
                <vers edition=":x86_64" num="2.6.25.4" />
                <vers edition="" num="2.6.25.5" />
                <vers edition=":x86_64" num="2.6.25.5" />
                <vers edition="" num="2.6.25.6" />
                <vers edition=":x86_64" num="2.6.25.6" />
                <vers edition="" num="2.6.25.7" />
                <vers edition=":x86_64" num="2.6.25.7" />
                <vers edition="" num="2.6.25.8" />
                <vers edition=":x86_64" num="2.6.25.8" />
                <vers edition="" num="2.6.25.9" />
                <vers edition=":x86_64" num="2.6.25.9" />
                <vers num="2.6.26" />
                <vers num="2.6.26.1" />
                <vers num="2.6.26.2" />
                <vers num="2.6.26.3" />
                <vers num="2.6.26.4" />
                <vers num="2.6.26.5" />
                <vers num="2.6.27" />
                <vers num="2.6.28" prev="1" />
                <vers edition="git1" num="2.6.29" />
                <vers edition="rc1" num="2.6.29" />
                <vers edition="rc2" num="2.6.29" />
                <vers edition="rc2_git7" num="2.6.29" />
                <vers edition="rc8-kk" num="2.6.29" />
                <vers num="2.6.29.3" />
                <vers num="2.6.29.rc1" />
                <vers num="2.6.29.rc2-git1" />
                <vers edition="rc1" num="2.6.30" prev="1" />
                <vers edition="rc2" num="2.6.30" prev="1" />
                <vers edition="rc3" num="2.6.30" prev="1" />
                <vers edition="rc7-git6" num="2.6.30" prev="1" />
                <vers edition="git-6" num="2.6.32" />
                <vers edition="rc1" num="2.6.32" />
                <vers edition="rc3" num="2.6.32" />
                <vers edition="rc4" num="2.6.32" />
                <vers edition="rc5" num="2.6.32" />
                <vers edition="rc6" num="2.6.32" />
                <vers edition="rc7" num="2.6.32" />
                <vers edition="rc8" num="2.6.32" />
                <vers num="2.6.32.1" />
                <vers num="2.6.32.2" />
                <vers num="2.6.32.3" />
                <vers num="2.6.32.4" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0390" seq="2010-0390" severity="High" type="CVE" published="2010-01-26" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-27">
        <desc>
            <descript source="cve">Unrestricted file upload vulnerability in maxImageUpload/index.php in PHP F1 Max's Image Uploader 1.0, when Apache is not configured to handle the mime-type for files with pjpeg or jpeg extensions, allows remote attackers to execute arbitrary code by uploading a file with a pjpeg or jpeg extension, then accessing it via a direct request to the file in original/.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11169">http://www.exploit-db.com/exploits/11169</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38018" adv="1">38018</ref>
            <ref source="OSVDB" url="http://osvdb.org/61808">61808</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpf1" name="max's_image_uploader">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2010-0391" seq="2010-0391" severity="High" type="CVE" published="2010-01-26" CVSS_version="2.0" CVSS_score="10.0" modified="2010-01-27">
        <desc>
            <descript source="cve">Multiple stack-based buffer overflows in Embarcadero Technologies InterBase SMP 2009 9.0.3.437 allow remote attackers to execute arbitrary code via unknown vectors involving crafted packets.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/37916">37916</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38285" adv="1">38285</ref>
            <ref source="OSVDB" url="http://osvdb.org/61892">61892</ref>
        </refs>
        <vuln_soft>
            <prod vendor="embarcadero" name="interbase_smp_2009">
                <vers num="9.0.3.437" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0392" seq="2010-0392" severity="High" type="CVE" published="2010-01-26" CVSS_version="2.0" CVSS_score="9.3" modified="2010-01-27">
        <desc>
            <descript source="cve">Stack-based buffer overflow in vpnconf.exe in TheGreenBow IPSec VPN Client 4.51.001, 4.65.003, and possibly other versions, allows user-assisted remote attackers to execute arbitrary code via a long OpenScriptAfterUp parameter in a policy (.tgb) file, related to "phase 2."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.thegreenbow.com/download.php?id=1000150">http://www.thegreenbow.com/download.php?id=1000150</ref>
            <ref source="MISC" patch="1" url="http://www.senseofsecurity.com.au/advisories/SOS-10-001">http://www.senseofsecurity.com.au/advisories/SOS-10-001</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55793">ipsecvpnclient-tgb-bo(55793)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509091/100/0/threaded">20100121 TheGreenBow VPN Client Local Stack Overflow Vulnerability - Security Advisory - SOS-10-001</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38262" adv="1">38262</ref>
            <ref source="OSVDB" url="http://osvdb.org/61866">61866</ref>
        </refs>
        <vuln_soft>
            <prod vendor="thegreenbow" name="ipsec_vpn_client">
                <vers num="4.51.001" />
                <vers num="4.65.003" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="1.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="2.9" name="CVE-2009-3556" seq="2009-3556" severity="Low" type="CVE" published="2010-01-27" CVSS_version="2.0" CVSS_score="1.9" modified="2010-01-28">
        <desc>
            <descript source="cve">A certain Red Hat configuration step for the qla2xxx driver in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when N_Port ID Virtualization (NPIV) hardware is used, sets world-writable permissions for the (1) vport_create and (2) vport_delete files under /sys/class/scsi_host/, which allows local users to make arbitrary changes to SCSI host attributes by modifying these files.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="REDHAT" url="https://rhn.redhat.com/errata/RHSA-2010-0046.html">RHSA-2010:0046</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=537177">https://bugzilla.redhat.com/show_bug.cgi?id=537177</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55809">kernel-qla2xxx-security-bypass(55809)</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/20/2">[oss-security] 20100120 CVE-2009-3556 kernel: qla2xxx NPIV vport management pseudofiles are world writable</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.6.18" />
            </prod>
            <prod vendor="redhat" name="enterprise_linux">
                <vers num="5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2009-4272" seq="2009-4272" severity="High" type="CVE" published="2010-01-27" CVSS_version="2.0" CVSS_score="7.8" modified="2010-01-28">
        <desc>
            <descript source="cve">A certain Red Hat patch for net/ipv4/route.c in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5 allows remote attackers to cause a denial of service (deadlock) via crafted packets that force collisions in the IPv4 routing hash table, and trigger a routing "emergency" in which a hash chain is too long.  NOTE: this is related to an issue in the Linux kernel before 2.6.31, when the kernel routing cache is disabled, involving an uninitialized pointer and a panic.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="REDHAT" url="https://rhn.redhat.com/errata/RHSA-2010-0046.html">RHSA-2010:0046</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=545411">https://bugzilla.redhat.com/show_bug.cgi?id=545411</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55808">linux-kernel-routing-dos(55808)</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/20/6">[oss-security] 20100120 Re: CVE-2009-4272 kernel: emergency route cache flushing leads to node deadlock</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/20/1">[oss-security] 20100120 CVE-2009-4272 kernel: emergency route cache flushing leads to node deadlock</ref>
            <ref source="CONFIRM" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.31">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.31</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b6280b47a7a42970d098a3059f4ebe7e55e90d8d">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b6280b47a7a42970d098a3059f4ebe7e55e90d8d</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=73e42897e8e5619eacb787d2ce69be12f47cfc21">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=73e42897e8e5619eacb787d2ce69be12f47cfc21</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="kernel">
                <vers num="2.6.18" />
            </prod>
            <prod vendor="redhat" name="enterprise_linux">
                <vers num="5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="4.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.4" name="CVE-2003-1575" seq="2003-1575" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.6" modified="2010-01-31">
        <desc>
            <descript source="cve">VERITAS File System (VxFS) 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 for Sun Solaris 2.5.1 through 9 does not properly implement inheritance of default ACLs in certain circumstances related to the characteristics of a directory inode, which allows local users to bypass intended file permissions by accessing a file on a VxFS filesystem.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200161-1" adv="1">200161</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-113207-05-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-113207-05-1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="symantec" name="vxfs">
                <vers num="3.3.3" />
                <vers num="3.4" />
                <vers num="3.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2003-1576" seq="2003-1576" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="10.0" modified="2010-01-31">
        <desc>
            <descript source="cve">Buffer overflow in pamverifier in Change Manager (CM) 1.0 for Sun Management Center (SunMC) 3.0 on Solaris 8 and 9 on the sparc platform allows remote attackers to execute arbitrary code via unspecified vectors.</descript>
        </desc>
        <impacts>
            <impact source="nvd">Per: http://sunsolve.sun.com/search/document.do?assetkey=1-66-201231-1



    * "SunMC Change Manager" 1.0 is an unbundled Sun Management Center (SunMC) 3.0 add-on. It is not a part of the SunMC "base" product.
    * Solaris 2.6 and 7 are not affected. Solaris on the x86 platform is not affected.</impact>
        </impacts>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201231-1" adv="1">201231</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-113105-01-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-113105-01-1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="change_manager">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2004-2765" seq="2004-2765" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.3" modified="2010-01-31">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via a crafted e-mail message, a different vulnerability than CVE-2005-2022 and CVE-2006-5486.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201601-1" adv="1">201601</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-116568-56-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-116568-56-1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="iplanet_messaging_server">
                <vers num="5.2" />
            </prod>
            <prod vendor="sun" name="one_messaging_server">
                <vers num="6.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2004-2766" seq="2004-2766" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.3" modified="2010-01-31">
        <desc>
            <descript source="cve">Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02 allows remote attackers to obtain unspecified "access" to e-mail via a crafted e-mail message, related to a "session hijacking" issue, a different vulnerability than CVE-2005-2022 and CVE-2006-5486.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201180-1" adv="1">201180</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-116568-55-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-116568-55-1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="iplanet_messaging_server">
                <vers num="5.2" />
            </prod>
            <prod vendor="sun" name="one_messaging_server">
                <vers num="6.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2005-4885" seq="2005-4885" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-31">
        <desc>
            <descript source="cve">Unspecified vulnerability on certain Sun StorEdge 6130 (SE6130) Controller Arrays allows remote attackers to delete data via unknown vectors.</descript>
        </desc>
        <impacts>
            <impact source="nvd">Per: http://sunsolve.sun.com/search/document.do?assetkey=1-66-200971-1

This issue can occur on the following platform:

    * Sun StorEdge 6130 arrays with a serial number in the range of 0451AWF00G - 0513AWF00J</impact>
        </impacts>
        <sols>
            <sol source="nvd">Per: http://sunsolve.sun.com/search/document.do?assetkey=1-66-200971-1


"Resolution

Customers with an array that falls within the serial number range defined above should contact their Sun authorized service provider and reference this Sun Alert to obtain a utility which will resolve this issue."</sol>
        </sols>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200971-1" adv="1">200971</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="storedge_6130_arrays">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2009-2693" seq="2009-2693" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="5.8" modified="2010-01-31">
        <desc>
            <descript source="cve">Directory traversal vulnerability in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in an entry in a WAR file, as demonstrated by a ../../bin/catalina.bat entry.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0213" adv="1">ADV-2010-0213</ref>
            <ref source="CONFIRM" patch="1" url="http://tomcat.apache.org/security-6.html" adv="1">http://tomcat.apache.org/security-6.html</ref>
            <ref source="CONFIRM" patch="1" url="http://tomcat.apache.org/security-5.html" adv="1">http://tomcat.apache.org/security-5.html</ref>
            <ref source="CONFIRM" patch="1" url="http://svn.apache.org/viewvc?rev=892815&amp;view=rev">http://svn.apache.org/viewvc?rev=892815&amp;view=rev</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55855">tomcat-war-directory-traversal(55855)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37944">37944</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509148/100/0/threaded">20100124 [SECURITY] CVE-2009-2693 Apache Tomcat unexpected file deletion and/or alteration</ref>
            <ref source="CONFIRM" url="http://svn.apache.org/viewvc?rev=902650&amp;view=rev">http://svn.apache.org/viewvc?rev=902650&amp;view=rev</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023505">1023505</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38346" adv="1">38346</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38316" adv="1">38316</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="tomcat">
                <vers num="5.5.0" />
                <vers num="5.5.1" />
                <vers num="5.5.10" />
                <vers num="5.5.11" />
                <vers num="5.5.12" />
                <vers num="5.5.13" />
                <vers num="5.5.14" />
                <vers num="5.5.15" />
                <vers num="5.5.16" />
                <vers num="5.5.17" />
                <vers num="5.5.18" />
                <vers num="5.5.19" />
                <vers num="5.5.2" />
                <vers num="5.5.20" />
                <vers num="5.5.21" />
                <vers num="5.5.22" />
                <vers num="5.5.23" />
                <vers num="5.5.24" />
                <vers num="5.5.25" />
                <vers num="5.5.26" />
                <vers num="5.5.27" />
                <vers num="5.5.28" />
                <vers num="5.5.3" />
                <vers num="5.5.4" />
                <vers num="5.5.5" />
                <vers num="5.5.6" />
                <vers num="5.5.7" />
                <vers num="5.5.8" />
                <vers num="5.5.9" />
                <vers num="6.0" />
                <vers num="6.0.0" />
                <vers num="6.0.1" />
                <vers num="6.0.10" />
                <vers num="6.0.11" />
                <vers num="6.0.12" />
                <vers num="6.0.13" />
                <vers num="6.0.14" />
                <vers num="6.0.15" />
                <vers num="6.0.16" />
                <vers num="6.0.17" />
                <vers num="6.0.18" />
                <vers num="6.0.19" />
                <vers num="6.0.2" />
                <vers num="6.0.20" />
                <vers num="6.0.3" />
                <vers num="6.0.4" />
                <vers num="6.0.5" />
                <vers num="6.0.6" />
                <vers num="6.0.7" />
                <vers num="6.0.8" />
                <vers num="6.0.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-2901" seq="2009-2901" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.3" modified="2010-01-31">
        <desc>
            <descript source="cve">The autodeployment process in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20, when autoDeploy is enabled, deploys appBase files that remain from a failed undeploy, which might allow remote attackers to bypass intended authentication requirements via HTTP requests.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0213" adv="1">ADV-2010-0213</ref>
            <ref source="CONFIRM" patch="1" url="http://tomcat.apache.org/security-6.html" adv="1">http://tomcat.apache.org/security-6.html</ref>
            <ref source="CONFIRM" patch="1" url="http://tomcat.apache.org/security-5.html" adv="1">http://tomcat.apache.org/security-5.html</ref>
            <ref source="CONFIRM" patch="1" url="http://svn.apache.org/viewvc?rev=902650&amp;view=rev">http://svn.apache.org/viewvc?rev=902650&amp;view=rev</ref>
            <ref source="CONFIRM" patch="1" url="http://svn.apache.org/viewvc?rev=892815&amp;view=rev">http://svn.apache.org/viewvc?rev=892815&amp;view=rev</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55856">tomcat-autodeploy-security-bypass(55856)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37942">37942</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509151/100/0/threaded">20100124 [SECURITY] CVE-2009-2901 Apache Tomcat insecure partial deploy after failed undeploy</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023503">1023503</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38346" adv="1">38346</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38316" adv="1">38316</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="tomcat">
                <vers num="5.5.0" />
                <vers num="5.5.1" />
                <vers num="5.5.10" />
                <vers num="5.5.11" />
                <vers num="5.5.12" />
                <vers num="5.5.13" />
                <vers num="5.5.14" />
                <vers num="5.5.15" />
                <vers num="5.5.16" />
                <vers num="5.5.17" />
                <vers num="5.5.18" />
                <vers num="5.5.19" />
                <vers num="5.5.2" />
                <vers num="5.5.20" />
                <vers num="5.5.21" />
                <vers num="5.5.22" />
                <vers num="5.5.23" />
                <vers num="5.5.24" />
                <vers num="5.5.25" />
                <vers num="5.5.26" />
                <vers num="5.5.27" />
                <vers num="5.5.28" />
                <vers num="5.5.3" />
                <vers num="5.5.4" />
                <vers num="5.5.5" />
                <vers num="5.5.6" />
                <vers num="5.5.7" />
                <vers num="5.5.8" />
                <vers num="5.5.9" />
                <vers num="6.0" />
                <vers num="6.0.0" />
                <vers num="6.0.1" />
                <vers num="6.0.10" />
                <vers num="6.0.11" />
                <vers num="6.0.12" />
                <vers num="6.0.13" />
                <vers num="6.0.14" />
                <vers num="6.0.15" />
                <vers num="6.0.16" />
                <vers num="6.0.17" />
                <vers num="6.0.18" />
                <vers num="6.0.19" />
                <vers num="6.0.2" />
                <vers num="6.0.20" />
                <vers num="6.0.3" />
                <vers num="6.0.4" />
                <vers num="6.0.5" />
                <vers num="6.0.6" />
                <vers num="6.0.7" />
                <vers num="6.0.8" />
                <vers num="6.0.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-2902" seq="2009-2902" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-02">
        <desc>
            <descript source="cve">Directory traversal vulnerability in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20 allows remote attackers to delete work-directory files via directory traversal sequences in a WAR filename, as demonstrated by the ...war filename.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55857">apache-tomcat-war-directory-traversal(55857)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0213">ADV-2010-0213</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37945">37945</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509150/100/0/threaded">20100124 [SECURITY] CVE-2009-2902 Apache Tomcat unexpected file deletion in work directory</ref>
            <ref source="CONFIRM" url="http://tomcat.apache.org/security-6.html">http://tomcat.apache.org/security-6.html</ref>
            <ref source="CONFIRM" url="http://tomcat.apache.org/security-5.html">http://tomcat.apache.org/security-5.html</ref>
            <ref source="CONFIRM" url="http://svn.apache.org/viewvc?rev=902650&amp;view=rev">http://svn.apache.org/viewvc?rev=902650&amp;view=rev</ref>
            <ref source="CONFIRM" url="http://svn.apache.org/viewvc?rev=892815&amp;view=rev">http://svn.apache.org/viewvc?rev=892815&amp;view=rev</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023504">1023504</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38346">38346</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38316" adv="1">38316</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="tomcat">
                <vers num="5.5.0" />
                <vers num="5.5.1" />
                <vers num="5.5.10" />
                <vers num="5.5.11" />
                <vers num="5.5.12" />
                <vers num="5.5.13" />
                <vers num="5.5.14" />
                <vers num="5.5.15" />
                <vers num="5.5.16" />
                <vers num="5.5.17" />
                <vers num="5.5.18" />
                <vers num="5.5.19" />
                <vers num="5.5.2" />
                <vers num="5.5.20" />
                <vers num="5.5.21" />
                <vers num="5.5.22" />
                <vers num="5.5.23" />
                <vers num="5.5.24" />
                <vers num="5.5.25" />
                <vers num="5.5.26" />
                <vers num="5.5.27" />
                <vers num="5.5.28" />
                <vers num="5.5.3" />
                <vers num="5.5.4" />
                <vers num="5.5.5" />
                <vers num="5.5.6" />
                <vers num="5.5.7" />
                <vers num="5.5.8" />
                <vers num="5.5.9" />
                <vers num="6.0" />
                <vers num="6.0.0" />
                <vers num="6.0.1" />
                <vers num="6.0.10" />
                <vers num="6.0.11" />
                <vers num="6.0.12" />
                <vers num="6.0.13" />
                <vers num="6.0.14" />
                <vers num="6.0.15" />
                <vers num="6.0.16" />
                <vers num="6.0.17" />
                <vers num="6.0.18" />
                <vers num="6.0.19" />
                <vers num="6.0.2" />
                <vers num="6.0.20" />
                <vers num="6.0.3" />
                <vers num="6.0.4" />
                <vers num="6.0.5" />
                <vers num="6.0.6" />
                <vers num="6.0.7" />
                <vers num="6.0.8" />
                <vers num="6.0.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="4.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.4" name="CVE-2009-4183" seq="2009-4183" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.6" modified="2010-02-02">
        <desc>
            <descript source="cve">Unspecified vulnerability in HP OpenView Storage Data Protector 6.00 and 6.10 allows local users to obtain unspecified "access" via unknown vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/37964">37964</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/61955">61955</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38306" adv="1">38306</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=126461112019142&amp;w=2">SSRT090171</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=126461112019142&amp;w=2">SSRT090171</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hp" name="openview_storage_data_protector">
                <vers num="6.00" />
                <vers num="6.10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:C)" CVSS_base_score="9.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="8.5" name="CVE-2010-0139" seq="2010-0139" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="9.0" modified="2010-01-29">
        <desc>
            <descript source="cve">Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.2, and possibly 5 does not properly validate SQL commands, which allows remote attackers to create, modify, or delete data in a database via unspecified vectors, aka Bug ID CSCtc39691.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CISCO" patch="1" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37965">37965</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="unified_meetingplace">
                <vers num="5" />
                <vers num="5.0" />
                <vers num="6.0" />
                <vers num="7.0" />
                <vers num="7.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2010-0140" seq="2010-0140" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="10.0" modified="2010-01-31">
        <desc>
            <descript source="cve">Multiple unspecified vulnerabilities in the web server in Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.3, and possibly 5 allow remote attackers to create (1) user or (2) administrator accounts via a crafted URL in a request to the internal interface, aka Bug IDs CSCtc59231 and CSCtd40661.</descript>
            <descript source="nvd">Per: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml


Affected Products
Vulnerable Products

Cisco Unified MeetingPlace versions 5, 6, and 7 are each affected by at least one of the vulnerabilities described in this document.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CISCO" patch="1" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37965">37965</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="unified_meetingplace">
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="5.4" />
                <vers num="6.0" />
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers num="7.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2010-0141" seq="2010-0141" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="6.4" modified="2010-01-29">
        <desc>
            <descript source="cve">MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote attackers to discover usernames, passwords, and unspecified other data from the user database via a modified authentication sequence to the Audio Server, aka Bug ID CSCsv76935.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CISCO" patch="1" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37965">37965</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="unified_meetingplace">
                <vers num="6.0" />
                <vers num="6.0.170.0" />
                <vers num="6.0.244" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:C/I:C/A:C)" CVSS_base_score="8.5" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="10.0" name="CVE-2010-0142" seq="2010-0142" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="8.5" modified="2010-01-31">
        <desc>
            <descript source="cve">MeetingTime in Cisco Unified MeetingPlace 6 before MR5, and possibly 5, allows remote authenticated users to gain privileges via a modified authentication sequence, aka Bug ID CSCsv66530.</descript>
            <descript source="nvd">Per: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml


Affected Products
Vulnerable Products

Cisco Unified MeetingPlace versions 5, 6, and 7 are each affected by at least one of the vulnerabilities described in this document.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CISCO" patch="1" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml" adv="1">20100127 Multiple Vulnerabilities in Cisco Unified MeetingPlace</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37965">37965</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="unified_meetingplace">
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="5.4" />
                <vers num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0454" seq="2010-0454" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in cgi/cgilua.exe/sys/start.htm in Publique! 2.3 allows remote attackers to execute arbitrary SQL commands via the sid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509142/100/0/threaded">20100125 Publique! CMS SQL Injection Vulnerabilities</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38302" adv="1">38302</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/publique-sql.txt">http://packetstormsecurity.org/1001-exploits/publique-sql.txt</ref>
            <ref source="OSVDB" url="http://osvdb.org/61941">61941</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fabricadigital" name="publique">
                <vers num="2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2010-0455" seq="2010-0455" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="4.3" modified="2010-01-29">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in forum/viewtopic.php in PunBB 1.3 allows remote attackers to inject arbitrary web script or HTML via the pid parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55853">punbb-viewtopic-xss(55853)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37930">37930</ref>
            <ref source="MISC" url="http://www.packetstormsecurity.com/1001-exploits/punbb13-xss.txt">http://www.packetstormsecurity.com/1001-exploits/punbb13-xss.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="punbb" name="punbb">
                <vers num="1.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0456" seq="2010-0456" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in the indianpulse Game Server (com_gameserver) component 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the grp parameter in a gameserver action to index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55829">gameserver-grp-sql-injection(55829)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37934">37934</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37920">37920</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11222">http://www.exploit-db.com/exploits/11222</ref>
        </refs>
        <vuln_soft>
            <prod vendor="indianpulses" name="com_gameserver">
                <vers num="1.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0457" seq="2010-0457" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in home.php in magic-portal 2.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55849">magicportal-home-sql-injection(55849)</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11235">http://www.exploit-db.com/exploits/11235</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/magicportal-sql.txt">http://packetstormsecurity.org/1001-exploits/magicportal-sql.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="a3malnet" name="magic-portal">
                <vers num="2.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0458" seq="2010-0458" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-29">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in NetArt Media Blog System 1.5 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to index.php log.php and the (2) note parameter to b.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55818">blogsystem-index-sql-injection(55818)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37911">37911</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11216">http://www.exploit-db.com/exploits/11216</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/0512-exploits/blog12SQL.txt">http://packetstormsecurity.org/0512-exploits/blog12SQL.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="netart_media" name="blog_system">
                <vers num="1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0459" seq="2010-0459" severity="High" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="7.5" modified="2010-01-29">
        <desc>
            <descript source="cve">SQL injection vulnerability in the Mochigames (com_mochigames) component 0.51 and possibly other versions for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55841">mochigames-index-sql-injection(55841)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37931">37931</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11243">http://www.exploit-db.com/exploits/11243</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/joomlamochigames-sql.txt">http://packetstormsecurity.org/1001-exploits/joomlamochigames-sql.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="yoflash" name="com_mochigames">
                <vers num="0.51" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:N/I:P/A:N)" CVSS_base_score="3.5" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="2.9" name="CVE-2010-0460" seq="2010-0460" severity="Low" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="3.5" modified="2010-01-31">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in staff/index.php in Kayako SupportSuite 3.60.04 and earlier allow remote authenticated users to inject arbitrary web script or HTML via the (1) subject parameter and (2) contents parameter (aka body) in an insertquestion action.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55859">supportsuite-contents-xss(55859)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37947">37947</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509122/100/0/threaded">20100121 Kayako SupportSuite Multiple Persistent Cross Site Scripting (Current Versions)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38322" adv="1">38322</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-advisories/kayako-xss.txt">http://packetstormsecurity.org/1001-advisories/kayako-xss.txt</ref>
            <ref source="OSVDB" url="http://osvdb.org/61928">61928</ref>
        </refs>
        <vuln_soft>
            <prod vendor="kayako" name="esupport">
                <vers num="3.60.04" prev="1" />
            </prod>
            <prod vendor="kayako" name="supportsuite">
                <vers num="3.0" />
                <vers num="3.00.26" />
                <vers num="3.00.32" />
                <vers num="3.10.00" />
                <vers num="3.10.02" />
                <vers num="3.11.00" />
                <vers num="3.11.01" />
                <vers num="3.20.02" />
                <vers edition="rc2" num="3.30" />
                <vers edition="rc3" num="3.30" />
                <vers num="3.50.06" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2010-0461" seq="2010-0461" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="6.5" modified="2010-01-31">
        <desc>
            <descript source="cve">SQL injection vulnerability in the casino (com_casino) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a (1) category or (2) player action to index.php.</descript>
            <descript source="nvd">Exploit PoC reference links indicate a prerequisite of privileged authenticated user.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55846">casino-indexphp-sql-injection(55846)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37938">37938</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11237">http://www.exploit-db.com/exploits/11237</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/joomlacasino1-sql.txt">http://packetstormsecurity.org/1001-exploits/joomlacasino1-sql.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="joomla" name="com_casino">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2010-0462" seq="2010-0462" severity="Medium" type="CVE" published="2010-01-28" CVSS_version="2.0" CVSS_score="6.5" modified="2010-01-31">
        <desc>
            <descript source="cve">Heap-based buffer overflow in IBM DB2 9.7 and 9.7.1 on Linux allows remote authenticated users to have an unspecified impact via a SELECT statement that has a long column name generated with the REPEAT function.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55899">db2-sysibm-bo(55899)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37976">37976</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023509">1023509</ref>
            <ref source="MISC" url="http://intevydis.blogspot.com/2010/01/ibm-db2-97-heap-overflow.html">http://intevydis.blogspot.com/2010/01/ibm-db2-97-heap-overflow.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="db2">
                <vers num="9.7" />
                <vers num="9.7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-2624" seq="2009-2624" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="6.8" modified="2010-02-02">
        <desc>
            <descript source="cve">The huft_build function in inflate.c in gzip before 1.3.13 creates a hufts (aka huffman) table that is too small, which allows remote attackers to cause a denial of service (application crash or infinite loop) or possibly execute arbitrary code via a crafted archive.  NOTE: this issue is caused by a CVE-2006-4334 regression.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=514711">https://bugzilla.redhat.com/show_bug.cgi?id=514711</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0185">ADV-2010-0185</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-889-1">USN-889-1</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:020">MDVSA-2010:020</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1974">DSA-1974</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38232" adv="1">38232</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38223" adv="1">38223</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38132" adv="1">38132</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html">SUSE-SA:2010:008</ref>
            <ref source="CONFIRM" url="http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=39a362ae9d9b007473381dba5032f4dfc1744cf2">http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=39a362ae9d9b007473381dba5032f4dfc1744cf2</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507263">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=507263</ref>
            <ref source="MLIST" url="http://article.gmane.org/gmane.comp.gnu.gzip.bugs/258">[bug-gzip] 20091002 gzip-1.3.13 released [major]</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gnu" name="gzip">
                <vers num="1.2.4" />
                <vers num="1.2.4a" />
                <vers num="1.3" />
                <vers num="1.3.1" />
                <vers num="1.3.10" />
                <vers num="1.3.11" />
                <vers num="1.3.12" prev="1" />
                <vers num="1.3.2" />
                <vers num="1.3.3" />
                <vers num="1.3.4" />
                <vers num="1.3.5" />
                <vers num="1.3.6" />
                <vers num="1.3.7" />
                <vers num="1.3.8" />
                <vers num="1.3.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-4629" seq="2009-4629" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-02">
        <desc>
            <descript source="cve">Mozilla Necko, as used in Thunderbird 3.0.1, SeaMonkey, and other applications, performs DNS prefetching even when the app type is APP_TYPE_MAIL or APP_TYPE_EDITOR, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests, as demonstrated by DNS requests triggered by reading text/plain e-mail messages in Thunderbird.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="https://secure.grepular.com/DNS_Prefetch_Exposure_on_Thunderbird_and_Webmail">https://secure.grepular.com/DNS_Prefetch_Exposure_on_Thunderbird_and_Webmail</ref>
            <ref source="CONFIRM" url="https://bugzilla.mozilla.org/show_bug.cgi?id=492196">https://bugzilla.mozilla.org/show_bug.cgi?id=492196</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="seamonkey">
                <vers num="" />
            </prod>
            <prod vendor="mozilla" name="thunderbird">
                <vers num="3.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-4630" seq="2009-4630" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2010-01-31">
        <desc>
            <descript source="cve">Mozilla Necko, as used in Firefox, SeaMonkey, and other applications, performs DNS prefetching of domain names contained in links within local HTML documents, which makes it easier for remote attackers to determine the network location of the application's user by logging DNS requests.  NOTE: the vendor disputes the significance of this issue, stating "I don't think we necessarily need to worry about that case."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="https://bugzilla.mozilla.org/show_bug.cgi?id=492196">https://bugzilla.mozilla.org/show_bug.cgi?id=492196</ref>
            <ref source="MISC" url="https://bugzilla.mozilla.org/show_bug.cgi?id=453403">https://bugzilla.mozilla.org/show_bug.cgi?id=453403</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="firefox">
                <vers num="" />
            </prod>
            <prod vendor="mozilla" name="seamonkey">
                <vers num="" />
            </prod>
            <prod vendor="mozilla" name="thunderbird">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2010-0001" seq="2010-0001" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="6.8" modified="2010-02-02">
        <desc>
            <descript source="cve">Integer underflow in the unlzw function in unlzw.c in gzip before 1.4 on 64-bit platforms allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted archive that uses LZW compression, leading to an array index error.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=554418">https://bugzilla.redhat.com/show_bug.cgi?id=554418</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0185" adv="1">ADV-2010-0185</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-889-1">USN-889-1</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2010-0061.html">RHSA-2010:0061</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/61869">61869</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:020">MDVSA-2010:020</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2010:019">MDVSA-2010:019</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1974">DSA-1974</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023490">1023490</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38232" adv="1">38232</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38225" adv="1">38225</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38223" adv="1">38223</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38220" adv="1">38220</ref>
            <ref source="CONFIRM" url="http://savannah.gnu.org/forum/forum.php?forum_id=6153">http://savannah.gnu.org/forum/forum.php?forum_id=6153</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html">SUSE-SA:2010:008</ref>
            <ref source="CONFIRM" url="http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=a3db5806d012082b9e25cc36d09f19cd736a468f">http://git.savannah.gnu.org/cgit/gzip.git/commit/?id=a3db5806d012082b9e25cc36d09f19cd736a468f</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gnu" name="gzip">
                <vers num="1.2.4" />
                <vers num="1.2.4a" />
                <vers num="1.3" />
                <vers num="1.3.1" />
                <vers num="1.3.10" />
                <vers num="1.3.11" />
                <vers num="1.3.12" />
                <vers num="1.3.13" prev="1" />
                <vers num="1.3.2" />
                <vers num="1.3.3" />
                <vers num="1.3.4" />
                <vers num="1.3.5" />
                <vers num="1.3.6" />
                <vers num="1.3.7" />
                <vers num="1.3.8" />
                <vers num="1.3.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0004" seq="2010-0004" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-02">
        <desc>
            <descript source="cve">ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01464.html">FEDORA-2009-13634</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01421.html">FEDORA-2009-13610</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/14/4">[oss-security] 20100114 Re: CVE Request: viewvc</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/13/5">[oss-security] 20100113 Re: CVE Request: viewvc</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/11/2">[oss-security] 20100111 CVE Request: viewvc</ref>
            <ref source="CONFIRM" url="http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300">http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300</ref>
            <ref source="CONFIRM" url="http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD">http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD</ref>
            <ref source="CONFIRM" url="http://viewvc.tigris.org/source/browse/%2Acheckout%2A/viewvc/trunk/docs/release-notes/1.1.0.html?revision=2222">http://viewvc.tigris.org/source/browse/*checkout*/viewvc/trunk/docs/release-notes/1.1.0.html?revision=2222</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html">SUSE-SA:2010:008</ref>
        </refs>
        <vuln_soft>
            <prod vendor="viewvc" name="viewvc">
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0.5" />
                <vers num="1.0.6" />
                <vers num="1.0.7" />
                <vers num="1.0.8" />
                <vers num="1.1.0" />
                <vers num="1.1.1" />
                <vers num="1.1.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0005" seq="2010-0005" severity="High" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-02">
        <desc>
            <descript source="cve">query.py in the query interface in ViewVC before 1.1.3 does not reject configurations that specify an unsupported authorizer for a root, which might allow remote attackers to bypass intended access restrictions via a query.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD">http://viewvc.tigris.org/source/browse/viewvc/trunk/CHANGES?r1=2242&amp;r2=2313&amp;pathrev=HEAD</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01464.html">FEDORA-2009-13634</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2009-December/msg01421.html">FEDORA-2009-13610</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/13/5">[oss-security] 20100113 Re: CVE Request: viewvc</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/11/2">[oss-security] 20100111 CVE Request: viewvc</ref>
            <ref source="CONFIRM" url="http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300">http://viewvc.tigris.org/source/browse/viewvc?view=rev&amp;revision=2300</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2010-01/msg00009.html">SUSE-SA:2010:008</ref>
        </refs>
        <vuln_soft>
            <prod vendor="viewvc" name="viewvc">
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0.5" />
                <vers num="1.0.6" />
                <vers num="1.0.7" />
                <vers num="1.0.8" />
                <vers num="1.1.0" />
                <vers num="1.1.1" />
                <vers num="1.1.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0463" seq="2010-0463" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-02">
        <desc>
            <descript source="cve">Horde IMP 4.3.6 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://bugs.horde.org/ticket/8836">http://bugs.horde.org/ticket/8836</ref>
            <ref source="MISC" url="https://secure.grepular.com/DNS_Prefetch_Exposure_on_Thunderbird_and_Webmail">https://secure.grepular.com/DNS_Prefetch_Exposure_on_Thunderbird_and_Webmail</ref>
        </refs>
        <vuln_soft>
            <prod vendor="horde" name="imp">
                <vers num="2.0" />
                <vers num="2.2" />
                <vers num="2.2.1" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.8" />
                <vers num="2.3" />
                <vers num="3.0" />
                <vers num="3.1" />
                <vers num="3.1.2" />
                <vers num="3.2" />
                <vers num="3.2.1" />
                <vers num="3.2.2" />
                <vers num="3.2.3" />
                <vers num="3.2.4" />
                <vers num="3.2.5" />
                <vers num="3.2.6" />
                <vers edition="rc1" num="3.2.7" />
                <vers num="4.0" />
                <vers num="4.0.1" />
                <vers num="4.0.2" />
                <vers num="4.0.3" />
                <vers num="4.0.4" />
                <vers num="4.1.3" />
                <vers num="4.1.5" />
                <vers num="4.1.6" />
                <vers num="4.2" />
                <vers num="4.2.1" />
                <vers num="4.2.2" />
                <vers num="4.3" />
                <vers num="4.3.1" />
                <vers num="4.3.2" />
                <vers num="4.3.3" />
                <vers num="4.3.4" />
                <vers num="4.3.5" />
                <vers num="4.3.6" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0464" seq="2010-0464" severity="Medium" type="CVE" published="2010-01-29" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-02">
        <desc>
            <descript source="cve">Roundcube 0.3.1 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://trac.roundcube.net/ticket/1486449">http://trac.roundcube.net/ticket/1486449</ref>
            <ref source="MISC" url="https://secure.grepular.com/DNS_Prefetch_Exposure_on_Thunderbird_and_Webmail">https://secure.grepular.com/DNS_Prefetch_Exposure_on_Thunderbird_and_Webmail</ref>
        </refs>
        <vuln_soft>
            <prod vendor="roundcube" name="roundcube_webmail">
                <vers edition="alpha" num="0.1" />
                <vers edition="beta" num="0.1" />
                <vers edition="beta2" num="0.1" />
                <vers edition="rc1" num="0.1" />
                <vers edition="rc2" num="0.1" />
                <vers num="0.1.1" />
                <vers edition="alpha" num="0.2" />
                <vers edition="beta" num="0.2" />
                <vers num="0.2.1" />
                <vers num="0.2.2" />
                <vers num="0.3" />
                <vers num="0.3.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="3.1" CVSS_impact_subscore="6.4" name="CVE-2009-3035" seq="2009-3035" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-05">
        <desc>
            <descript source="cve">The web console in Symantec Altiris Notification Server 6.0.x before 6.0 SP3 R12 uses a hardcoded key that can decrypt SQL Server credentials and certain discovery credentials, and stores this key on the Notification Server machine, which allows local users to obtain sensitive information and possibly execute arbitrary code by decrypting and using these credentials.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.symantec.com/business/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100128_00" adv="1">http://www.symantec.com/business/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2010&amp;suid=20100128_00</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55952">symantec-ans-key-unauth-access(55952)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0256">ADV-2010-0256</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37953">37953</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38356" adv="1">38356</ref>
            <ref source="OSVDB" url="http://osvdb.org/62010">62010</ref>
        </refs>
        <vuln_soft>
            <prod vendor="symantec" name="altiris_notification_server">
                <vers edition="sp1" num="6.0" />
                <vers edition="sp2" num="6.0" />
                <vers edition="sp3" num="6.0" />
                <vers edition="sp3_r7" num="6.0" />
                <vers edition="sp3_r8" num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2009-4013" seq="2009-4013" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="6.4" modified="2010-02-03">
        <desc>
            <descript source="cve">Multiple directory traversal vulnerabilities in Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allow remote attackers to overwrite arbitrary files or obtain sensitive information via vectors involving (1) control field names, (2) control field values, and (3) control files of patch systems.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/37975">37975</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-891-1">USN-891-1</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1979">DSA-1979</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38379" adv="1">38379</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38375" adv="1">38375</ref>
            <ref source="MLIST" url="http://packages.qa.debian.org/l/lintian/news/20100128T015554Z.html">[debian-changes] 20100128 Accepted lintian 1.24.2.1+lenny1 (source all)</ref>
            <ref source="CONFIRM" url="http://packages.debian.org/changelogs/pool/main/l/lintian/lintian_2.3.2/changelog">http://packages.debian.org/changelogs/pool/main/l/lintian/lintian_2.3.2/changelog</ref>
            <ref source="CONFIRM" url="http://git.debian.org/?p=lintian/lintian.git;a=commit;h=fbe0c92b2ef7e360d13414bf40d6af5507d0c86d">http://git.debian.org/?p=lintian/lintian.git;a=commit;h=fbe0c92b2ef7e360d13414bf40d6af5507d0c86d</ref>
            <ref source="CONFIRM" url="http://git.debian.org/?p=lintian/lintian.git;a=commit;h=c8d01f062b3e5137cf65196760b079a855c75e00">http://git.debian.org/?p=lintian/lintian.git;a=commit;h=c8d01f062b3e5137cf65196760b079a855c75e00</ref>
        </refs>
        <vuln_soft>
            <prod vendor="debian" name="lintian">
                <vers num="1.23.0" />
                <vers num="1.23.1" />
                <vers num="1.23.10" />
                <vers num="1.23.11" />
                <vers num="1.23.12" />
                <vers num="1.23.13" />
                <vers num="1.23.14" />
                <vers num="1.23.15" />
                <vers num="1.23.16" />
                <vers num="1.23.17" />
                <vers num="1.23.18" />
                <vers num="1.23.19" />
                <vers num="1.23.2" />
                <vers num="1.23.20" />
                <vers num="1.23.22" />
                <vers num="1.23.23" />
                <vers num="1.23.24" />
                <vers num="1.23.25" />
                <vers num="1.23.26" />
                <vers num="1.23.27" />
                <vers num="1.23.28" />
                <vers num="1.23.3" />
                <vers num="1.23.4" />
                <vers num="1.23.5" />
                <vers num="1.23.6" />
                <vers num="1.23.7" />
                <vers num="1.23.8" />
                <vers num="1.23.9" />
                <vers num="1.24.0" />
                <vers num="1.24.1" />
                <vers num="1.24.2" />
                <vers num="2.0-rc1" />
                <vers num="2.0-rc2" />
                <vers num="2.1.0" />
                <vers num="2.1.1" />
                <vers num="2.1.2" />
                <vers num="2.1.3" />
                <vers num="2.1.4" />
                <vers num="2.1.5" />
                <vers num="2.1.6" />
                <vers num="2.2.0" />
                <vers num="2.2.1" />
                <vers num="2.2.10" />
                <vers num="2.2.11" />
                <vers num="2.2.12" />
                <vers num="2.2.13" />
                <vers num="2.2.14" />
                <vers num="2.2.15" />
                <vers num="2.2.16" />
                <vers num="2.2.18" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.8" />
                <vers num="2.2.9" />
                <vers num="2.3.0" />
                <vers num="2.3.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-4014" seq="2009-4014" severity="High" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-03">
        <desc>
            <descript source="cve">Multiple format string vulnerabilities in Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allow remote attackers to have an unspecified impact via vectors involving (1) check scripts and (2) the Lintian::Schedule module.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/37975">37975</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-891-1">USN-891-1</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1979" adv="1">DSA-1979</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38379" adv="1">38379</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38375" adv="1">38375</ref>
            <ref source="MLIST" url="http://packages.qa.debian.org/l/lintian/news/20100128T015554Z.html">[debian-changes] 20100128 Accepted lintian 1.24.2.1+lenny1 (source all)</ref>
            <ref source="CONFIRM" url="http://packages.debian.org/changelogs/pool/main/l/lintian/lintian_2.3.2/changelog">http://packages.debian.org/changelogs/pool/main/l/lintian/lintian_2.3.2/changelog</ref>
            <ref source="CONFIRM" url="http://git.debian.org/?p=lintian/lintian.git;a=commit;h=fbe0c92b2ef7e360d13414bf40d6af5507d0c86d">http://git.debian.org/?p=lintian/lintian.git;a=commit;h=fbe0c92b2ef7e360d13414bf40d6af5507d0c86d</ref>
            <ref source="CONFIRM" url="http://git.debian.org/?p=lintian/lintian.git;a=commit;h=c8d01f062b3e5137cf65196760b079a855c75e00">http://git.debian.org/?p=lintian/lintian.git;a=commit;h=c8d01f062b3e5137cf65196760b079a855c75e00</ref>
        </refs>
        <vuln_soft>
            <prod vendor="debian" name="lintian">
                <vers num="1.23.0" />
                <vers num="1.23.1" />
                <vers num="1.23.10" />
                <vers num="1.23.11" />
                <vers num="1.23.12" />
                <vers num="1.23.13" />
                <vers num="1.23.14" />
                <vers num="1.23.15" />
                <vers num="1.23.16" />
                <vers num="1.23.17" />
                <vers num="1.23.18" />
                <vers num="1.23.19" />
                <vers num="1.23.2" />
                <vers num="1.23.20" />
                <vers num="1.23.22" />
                <vers num="1.23.23" />
                <vers num="1.23.24" />
                <vers num="1.23.25" />
                <vers num="1.23.26" />
                <vers num="1.23.27" />
                <vers num="1.23.28" />
                <vers num="1.23.3" />
                <vers num="1.23.4" />
                <vers num="1.23.5" />
                <vers num="1.23.6" />
                <vers num="1.23.7" />
                <vers num="1.23.8" />
                <vers num="1.23.9" />
                <vers num="1.24.0" />
                <vers num="1.24.1" />
                <vers num="1.24.2" />
                <vers num="1.24.2.1" />
                <vers num="2.0-rc1" />
                <vers num="2.0-rc2" />
                <vers num="2.1.0" />
                <vers num="2.1.1" />
                <vers num="2.1.2" />
                <vers num="2.1.3" />
                <vers num="2.1.4" />
                <vers num="2.1.5" />
                <vers num="2.1.6" />
                <vers num="2.2.0" />
                <vers num="2.2.1" />
                <vers num="2.2.10" />
                <vers num="2.2.11" />
                <vers num="2.2.12" />
                <vers num="2.2.13" />
                <vers num="2.2.14" />
                <vers num="2.2.15" />
                <vers num="2.2.16" />
                <vers num="2.2.18" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.8" />
                <vers num="2.2.9" />
                <vers num="2.3.0" />
                <vers num="2.3.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2009-4015" seq="2009-4015" severity="High" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-04">
        <desc>
            <descript source="cve">Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allows remote attackers to execute arbitrary commands via shell metacharacters in filename arguments.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/37975">37975</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/USN-891-1">USN-891-1</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1979" adv="1">DSA-1979</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38379" adv="1">38379</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38375" adv="1">38375</ref>
            <ref source="MLIST" url="http://packages.qa.debian.org/l/lintian/news/20100128T015554Z.html">[debian-changes] 20100128 Accepted lintian 1.24.2.1+lenny1 (source all)</ref>
            <ref source="CONFIRM" url="http://packages.debian.org/changelogs/pool/main/l/lintian/lintian_2.3.2/changelog">http://packages.debian.org/changelogs/pool/main/l/lintian/lintian_2.3.2/changelog</ref>
            <ref source="CONFIRM" url="http://git.debian.org/?p=lintian/lintian.git;a=commit;h=fbe0c92b2ef7e360d13414bf40d6af5507d0c86d">http://git.debian.org/?p=lintian/lintian.git;a=commit;h=fbe0c92b2ef7e360d13414bf40d6af5507d0c86d</ref>
            <ref source="CONFIRM" url="http://git.debian.org/?p=lintian/lintian.git;a=commit;h=c8d01f062b3e5137cf65196760b079a855c75e00">http://git.debian.org/?p=lintian/lintian.git;a=commit;h=c8d01f062b3e5137cf65196760b079a855c75e00</ref>
        </refs>
        <vuln_soft>
            <prod vendor="debian" name="lintian">
                <vers num="1.23.0" />
                <vers num="1.23.1" />
                <vers num="1.23.10" />
                <vers num="1.23.11" />
                <vers num="1.23.12" />
                <vers num="1.23.13" />
                <vers num="1.23.14" />
                <vers num="1.23.15" />
                <vers num="1.23.16" />
                <vers num="1.23.17" />
                <vers num="1.23.18" />
                <vers num="1.23.19" />
                <vers num="1.23.2" />
                <vers num="1.23.20" />
                <vers num="1.23.22" />
                <vers num="1.23.23" />
                <vers num="1.23.24" />
                <vers num="1.23.25" />
                <vers num="1.23.26" />
                <vers num="1.23.27" />
                <vers num="1.23.28" />
                <vers num="1.23.3" />
                <vers num="1.23.4" />
                <vers num="1.23.5" />
                <vers num="1.23.6" />
                <vers num="1.23.7" />
                <vers num="1.23.8" />
                <vers num="1.23.9" />
                <vers num="1.24.0" />
                <vers num="1.24.1" />
                <vers num="1.24.2" />
                <vers num="2.0-rc1" />
                <vers num="2.0-rc2" />
                <vers num="2.1.0" />
                <vers num="2.1.1" />
                <vers num="2.1.2" />
                <vers num="2.1.3" />
                <vers num="2.1.4" />
                <vers num="2.1.5" />
                <vers num="2.1.6" />
                <vers num="2.2.0" />
                <vers num="2.2.1" />
                <vers num="2.2.10" />
                <vers num="2.2.11" />
                <vers num="2.2.12" />
                <vers num="2.2.13" />
                <vers num="2.2.14" />
                <vers num="2.2.15" />
                <vers num="2.2.16" />
                <vers num="2.2.18" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.8" />
                <vers num="2.2.9" />
                <vers num="2.3.0" />
                <vers num="2.3.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2010-0010" seq="2010-0010" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="6.8" modified="2010-02-03">
        <desc>
            <descript source="cve">Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a large chunk size that triggers a heap-based buffer overflow.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55941">modproxy-approxysendfb-bo(55941)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0240" adv="1">ADV-2010-0240</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37966">37966</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509185/100/0/threaded">20100127 Mod_proxy from apache 1.3 - Integer overflow which causes heap overflow.</ref>
            <ref source="MISC" url="http://site.pi3.com.pl/adv/mod_proxy.txt">http://site.pi3.com.pl/adv/mod_proxy.txt</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38319" adv="1">38319</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/modproxy-overflow.txt">http://packetstormsecurity.org/1001-exploits/modproxy-overflow.txt</ref>
            <ref source="CONFIRM" url="http://httpd.apache.org/dev/dist/CHANGES_1.3.42">http://httpd.apache.org/dev/dist/CHANGES_1.3.42</ref>
            <ref source="MISC" url="http://blog.pi3.com.pl/?p=69">http://blog.pi3.com.pl/?p=69</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0589.html">20100127 Mod_proxy from apache 1.3 - Integer overflow which causes heap overflow.</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="http_server">
                <vers num="0.8.11" />
                <vers num="0.8.14" />
                <vers num="1.0" />
                <vers num="1.0.3" />
                <vers num="1.0.5" />
                <vers num="1.1" />
                <vers num="1.2" />
                <vers num="1.2.4" />
                <vers num="1.2.5" />
                <vers num="1.2.6" />
                <vers num="1.3" />
                <vers num="1.3.0" />
                <vers num="1.3.1" />
                <vers num="1.3.10" />
                <vers num="1.3.11" />
                <vers num="1.3.12" />
                <vers num="1.3.13" />
                <vers num="1.3.14" />
                <vers num="1.3.15" />
                <vers num="1.3.17" />
                <vers num="1.3.18" />
                <vers num="1.3.19" />
                <vers num="1.3.2" />
                <vers num="1.3.20" />
                <vers num="1.3.22" />
                <vers num="1.3.23" />
                <vers num="1.3.24" />
                <vers num="1.3.25" />
                <vers num="1.3.26" />
                <vers num="1.3.27" />
                <vers num="1.3.28" />
                <vers num="1.3.29" />
                <vers num="1.3.3" />
                <vers num="1.3.30" />
                <vers num="1.3.31" />
                <vers num="1.3.32" />
                <vers num="1.3.33" />
                <vers num="1.3.34" />
                <vers num="1.3.35" />
                <vers num="1.3.36" />
                <vers num="1.3.37" />
                <vers num="1.3.38" />
                <vers num="1.3.39" />
                <vers num="1.3.4" />
                <vers num="1.3.40" />
                <vers num="1.3.41" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0467" seq="2010-0467" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-03">
        <desc>
            <descript source="cve">Directory traversal vulnerability in the ccNewsletter (com_ccnewsletter) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter in a ccnewsletter action to index.php.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55953">ccnewsletter-index-dir-traversal(55953)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37987">37987</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11282">http://www.exploit-db.com/exploits/11282</ref>
            <ref source="MISC" url="http://www.exploit-db.com/exploits/11277">http://www.exploit-db.com/exploits/11277</ref>
            <ref source="CONFIRM" url="http://www.chillcreations.com/en/blog/ccnewsletter-joomla-newsletter/ccnewsletter-106-security-release.html" adv="1">http://www.chillcreations.com/en/blog/ccnewsletter-joomla-newsletter/ccnewsletter-106-security-release.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38378" adv="1">38378</ref>
        </refs>
        <vuln_soft>
            <prod vendor="chillcreations" name="com_ccnewsletter">
                <vers num="1.0.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2010-0468" seq="2010-0468" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-03">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in utilities/longproc.cfm in PaperThin CommonSpot Content Server allows remote attackers to inject arbitrary web script or HTML via the url parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55955">commonspot-longproc-xss(55955)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37986">37986</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509239/100/0/threaded">20100128 PR09-19: Cross-Site Scripting (XSS) on CommonSpot server</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0601.html">20100128 PR09-19: Cross-Site Scripting (XSS) on CommonSpot server</ref>
        </refs>
        <vuln_soft>
            <prod vendor="paperthin" name="commonspot_content_server">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0469" seq="2010-0469" severity="High" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-03">
        <desc>
            <descript source="cve">SQL injection vulnerability in Files2Links F2L 3000 appliance 4.0.0, and possibly other versions and models, allows remote attackers to execute arbitrary SQL commands via unspecified parameters to the login page.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55950">f2l3000-login-sql-injection(55950)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38310" adv="1">38310</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-advisories/DDIVRT-2009-27.txt">http://packetstormsecurity.org/1001-advisories/DDIVRT-2009-27.txt</ref>
            <ref source="OSVDB" url="http://osvdb.org/61976">61976</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0499.html">20100125 DDIVRT-2009-27 F2L-3000 files2links SQL Injection Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="files2links" name="f2l_3000_appliance">
                <vers num="4.0.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2010-0470" seq="2010-0470" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-03">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in scvrtsrv.cmd in Comtrend CT-507IT ADSL Router allows remote attackers to inject arbitrary web script or HTML via the srvName parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38004">38004</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38309" adv="1">38309</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/1001-exploits/comtrend-xss.txt">http://packetstormsecurity.org/1001-exploits/comtrend-xss.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="comtrend" name="ct-507it_adsl_router">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0471" seq="2010-0471" severity="High" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-03">
        <desc>
            <descript source="cve">SQL injection vulnerability in the comment submission interface (includes/comment.php) in Enano CMS before 1.0.6pl1 allows remote attackers to execute arbitrary SQL commands via unspecified parameters.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://enanocms.org/Release_notes/1.0.6pl1" adv="1">http://enanocms.org/Release_notes/1.0.6pl1</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/61974">61974</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38253" adv="1">38253</ref>
        </refs>
        <vuln_soft>
            <prod vendor="enanocms" name="enanocms">
                <vers num="0.8.1" />
                <vers num="0.8.2" />
                <vers num="0.8.3" />
                <vers num="0.8.4" />
                <vers num="0.9.1" />
                <vers num="0.9.2" />
                <vers num="0.9.3" />
                <vers num="1.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.2b1" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0.5" />
                <vers num="1.0.6" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2010-0442" seq="2010-0442" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="6.5" modified="2010-02-03">
        <desc>
            <descript source="cve">The bitsubstr function in backend/utils/adt/varbit.c in PostgreSQL 8.0.23, 8.1.11, and 8.3.8 allows remote authenticated users to cause a denial of service (daemon crash) or have unspecified other impact via vectors involving a negative integer in the third argument, as demonstrated by a SELECT statement that contains a call to the substring function for a bit string, related to an "overflow."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=559259">https://bugzilla.redhat.com/show_bug.cgi?id=559259</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=559194">https://bugzilla.redhat.com/show_bug.cgi?id=559194</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55902">postgresql-substring-bo(55902)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37973">37973</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/27/5">[oss-security] 20100127 Re: CVE id request: postgresql bitsubstr overflow</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023510">1023510</ref>
            <ref source="MISC" url="http://intevydis.blogspot.com/2010/01/postgresql-8023-bitsubstr-overflow.html">http://intevydis.blogspot.com/2010/01/postgresql-8023-bitsubstr-overflow.html</ref>
            <ref source="CONFIRM" url="http://git.postgresql.org/gitweb?p=postgresql.git;a=commit;h=b15087cb39ca9e4bde3c8920fcee3741045d2b83">http://git.postgresql.org/gitweb?p=postgresql.git;a=commit;h=b15087cb39ca9e4bde3c8920fcee3741045d2b83</ref>
            <ref source="CONFIRM" url="http://git.postgresql.org/gitweb?p=postgresql.git;a=commit;h=75dea10196c31d98d98c0bafeeb576ae99c09b12">http://git.postgresql.org/gitweb?p=postgresql.git;a=commit;h=75dea10196c31d98d98c0bafeeb576ae99c09b12</ref>
            <ref source="MISC" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567058">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567058</ref>
            <ref source="MLIST" url="http://archives.postgresql.org/pgsql-hackers/2010-01/msg00634.php">[pgsql-hackers] 20100107 Re: Patch: Allow substring/replace() to get/set bit values</ref>
            <ref source="MLIST" url="http://archives.postgresql.org/pgsql-committers/2010-01/msg00125.php">[pgsql-committers] 20100107 pgsql: Make bit/varbit substring() treat any negative length as meaning</ref>
        </refs>
        <vuln_soft>
            <prod vendor="postgresql" name="postgresql">
                <vers num="8.0.23" />
                <vers num="8.1.11" />
                <vers num="8.3.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0472" seq="2010-0472" severity="Medium" type="CVE" published="2010-02-02" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-03">
        <desc>
            <descript source="cve">kuddb2 in Tivoli Monitoring for DB2, as distributed in IBM DB2 9.7 FP1 on Linux, allows remote attackers to cause a denial of service (daemon crash) via a certain byte sequence.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38018">38018</ref>
            <ref source="MISC" url="http://intevydis.blogspot.com/2010/01/ibm-db2-97-kuddb2-dos.html">http://intevydis.blogspot.com/2010/01/ibm-db2-97-kuddb2-dos.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="db2">
                <vers edition="" num="9.7.0.1" />
                <vers edition=":linux" num="9.7.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:S/C:C/I:C/A:N)" CVSS_base_score="6.2" CVSS_exploit_subscore="3.1" CVSS_impact_subscore="9.2" name="CVE-2009-4184" seq="2009-4184" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="6.2" modified="2010-02-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in HP Enterprise Cluster Master Toolkit (ECMT) B.05.00 on HP-UX B.11.23 (11i v2) and HP-UX B.11.31 (11i v3) allows local users to gain access to an Oracle or Sybase database via unknown vectors.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0272" adv="1">ADV-2010-0272</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023523">1023523</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38035">38035</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38423" adv="1">38423</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01894850" adv="1">HPSBUX02464</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01894850" adv="1">HPSBUX02464</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hp" name="enterprise_cluster_master_toolkit">
                <vers num="b.05.00" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0185" seq="2010-0185" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-04">
        <desc>
            <descript source="cve">The default configuration of Adobe ColdFusion 9.0 does not restrict access to collections that have been created by the Solr Service, which allows remote attackers to obtain collection metadata, search information, and index data via a request to an unspecified URL.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55997">coldfusion-solr-information-disclosure(55997)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0259" adv="1">ADV-2010-0259</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023519">1023519</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38007">38007</ref>
            <ref source="CONFIRM" url="http://www.adobe.com/support/security/bulletins/apsb10-04.html" adv="1">http://www.adobe.com/support/security/bulletins/apsb10-04.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38387" adv="1">38387</ref>
            <ref source="OSVDB" url="http://osvdb.org/62037">62037</ref>
            <ref source="CONFIRM" url="http://kb2.adobe.com/cps/807/cpsid_80719.html">http://kb2.adobe.com/cps/807/cpsid_80719.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="adobe" name="coldfusion">
                <vers num="9.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0304" seq="2010-0304" severity="High" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-05">
        <desc>
            <descript source="cve">Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 through 1.0.10 and 1.2.0 through 1.2.5 allow remote attackers to cause a denial of service (crash) via a malformed packet, as demonstrated using a stack-based buffer overflow to the dissect_getaddrsbyname_request function.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0239" adv="1">ADV-2010-0239</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55951">wireshark-lwres-bo(55951)</ref>
            <ref source="CONFIRM" url="http://www.wireshark.org/security/wnpa-sec-2010-02.html" adv="1">http://www.wireshark.org/security/wnpa-sec-2010-02.html</ref>
            <ref source="CONFIRM" url="http://www.wireshark.org/security/wnpa-sec-2010-01.html">http://www.wireshark.org/security/wnpa-sec-2010-01.html</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023516">1023516</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37985">37985</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/01/29/4">[oss-security] 20100129 Re: CVE id request: Wireshark</ref>
            <ref source="MISC" url="http://www.metasploit.com/modules/exploit/multi/misc/wireshark_lwres_getaddrbyname">http://www.metasploit.com/modules/exploit/multi/misc/wireshark_lwres_getaddrbyname</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1983">DSA-1983</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38348" adv="1">38348</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38257" adv="1">38257</ref>
            <ref source="OSVDB" url="http://osvdb.org/61987">61987</ref>
            <ref source="MISC" url="http://anonsvn.wireshark.org/viewvc/trunk-1.2/epan/dissectors/packet-lwres.c?view=diff&amp;r1=31596&amp;r2=28492&amp;diff_format=h">http://anonsvn.wireshark.org/viewvc/trunk-1.2/epan/dissectors/packet-lwres.c?view=diff&amp;r1=31596&amp;r2=28492&amp;diff_format=h</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wireshark" name="wireshark">
                <vers num="0.9.15" />
                <vers num="1.0" />
                <vers num="1.0.0" />
                <vers num="1.0.1" />
                <vers num="1.0.10" />
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0.5" />
                <vers num="1.0.6" />
                <vers num="1.0.7" />
                <vers num="1.0.8" />
                <vers num="1.0.9" />
                <vers num="1.2" />
                <vers num="1.2.0" />
                <vers num="1.2.1" />
                <vers num="1.2.2" />
                <vers num="1.2.3" />
                <vers num="1.2.4" />
                <vers num="1.2.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:N/I:N/A:P)" CVSS_base_score="4.0" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="2.9" name="CVE-2010-0308" seq="2010-0308" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="4.0" modified="2010-02-05">
        <desc>
            <descript source="cve">lib/rfc1035.c in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15 allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.squid-cache.org/Versions/v3/3.0/changesets/squid-3.0-9163.patch">http://www.squid-cache.org/Versions/v3/3.0/changesets/squid-3.0-9163.patch</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56001">squid-dns-dos(56001)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0260" adv="1">ADV-2010-0260</ref>
            <ref source="MISC" url="http://www.squid-cache.org/Versions/v3/3.1/changesets/squid-3.1-9853.patch">http://www.squid-cache.org/Versions/v3/3.1/changesets/squid-3.1-9853.patch</ref>
            <ref source="MISC" url="http://www.squid-cache.org/Versions/v2/HEAD/changesets/12597.patch">http://www.squid-cache.org/Versions/v2/HEAD/changesets/12597.patch</ref>
            <ref source="CONFIRM" url="http://www.squid-cache.org/Advisories/SQUID-2010_1.txt" adv="1">http://www.squid-cache.org/Advisories/SQUID-2010_1.txt</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023520">1023520</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37522">37522</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38455" adv="1">38455</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38451" adv="1">38451</ref>
            <ref source="OSVDB" url="http://osvdb.org/62044">62044</ref>
            <ref source="MISC" url="http://events.ccc.de/congress/2009/Fahrplan/attachments/1483_26c3_ipv4_fuckups.pdf">http://events.ccc.de/congress/2009/Fahrplan/attachments/1483_26c3_ipv4_fuckups.pdf</ref>
        </refs>
        <vuln_soft>
            <prod vendor="squid-cache" name="squid">
                <vers num="2.0" />
                <vers num="2.1" />
                <vers num="2.2" />
                <vers num="2.3" />
                <vers num="2.4" />
                <vers num="2.5" />
                <vers num="2.6" />
                <vers num="2.7" />
                <vers num="3.0" />
                <vers num="3.0.stable1" />
                <vers num="3.0.stable11" />
                <vers num="3.0.stable12" />
                <vers num="3.0.stable13" />
                <vers num="3.0.stable14" />
                <vers num="3.0.stable15" />
                <vers num="3.0.stable16" />
                <vers num="3.0.stable17" />
                <vers num="3.0.stable18" />
                <vers num="3.0.stable19" />
                <vers num="3.0.stable2" />
                <vers num="3.0.stable20" />
                <vers num="3.0.stable21" />
                <vers num="3.0.stable22" />
                <vers num="3.0.stable3" />
                <vers num="3.0.stable4" />
                <vers num="3.0.stable5" />
                <vers num="3.0.stable6" />
                <vers num="3.0.stable7" />
                <vers num="3.0.stable8" />
                <vers num="3.0.stable9" />
                <vers num="3.1" />
                <vers num="3.1.0.1" />
                <vers num="3.1.0.10" />
                <vers num="3.1.0.11" />
                <vers num="3.1.0.12" />
                <vers num="3.1.0.13" />
                <vers num="3.1.0.14" />
                <vers num="3.1.0.15" />
                <vers num="3.1.0.2" />
                <vers num="3.1.0.3" />
                <vers num="3.1.0.4" />
                <vers num="3.1.0.5" />
                <vers num="3.1.0.6" />
                <vers num="3.1.0.7" />
                <vers num="3.1.0.8" />
                <vers num="3.1.0.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2010-0440" seq="2010-0440" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in +CSCOT+/translation in Cisco Secure Desktop 3.4.2048, and other versions before 3.5; as used in Cisco ASA appliance before 8.2(1), 8.1(2.7), and 8.0(5); allows remote attackers to inject arbitrary web script or HTML via a crafted POST parameter, which is not properly handled by an eval statement in binary/mainv.js that writes to start.html.</descript>
        </desc>
        <impacts>
            <impact source="nvd">Per: http://tools.cisco.com/security/center/viewAlert.x?alertId=19843

"Cisco Secure Desktop versions prior to 3.5 are vulnerable. Cisco Secure Desktop is a component of Cisco ASA 5500 Series Adaptive Security Appliances.  Cisco ASA appliances are vulnerable only if the Cisco Secure Desktop feature has been enabled.  Cisco ASA appliance versions prior to 8.2(1), 8.1(2.7), and 8.0(5) are vulnerable."</impact>
        </impacts>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://tools.cisco.com/security/center/viewAlert.x?alertId=19843" adv="1">http://tools.cisco.com/security/center/viewAlert.x?alertId=19843</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0273" adv="1">ADV-2010-0273</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37960">37960</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509290/100/0/threaded">20100201 [CORE-2010-0106] Cisco Secure Desktop XSS/JavaScript Injection</ref>
            <ref source="MISC" url="http://www.coresecurity.com/content/cisco-secure-desktop-xss">http://www.coresecurity.com/content/cisco-secure-desktop-xss</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38397" adv="1">38397</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="secure_desktop">
                <vers num="3.1" />
                <vers num="3.1.1" />
                <vers num="3.1.1.27" />
                <vers num="3.1.1.33" />
                <vers num="3.2" />
                <vers num="3.2.1" />
                <vers num="3.3" />
                <vers num="3.4" />
                <vers num="3.4.1" />
                <vers num="3.4.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2010-0453" seq="2010-0453" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="4.9" modified="2010-02-04">
        <desc>
            <descript source="cve">The ucode_ioctl function in intel/io/ucode_drv.c in Sun Solaris 10 and OpenSolaris snv_69 through snv_133, when running on x86 architectures, allows local users to cause a denial of service (panic) via a request with a 0 size value to the UCODE_GET_VERSION IOCTL, which triggers a NULL pointer dereference in the ucode_get_rev function, related to retrieval of the microcode revision.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0270" adv="1">ADV-2010-0270</ref>
            <ref source="CONFIRM" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-21-143913-01-1">http://sunsolve.sun.com/search/document.do?assetkey=1-21-143913-01-1</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55991">solaris-microcode-dos(55991)</ref>
            <ref source="MISC" url="http://www.trapkit.de/advisories/TKADV2010-001.txt">http://www.trapkit.de/advisories/TKADV2010-001.txt</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38016">38016</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509276/100/0/threaded">20100131 [TKADV2010-001] Oracle Solaris UCODE_GET_VERSION IOCTL Kernel NULL Pointer Dereference</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38452" adv="1">38452</ref>
            <ref source="OSVDB" url="http://osvdb.org/62046">62046</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition="" num="snv_107" />
                <vers edition=":x86" num="snv_107" />
                <vers edition="" num="snv_108" />
                <vers edition=":x86" num="snv_108" />
                <vers edition="" num="snv_109" />
                <vers edition=":x86" num="snv_109" />
                <vers edition="" num="snv_110" />
                <vers edition=":x86" num="snv_110" />
                <vers edition="" num="snv_111" />
                <vers edition=":x86" num="snv_111" />
                <vers edition="" num="snv_112" />
                <vers edition=":x86" num="snv_112" />
                <vers edition="" num="snv_113" />
                <vers edition=":x86" num="snv_113" />
                <vers edition="" num="snv_114" />
                <vers edition=":x86" num="snv_114" />
                <vers edition="" num="snv_115" />
                <vers edition=":x86" num="snv_115" />
                <vers edition="" num="snv_116" />
                <vers edition=":x86" num="snv_116" />
                <vers edition="" num="snv_117" />
                <vers edition=":x86" num="snv_117" />
                <vers edition="" num="snv_118" />
                <vers edition=":x86" num="snv_118" />
                <vers edition="" num="snv_119" />
                <vers edition=":x86" num="snv_119" />
                <vers edition="" num="snv_120" />
                <vers edition=":x86" num="snv_120" />
                <vers edition="" num="snv_121" />
                <vers edition=":x86" num="snv_121" />
                <vers edition="" num="snv_122" />
                <vers edition=":x86" num="snv_122" />
                <vers edition="" num="snv_123" />
                <vers edition=":x86" num="snv_123" />
                <vers edition="" num="snv_124" />
                <vers edition=":x86" num="snv_124" />
                <vers edition="" num="snv_125" />
                <vers edition=":x86" num="snv_125" />
                <vers edition="" num="snv_126" />
                <vers edition=":x86" num="snv_126" />
                <vers edition="" num="snv_127" />
                <vers edition=":x86" num="snv_127" />
                <vers edition="" num="snv_128" />
                <vers edition=":x86" num="snv_128" />
                <vers edition="" num="snv_129" />
                <vers edition=":x86" num="snv_129" />
                <vers edition="" num="snv_130" />
                <vers edition=":x86" num="snv_130" />
                <vers edition="" num="snv_131" />
                <vers edition=":x86" num="snv_131" />
                <vers edition="" num="snv_132" />
                <vers edition=":x86" num="snv_132" />
                <vers edition="" num="snv_133" />
                <vers edition=":x86" num="snv_133" />
                <vers edition="" num="snv_69" />
                <vers edition=":x86" num="snv_69" />
                <vers edition="" num="snv_70" />
                <vers edition=":x86" num="snv_70" />
                <vers edition="" num="snv_71" />
                <vers edition=":x86" num="snv_71" />
                <vers edition="" num="snv_72" />
                <vers edition=":x86" num="snv_72" />
                <vers edition="" num="snv_73" />
                <vers edition=":x86" num="snv_73" />
                <vers edition="" num="snv_74" />
                <vers edition=":x86" num="snv_74" />
                <vers edition="" num="snv_75" />
                <vers edition=":x86" num="snv_75" />
                <vers edition="" num="snv_76" />
                <vers edition=":x86" num="snv_76" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10.0" />
                <vers edition=":x86" num="10.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2009-3387" seq="2009-3387" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-04">
        <desc>
            <descript source="cve">Bugzilla 3.3.1 through 3.4.4, 3.5.1, and 3.5.2 does not allow group restrictions to be preserved throughout the process of moving a bug to a different product category, which allows remote attackers to obtain sensitive information via a request for a bug in opportunistic circumstances.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0261" adv="1">ADV-2010-0261</ref>
            <ref source="CONFIRM" url="https://bugzilla.mozilla.org/show_bug.cgi?id=532493">https://bugzilla.mozilla.org/show_bug.cgi?id=532493</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56004">bugzilla-group-restriction-info-disclosure(56004)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38026">38026</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509282/100/0/threaded">20100201 Security Advisory for Bugzilla 3.0.10, 3.2.5, 3.4.4, and 3.5.2</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38443" adv="1">38443</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="bugzilla">
                <vers num="3.3.1" />
                <vers num="3.3.2" />
                <vers num="3.3.3" />
                <vers num="3.3.4" />
                <vers num="3.4" />
                <vers num="3.4.1" />
                <vers num="3.4.2" />
                <vers num="3.4.4" />
                <vers num="3.5.1" />
                <vers num="3.5.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-3989" seq="2009-3989" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-05">
        <desc>
            <descript source="cve">Bugzilla before 3.0.11, 3.2.x before 3.2.6, 3.4.x before 3.4.5, and 3.5.x before 3.5.3 does not block access to files and directories that are used by custom installations, which allows remote attackers to obtain sensitive information via requests for (1) CVS/, (2) contrib/, (3) docs/en/xml/, (4) t/, or (5) old-params.txt.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="https://bugzilla.mozilla.org/show_bug.cgi?id=434801">https://bugzilla.mozilla.org/show_bug.cgi?id=434801</ref>
            <ref source="CONFIRM" patch="1" url="https://bugzilla.mozilla.org/show_bug.cgi?id=314871">https://bugzilla.mozilla.org/show_bug.cgi?id=314871</ref>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0261" adv="1">ADV-2010-0261</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56003">bugzilla-files-info-disclosure(56003)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38025">38025</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509282/100/0/threaded">20100201 Security Advisory for Bugzilla 3.0.10, 3.2.5, 3.4.4, and 3.5.2</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38443" adv="1">38443</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="bugzilla">
                <vers num="2.0" />
                <vers num="2.10" />
                <vers num="2.12" />
                <vers num="2.14" />
                <vers num="2.14.1" />
                <vers num="2.14.2" />
                <vers num="2.14.3" />
                <vers num="2.14.4" />
                <vers num="2.14.5" />
                <vers edition="rc1" num="2.16" />
                <vers edition="rc2" num="2.16" />
                <vers num="2.16.1" />
                <vers num="2.16.10" />
                <vers num="2.16.11" />
                <vers num="2.16.2" />
                <vers num="2.16.3" />
                <vers num="2.16.4" />
                <vers num="2.16.5" />
                <vers num="2.16.6" />
                <vers num="2.16.7" />
                <vers num="2.16.8" />
                <vers num="2.16.9" />
                <vers edition="rc1" num="2.18" />
                <vers edition="rc2" num="2.18" />
                <vers edition="rc3" num="2.18" />
                <vers num="2.18.1" />
                <vers num="2.18.2" />
                <vers num="2.18.3" />
                <vers num="2.18.4" />
                <vers num="2.18.5" />
                <vers num="2.18.6" />
                <vers num="2.18.6+" />
                <vers num="2.18.7" />
                <vers num="2.18.8" />
                <vers num="2.18.9" />
                <vers num="2.2" />
                <vers edition="rc1" num="2.20" />
                <vers edition="rc2" num="2.20" />
                <vers num="2.20.1" />
                <vers num="2.20.2" />
                <vers num="2.20.3" />
                <vers num="2.20.4" />
                <vers num="2.20.5" />
                <vers num="2.20.6" />
                <vers num="2.20.7" />
                <vers edition="rc1" num="2.22" />
                <vers num="2.22.1" />
                <vers num="2.22.2" />
                <vers num="2.22.3" />
                <vers num="2.22.4" />
                <vers num="2.22.5" />
                <vers num="2.22.6" />
                <vers num="2.22.7" />
                <vers num="2.4" />
                <vers num="2.6" />
                <vers num="2.8" />
                <vers num="3.0.0" />
                <vers num="3.0.1" />
                <vers num="3.0.10" prev="1" />
                <vers num="3.0.2" />
                <vers num="3.0.3" />
                <vers num="3.0.4" />
                <vers num="3.0.5" />
                <vers num="3.0.6" />
                <vers num="3.0.7" />
                <vers num="3.0.8" />
                <vers num="3.0.9" />
                <vers num="3.2" />
                <vers num="3.2.1" />
                <vers num="3.2.2" />
                <vers num="3.2.3" />
                <vers num="3.2.4" />
                <vers num="3.2.5" />
                <vers num="3.4" />
                <vers num="3.4.1" />
                <vers num="3.4.2" />
                <vers num="3.4.3" />
                <vers num="3.4.4" />
                <vers num="3.5" />
                <vers num="3.5.1" />
                <vers num="3.5.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="4.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.4" name="CVE-2010-0038" seq="2010-0038" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="4.6" modified="2010-02-05">
        <desc>
            <descript source="cve">Recovery Mode in Apple iPhone OS 1.0 through 3.1.2, and iPhone OS for iPod touch 1.1 through 3.1.2, allows physically proximate attackers to bypass device locking, and read or modify arbitrary data, via a USB control message that triggers memory corruption.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38040">38040</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT4013" adv="1">http://support.apple.com/kb/HT4013</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2010/Feb/msg00000.html" adv="1">APPLE-SA-2010-02-02-1</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="iphone_os">
                <vers num="1.0" />
                <vers edition="-" num="1.0.0" />
                <vers edition="-:iphone" num="1.0.0" />
                <vers edition="-" num="1.0.1" />
                <vers edition="-:iphone" num="1.0.1" />
                <vers edition="-" num="1.0.2" />
                <vers edition="-:iphone" num="1.0.2" />
                <vers num="1.1" />
                <vers edition="-" num="1.1.0" />
                <vers edition="-:iphone" num="1.1.0" />
                <vers edition="-:ipodtouch" num="1.1.0" />
                <vers edition="-" num="1.1.1" />
                <vers edition="-:ipodtouch" num="1.1.1" />
                <vers edition="-:iphone" num="1.1.1" />
                <vers edition="-" num="1.1.2" />
                <vers edition="-:ipodtouch" num="1.1.2" />
                <vers edition="-:iphone" num="1.1.2" />
                <vers edition="-" num="1.1.3" />
                <vers edition="-:iphone" num="1.1.3" />
                <vers edition="-:ipodtouch" num="1.1.3" />
                <vers edition="-" num="1.1.4" />
                <vers edition="-:iphone" num="1.1.4" />
                <vers edition="-:ipodtouch" num="1.1.4" />
                <vers edition="-" num="1.1.5" />
                <vers edition="-:ipodtouch" num="1.1.5" />
                <vers edition="-:iphone" num="1.1.5" />
                <vers num="2.0" />
                <vers edition="-" num="2.0.0" />
                <vers edition="-:ipodtouch" num="2.0.0" />
                <vers edition="-:iphone" num="2.0.0" />
                <vers edition="-" num="2.0.1" />
                <vers edition="-:ipodtouch" num="2.0.1" />
                <vers edition="-:iphone" num="2.0.1" />
                <vers edition="-" num="2.0.2" />
                <vers edition="-:iphone" num="2.0.2" />
                <vers edition="-:ipodtouch" num="2.0.2" />
                <vers edition="-" num="2.1" />
                <vers edition="-:ipodtouch" num="2.1" />
                <vers edition="-:iphone" num="2.1" />
                <vers num="2.1.1" />
                <vers edition="-" num="2.2" />
                <vers edition="-:iphone" num="2.2" />
                <vers edition="-:ipodtouch" num="2.2" />
                <vers edition="-" num="2.2.1" />
                <vers edition="-:ipodtouch" num="2.2.1" />
                <vers edition="-:iphone" num="2.2.1" />
                <vers edition="-" num="3.0" />
                <vers edition="-:ipodtouch" num="3.0" />
                <vers edition="-" num="3.0.1" />
                <vers edition="-:iphone" num="3.0.1" />
                <vers edition="-" num="3.1.2" />
                <vers edition="-:ipodtouch" num="3.1.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0295" seq="2010-0295" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-04">
        <desc>
            <descript source="cve">lighttpd before 1.4.26, and 1.5.x, allocates a buffer for each read operation that occurs for a request, which allows remote attackers to cause a denial of service (memory consumption) by breaking a request into small pieces that are sent at a slow rate.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/38036">38036</ref>
            <ref source="CONFIRM" patch="1" url="http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2010_01.txt">http://download.lighttpd.net/lighttpd/security/lighttpd_sa_2010_01.txt</ref>
            <ref source="CONFIRM" patch="1" url="http://download.lighttpd.net/lighttpd/security/lighttpd-1.5_fix_slow_request_dos.patch">http://download.lighttpd.net/lighttpd/security/lighttpd-1.5_fix_slow_request_dos.patch</ref>
            <ref source="CONFIRM" patch="1" url="http://download.lighttpd.net/lighttpd/security/lighttpd-1.4.x_fix_slow_request_dos.patch">http://download.lighttpd.net/lighttpd/security/lighttpd-1.4.x_fix_slow_request_dos.patch</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56038">lighttpd-slow-request-dos(56038)</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/02/01/8">[oss-security] 20100202 lighttpd: slow request dos/oom attack [CVE-2010-0295]</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1987">DSA-1987</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38403" adv="1">38403</ref>
            <ref source="CONFIRM" url="http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2711">http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2711</ref>
            <ref source="CONFIRM" url="http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2710">http://redmine.lighttpd.net/projects/lighttpd/repository/revisions/2710</ref>
            <ref source="CONFIRM" url="http://redmine.lighttpd.net/issues/2147">http://redmine.lighttpd.net/issues/2147</ref>
        </refs>
        <vuln_soft>
            <prod vendor="lighttpd" name="lighttpd">
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.1.0" />
                <vers num="1.1.1" />
                <vers num="1.1.2" />
                <vers num="1.1.3" />
                <vers num="1.1.4" />
                <vers num="1.1.5" />
                <vers num="1.1.6" />
                <vers num="1.1.7" />
                <vers num="1.1.8" />
                <vers num="1.1.9" />
                <vers num="1.2.0" />
                <vers num="1.2.1" />
                <vers num="1.2.2" />
                <vers num="1.2.3" />
                <vers num="1.2.5" />
                <vers num="1.2.6" />
                <vers num="1.2.7" />
                <vers num="1.2.8" />
                <vers num="1.3.0" />
                <vers num="1.3.1" />
                <vers num="1.3.10" />
                <vers num="1.3.11" />
                <vers num="1.3.12" />
                <vers num="1.3.13" />
                <vers num="1.3.14" />
                <vers num="1.3.15" />
                <vers num="1.3.16" />
                <vers num="1.3.2" />
                <vers num="1.3.3" />
                <vers num="1.3.4" />
                <vers num="1.3.5" />
                <vers num="1.3.6" />
                <vers num="1.3.8" />
                <vers num="1.3.9" />
                <vers num="1.4.0" />
                <vers num="1.4.10" />
                <vers num="1.4.11" />
                <vers num="1.4.12" />
                <vers num="1.4.13" />
                <vers num="1.4.14" />
                <vers num="1.4.15" />
                <vers num="1.4.16" />
                <vers num="1.4.17" />
                <vers num="1.4.18" />
                <vers num="1.4.19" />
                <vers num="1.4.2" />
                <vers num="1.4.20" />
                <vers num="1.4.21" />
                <vers num="1.4.22" />
                <vers num="1.4.23" />
                <vers num="1.4.24" />
                <vers num="1.4.25" prev="1" />
                <vers num="1.4.3" />
                <vers num="1.4.4" />
                <vers num="1.4.5" />
                <vers num="1.4.6" />
                <vers num="1.4.7" />
                <vers num="1.4.8" />
                <vers num="1.4.9" />
                <vers num="1.5.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0305" seq="2010-0305" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-04">
        <desc>
            <descript source="cve">ejabberd_c2s.erl in ejabberd before 2.1.3 allows remote attackers to cause a denial of service (daemon crash) via a large number of c2s (aka client2server) messages that trigger a queue overload.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MLIST" patch="1" url="http://www.openwall.com/lists/oss-security/2010/01/29/5">[oss-security] 20100129 Re: CVE Request -- ejabberd</ref>
            <ref source="MLIST" patch="1" url="http://www.openwall.com/lists/oss-security/2010/01/29/1">[oss-security] 20100129 CVE Request -- ejabberd</ref>
            <ref source="CONFIRM" url="https://support.process-one.net/browse/EJAB-1173">https://support.process-one.net/browse/EJAB-1173</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56025">ejabberd-client2server-dos(56025)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38003">38003</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/62066">62066</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38337" adv="1">38337</ref>
        </refs>
        <vuln_soft>
            <prod vendor="process-one" name="ejabberd">
                <vers num="0.9" />
                <vers num="0.9.1" />
                <vers num="0.9.8" />
                <vers num="1.0.0" />
                <vers num="1.1.0" />
                <vers num="1.1.1" />
                <vers num="1.1.1.0" />
                <vers num="1.1.1.1" />
                <vers num="1.1.14" />
                <vers num="1.1.2" />
                <vers num="1.1.3" />
                <vers edition="beta1" num="2.0.0" />
                <vers edition="rc1" num="2.0.0" />
                <vers num="2.0.1_2" />
                <vers num="2.0.2" />
                <vers num="2.0.3" />
                <vers num="2.0.4" />
                <vers num="2.0.5" />
                <vers num="2.1.0" />
                <vers num="2.1.1" />
                <vers num="2.1.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0496" seq="2010-0496" severity="Medium" type="CVE" published="2010-02-03" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">FreeBit ServersMan 3.1.5 on Apple iPhone OS 3.1.2, and iPhone OS for iPod touch, allows remote attackers to cause a denial of service (daemon crash) via a HEAD request for the / URI.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55949">serversman-iphone-ipod-dos(55949)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38315" adv="1">38315</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2010-01/0580.html">20100127 Apple Iphone/Ipod - Serversman 3.1.5 HTTP Remote DoS exploit</ref>
        </refs>
        <vuln_soft>
            <prod vendor="freebit" name="serversman">
                <vers num="3.1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:N)" CVSS_base_score="5.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="4.9" name="CVE-2009-2750" seq="2009-2750" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="5.5" modified="2010-02-05">
        <desc>
            <descript source="cve">IBM WebSphere Service Registry and Repository (WSRR) 6.3.0 before FP2 does not have the intended configuration properties, which allows remote authenticated users to obtain unspecified data access via a property query.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www-01.ibm.com/support/docview.wss?uid=swg24025456" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg24025456</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55744">websphere-wsrr-property-security-bypass(55744)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_service_registry_and_repository">
                <vers num="6.3.0" />
                <vers num="6.3.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2009-4016" seq="2009-4016" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="6.8" modified="2010-02-05">
        <desc>
            <descript source="cve">Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="DEBIAN" patch="1" url="http://www.debian.org/security/2010/dsa-1980">DSA-1980</ref>
            <ref source="CONFIRM" patch="1" url="http://security.debian.org/pool/updates/main/i/ircd-hybrid/ircd-hybrid_7.2.2.dfsg.2-4+lenny1.diff.gz">http://security.debian.org/pool/updates/main/i/ircd-hybrid/ircd-hybrid_7.2.2.dfsg.2-4+lenny1.diff.gz</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/37978">37978</ref>
            <ref source="CONFIRM" url="http://trac.oftc.net/projects/oftc-hybrid/browser/tags/oftc-hybrid-1.6.8/RELNOTES">http://trac.oftc.net/projects/oftc-hybrid/browser/tags/oftc-hybrid-1.6.8/RELNOTES</ref>
            <ref source="CONFIRM" url="http://svn.ircd-hybrid.org:8000/viewcvs.cgi?rev=1044&amp;view=rev">http://svn.ircd-hybrid.org:8000/viewcvs.cgi?rev=1044&amp;view=rev</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38383" adv="1">38383</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38382" adv="1">38382</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38381" adv="1">38381</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38210" adv="1">38210</ref>
            <ref source="MLIST" url="http://lists.ratbox.org/pipermail/ircd-ratbox/2010-January/000891.html">[ircd-ratbox] 20100125 ircd-ratbox-2.2.9 released</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ircd-hybrid" name="ircd-hybrid">
                <vers num="7.2.2" />
                <vers num="7.2.3" />
            </prod>
            <prod vendor="ircd-ratbox" name="ircd-ratbox">
                <vers num="1.0" />
                <vers num="1.1" />
                <vers num="1.1.1" />
                <vers num="1.1.2" />
                <vers num="1.2.1" />
                <vers num="1.2.2" />
                <vers num="1.2.3" />
                <vers num="1.3" />
                <vers num="1.3.1" />
                <vers num="1.3.2" />
                <vers edition="rc1" num="1.4" />
                <vers edition="rc2" num="1.4" />
                <vers num="1.4.1" />
                <vers num="1.4.2" />
                <vers num="1.5" />
                <vers num="1.5.1" />
                <vers num="1.5.2" />
                <vers num="1.5.3" />
                <vers num="2.0.0" />
                <vers num="2.0.1" />
                <vers num="2.0.10" />
                <vers num="2.0.11" />
                <vers num="2.0.2" />
                <vers num="2.0.3" />
                <vers num="2.0.4" />
                <vers num="2.0.5" />
                <vers num="2.0.6" />
                <vers num="2.0.7" />
                <vers num="2.0.8" />
                <vers num="2.0.9" />
                <vers edition="beta1" num="2.1.0" />
                <vers edition="beta2" num="2.1.0" />
                <vers num="2.1.1" />
                <vers num="2.1.2" />
                <vers num="2.1.3" />
                <vers num="2.1.4" />
                <vers num="2.1.5" />
                <vers num="2.1.6" />
                <vers num="2.1.7" />
                <vers num="2.1.8" />
                <vers edition="rc1" num="2.2.0" />
                <vers edition="rc2" num="2.2.0" />
                <vers edition="rc3" num="2.2.0" />
                <vers num="2.2.1" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.8" prev="1" />
            </prod>
            <prod vendor="oftc" name="oftc-hybrid">
                <vers num="1.4.0" />
                <vers num="1.4.1" />
                <vers num="1.5.0" />
                <vers num="1.5.1" />
                <vers num="1.5.2" />
                <vers num="1.5.3" />
                <vers num="1.5.4" />
                <vers num="1.5.5" />
                <vers num="1.5.6" />
                <vers num="1.5.7" />
                <vers num="1.6.0" />
                <vers num="1.6.1" />
                <vers num="1.6.2" />
                <vers num="1.6.3" />
                <vers num="1.6.4" />
                <vers num="1.6.5" />
                <vers num="1.6.6" />
                <vers num="1.6.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0300" seq="2010-0300" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">cache.c in ircd-ratbox before 2.2.9 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a HELP command.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1980">DSA-1980</ref>
            <ref source="CONFIRM" url="http://security.debian.org/pool/updates/main/i/ircd-ratbox/ircd-ratbox_2.2.8.dfsg-2+lenny1.diff.gz">http://security.debian.org/pool/updates/main/i/ircd-ratbox/ircd-ratbox_2.2.8.dfsg-2+lenny1.diff.gz</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38383" adv="1">38383</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38210" adv="1">38210</ref>
            <ref source="MLIST" url="http://lists.ratbox.org/pipermail/ircd-ratbox/2010-January/000891.html">[ircd-ratbox] 20100125 ircd-ratbox-2.2.9 released</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ircd-ratbox" name="ircd-ratbox">
                <vers num="1.5.1" />
                <vers num="2.2.0rc1" />
                <vers num="2.2.0rc2" />
                <vers num="2.2.0rc3" />
                <vers num="2.2.1" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.7.1" />
                <vers num="2.2.8" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2010-0301" seq="2010-0301" severity="High" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="7.2" modified="2010-02-05">
        <desc>
            <descript source="cve">main.C in maildrop 2.3.0 and earlier, when run by root with the -d option, uses the gid of root for execution of the .mailfilter file in a user's home directory, which allows local users to gain privileges via a crafted file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=559681">https://bugzilla.redhat.com/show_bug.cgi?id=559681</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55980">maildrop-group-priv-escalation(55980)</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1981">DSA-1981</ref>
            <ref source="CONFIRM" url="http://www.courier-mta.org/maildrop/changelog.html">http://www.courier-mta.org/maildrop/changelog.html</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023515">1023515</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38374" adv="1">38374</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38367" adv="1">38367</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126468618017829&amp;w=2">[oss-security] 20100128 Re: CVE id request: maildrop</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126468551017070&amp;w=2">[oss-security] 20100128 Re: CVE id request: maildrop</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126468324913920&amp;w=2">[oss-security] 20100128 Re: CVE id request: maildrop</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126462927918840&amp;w=2">[oss-security] 20100127 CVE id request: maildrop</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=564601">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=564601</ref>
        </refs>
        <vuln_soft>
            <prod vendor="maildrop" name="maildrop">
                <vers num="0.50" />
                <vers num="0.51" />
                <vers num="0.51b" />
                <vers num="0.51c" />
                <vers num="0.54" />
                <vers num="0.54a" />
                <vers num="0.54b" />
                <vers num="0.55" />
                <vers num="0.55a" />
                <vers num="0.55b" />
                <vers num="0.55c" />
                <vers num="0.60" />
                <vers num="0.61" />
                <vers num="0.62" />
                <vers num="0.63" />
                <vers num="0.64" />
                <vers num="0.65" />
                <vers num="0.70" />
                <vers num="0.71" />
                <vers num="0.72" />
                <vers num="0.73" />
                <vers num="0.74" />
                <vers num="0.75" />
                <vers num="0.76" />
                <vers num="0.99.1" />
                <vers num="0.99.2" />
                <vers num="1.0" />
                <vers num="1.1" />
                <vers num="1.2" />
                <vers num="1.2.1" />
                <vers num="1.2.2" />
                <vers num="1.3.0" />
                <vers num="1.3.1" />
                <vers num="1.3.3" />
                <vers num="1.3.4" />
                <vers num="1.3.5" />
                <vers num="1.3.6" />
                <vers num="1.3.7" />
                <vers num="1.3.8" />
                <vers num="1.3.9" />
                <vers num="1.4.0" />
                <vers num="1.5.0" />
                <vers num="1.5.1" />
                <vers num="1.5.2" />
                <vers num="1.6.2" />
                <vers num="1.6.3" />
                <vers num="1.7.0" />
                <vers num="1.8.1" />
                <vers num="2.0.0" />
                <vers num="2.0.1" />
                <vers num="2.0.2" />
                <vers num="2.0.3" />
                <vers num="2.0.4" />
                <vers num="2.1" />
                <vers num="2.2" />
                <vers num="2.3.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0303" seq="2010-0303" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">mystring.c in hybserv in IRCD-Hybrid (aka Hybrid2 IRC Services) 1.9.2 through 1.9.4 allows remote attackers to cause a denial of service (daemon crash) via a ":help \t" private message to the MemoServ service.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://security.debian.org/pool/updates/main/h/hybserv/hybserv_1.9.2-4+lenny2.diff.gz">http://security.debian.org/pool/updates/main/h/hybserv/hybserv_1.9.2-4+lenny2.diff.gz</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55992">hybserv2-privatemessage-dos(55992)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38006">38006</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1982">DSA-1982</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38352" adv="1">38352</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38350" adv="1">38350</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126476591925300&amp;w=2">[oss-security] 20100129 Re: CVE id: hybserv</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=550389">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=550389</ref>
        </refs>
        <vuln_soft>
            <prod vendor="dinko_korunic" name="hybserv2">
                <vers num="1.9.2" />
                <vers num="1.9.3" />
                <vers num="1.9.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0441" seq="2010-0441" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, and 1.6.2.x before 1.6.2.2, and Business Edition C.3 before C.3.3.2, allows remote attackers to cause a denial of service (daemon crash) via an SIP T.38 negotiation with an SDP FaxMaxDatagram field that is (1) missing, (2) modified to contain a negative number, or (3) modified to contain a large number.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.1.diff">http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.1.diff</ref>
            <ref source="CONFIRM" patch="1" url="http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.0.diff">http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.0.diff</ref>
            <ref source="CONFIRM" url="https://issues.asterisk.org/view.php?id=16724">https://issues.asterisk.org/view.php?id=16724</ref>
            <ref source="CONFIRM" url="https://issues.asterisk.org/view.php?id=16634">https://issues.asterisk.org/view.php?id=16634</ref>
            <ref source="CONFIRM" url="https://issues.asterisk.org/view.php?id=16517">https://issues.asterisk.org/view.php?id=16517</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0289" adv="1">ADV-2010-0289</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38047">38047</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509327/100/0/threaded">20100202 AST-2010-001: T.38 Remote Crash Vulnerability</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023532">1023532</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38395" adv="1">38395</ref>
            <ref source="CONFIRM" url="http://downloads.asterisk.org/pub/security/AST-2010-001.html">http://downloads.asterisk.org/pub/security/AST-2010-001.html</ref>
            <ref source="CONFIRM" url="http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.2.diff">http://downloads.asterisk.org/pub/security/AST-2010-001-1.6.2.diff</ref>
        </refs>
        <vuln_soft>
            <prod vendor="asterisk" name="asterisk">
                <vers num="1.6.0" />
                <vers num="1.6.0.1" />
                <vers num="1.6.0.10" />
                <vers num="1.6.0.12" />
                <vers num="1.6.0.13" />
                <vers num="1.6.0.14" />
                <vers num="1.6.0.15" />
                <vers num="1.6.0.16-rc1" />
                <vers num="1.6.0.16-rc2" />
                <vers num="1.6.0.17" />
                <vers num="1.6.0.18" />
                <vers num="1.6.0.18-rc1" />
                <vers num="1.6.0.18-rc2" />
                <vers num="1.6.0.18-rc3" />
                <vers num="1.6.0.19" />
                <vers num="1.6.0.2" />
                <vers num="1.6.0.20" />
                <vers num="1.6.0.20-rc1" />
                <vers num="1.6.0.21" />
                <vers num="1.6.0.21-rc1" />
                <vers num="1.6.0.3" />
                <vers num="1.6.0.5" />
                <vers num="1.6.0.6" />
                <vers num="1.6.0.7" />
                <vers num="1.6.0.8" />
                <vers num="1.6.0.9" />
                <vers num="1.6.1.0" />
                <vers num="1.6.1.1" />
                <vers num="1.6.1.10" />
                <vers num="1.6.1.10-rc1" />
                <vers num="1.6.1.10-rc2" />
                <vers num="1.6.1.10-rc3" />
                <vers num="1.6.1.11" />
                <vers num="1.6.1.12" />
                <vers num="1.6.1.12-rc1" />
                <vers num="1.6.1.13" />
                <vers num="1.6.1.13-rc1" />
                <vers num="1.6.1.2" />
                <vers num="1.6.1.4" />
                <vers num="1.6.1.5" />
                <vers num="1.6.1.6" />
                <vers num="1.6.1.7-rc1" />
                <vers num="1.6.1.7-rc2" />
                <vers num="1.6.1.8" />
                <vers num="1.6.1.9" />
                <vers num="1.6.10-rc1" />
                <vers num="1.6.10-rc2" />
                <vers num="1.6.2.1" />
                <vers num="1.6.2.1-rc1" />
                <vers edition="" num="c.3.1.0" />
                <vers edition=":business" num="c.3.1.0" />
                <vers edition="" num="c.3.1.1" />
                <vers edition=":business" num="c.3.1.1" />
                <vers edition="" num="c.3.2.2" />
                <vers edition=":business" num="c.3.2.2" />
                <vers edition="" num="c.3.3.3" />
                <vers edition=":business" num="c.3.3.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:S/C:C/I:C/A:C)" CVSS_base_score="6.8" CVSS_exploit_subscore="3.1" CVSS_impact_subscore="10.0" name="CVE-2010-0443" seq="2010-0443" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="6.8" modified="2010-02-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Record Management Services (RMS) before VMS83A_RMS-V1100 for HP OpenVMS on the Alpha platform allows local users to gain privileges via unknown vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.vupen.com/english/advisories/2010/0286" adv="1">ADV-2010-0286</ref>
            <ref source="HP" patch="1" url="http://marc.info/?l=bugtraq&amp;m=126520981100671&amp;w=2" adv="1">SSRT100023</ref>
            <ref source="HP" patch="1" url="http://marc.info/?l=bugtraq&amp;m=126520981100671&amp;w=2" adv="1">SSRT100023</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56062">openvms-rms-privilege-escalation(56062)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38048">38048</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38366" adv="1">38366</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hp" name="openvms_rms">
                <vers num="vms83a_rms-v1000" />
                <vers num="vms83a_update-v1100" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="2.1" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="2.9" name="CVE-2010-0547" seq="2010-0547" severity="Low" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="2.1" modified="2010-02-05">
        <desc>
            <descript source="cve">client/mount.cifs.c in mount.cifs in smbfs in Samba 3.4.5 and earlier does not verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://git.samba.org/?p=samba.git;a=commit;h=a065c177dfc8f968775593ba00dffafeebb2e054">http://git.samba.org/?p=samba.git;a=commit;h=a065c177dfc8f968775593ba00dffafeebb2e054</ref>
        </refs>
        <vuln_soft>
            <prod vendor="samba" name="samba">
                <vers edition="p1" num="1.9.17" />
                <vers edition="p2" num="1.9.17" />
                <vers edition="p3" num="1.9.17" />
                <vers edition="p4" num="1.9.17" />
                <vers edition="p5" num="1.9.17" />
                <vers edition="p1" num="1.9.18" />
                <vers edition="p10" num="1.9.18" />
                <vers edition="p2" num="1.9.18" />
                <vers edition="p3" num="1.9.18" />
                <vers edition="p4" num="1.9.18" />
                <vers edition="p5" num="1.9.18" />
                <vers edition="p6" num="1.9.18" />
                <vers edition="p7" num="1.9.18" />
                <vers edition="p8" num="1.9.18" />
                <vers num="2.2.0" />
                <vers num="2.2.0a" />
                <vers num="2.2.1" />
                <vers num="2.2.10" />
                <vers num="2.2.11" />
                <vers num="2.2.12" />
                <vers num="2.2.1a" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2.3a" />
                <vers num="2.2.4" />
                <vers num="2.2.5" />
                <vers num="2.2.6" />
                <vers num="2.2.7" />
                <vers num="2.2.7a" />
                <vers num="2.2.8" />
                <vers num="2.2.8a" />
                <vers num="2.2.9" />
                <vers num="2.2a" />
                <vers num="3.0.0" />
                <vers num="3.0.1" />
                <vers num="3.0.10" />
                <vers num="3.0.11" />
                <vers num="3.0.12" />
                <vers num="3.0.13" />
                <vers num="3.0.14" />
                <vers num="3.0.14a" />
                <vers num="3.0.2" />
                <vers num="3.0.20" />
                <vers num="3.0.20a" />
                <vers num="3.0.20b" />
                <vers num="3.0.21" />
                <vers num="3.0.21a" />
                <vers num="3.0.21b" />
                <vers num="3.0.21c" />
                <vers num="3.0.22" />
                <vers num="3.0.23" />
                <vers num="3.0.23a" />
                <vers num="3.0.23b" />
                <vers num="3.0.23c" />
                <vers num="3.0.23d" />
                <vers num="3.0.24" />
                <vers edition="pre1" num="3.0.25" />
                <vers edition="pre2" num="3.0.25" />
                <vers edition="rc1" num="3.0.25" />
                <vers edition="rc2" num="3.0.25" />
                <vers edition="rc3" num="3.0.25" />
                <vers num="3.0.25a" />
                <vers num="3.0.25b" />
                <vers num="3.0.25c" />
                <vers num="3.0.26" />
                <vers num="3.0.26a" />
                <vers num="3.0.27" />
                <vers num="3.0.27a" />
                <vers num="3.0.28" />
                <vers num="3.0.28a" />
                <vers num="3.0.29" />
                <vers num="3.0.2a" />
                <vers num="3.0.3" />
                <vers num="3.0.30" />
                <vers num="3.0.31" />
                <vers num="3.0.32" />
                <vers num="3.0.33" />
                <vers num="3.0.34" />
                <vers num="3.0.35" />
                <vers num="3.0.36" />
                <vers num="3.0.37" />
                <vers edition="rc1" num="3.0.4" />
                <vers num="3.0.5" />
                <vers num="3.0.6" />
                <vers num="3.0.8" />
                <vers num="3.0.9" />
                <vers num="3.2.0" />
                <vers num="3.2.1" />
                <vers num="3.2.10" />
                <vers num="3.2.11" />
                <vers num="3.2.12" />
                <vers num="3.2.13" />
                <vers num="3.2.14" />
                <vers num="3.2.15" />
                <vers num="3.2.2" />
                <vers num="3.2.3" />
                <vers num="3.2.4" />
                <vers num="3.2.5" />
                <vers num="3.2.6" />
                <vers num="3.2.7" />
                <vers num="3.2.8" />
                <vers num="3.2.9" />
                <vers num="3.3.0" />
                <vers num="3.3.1" />
                <vers num="3.3.10" />
                <vers num="3.3.2" />
                <vers num="3.3.3" />
                <vers num="3.3.4" />
                <vers num="3.3.5" />
                <vers num="3.3.6" />
                <vers num="3.3.7" />
                <vers num="3.3.8" />
                <vers num="3.3.9" />
                <vers num="3.4.0" />
                <vers num="3.4.1" />
                <vers num="3.4.2" />
                <vers num="3.4.3" />
                <vers num="3.4.4" />
                <vers num="3.4.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0555" seq="2010-0555" severity="High" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="9.3" modified="2010-02-05">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving the product's use of text/html as the default content type for files that are encountered after a redirection, aka the URLMON sniffing vulnerability, a variant of CVE-2009-1140 and related to CVE-2008-1448.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38056">38056</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38055">38055</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509345/100/0/threaded">20100203 CORE-2009-0625: Internet Explorer Dynamic OBJECT tag and URLMON sniffing vulnerabilities</ref>
            <ref source="MISC" url="http://www.microsoft.com/technet/security/advisory/980088.mspx" adv="1">http://www.microsoft.com/technet/security/advisory/980088.mspx</ref>
            <ref source="MISC" url="http://www.coresecurity.com/content/internet-explorer-dynamic-object-tag">http://www.coresecurity.com/content/internet-explorer-dynamic-object-tag</ref>
            <ref source="MISC" url="http://isc.sans.org/diary.html?n&amp;storyid=8152">http://isc.sans.org/diary.html?n&amp;storyid=8152</ref>
            <ref source="MISC" url="http://blogs.technet.com/msrc/archive/2010/02/03/security-advisory-980088-released.aspx">http://blogs.technet.com/msrc/archive/2010/02/03/security-advisory-980088-released.aspx</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers edition="sp4" num="5.01" />
                <vers edition="sp1" num="6" />
                <vers num="7" />
            </prod>
            <prod vendor="microsoft" name="windows_2000">
                <vers edition="sp4" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2003">
                <vers edition=":x64" num="" />
                <vers edition="sp1" num="" />
                <vers edition="sp1:itanium" num="" />
                <vers edition="sp2" num="" />
                <vers edition="sp2:x64" num="" />
                <vers edition="sp2:itanium" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2008">
                <vers edition=":32_bit" num="" />
                <vers edition=":itanium" num="" />
                <vers edition=":x64" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_vista">
                <vers edition=":x64" num="" />
                <vers edition="sp1" num="" />
                <vers edition="sp1:x64" num="" />
                <vers num="gold" />
            </prod>
            <prod vendor="microsoft" name="windows_xp">
                <vers edition=":x64" num="" />
                <vers edition=":pro_x64" num="" />
                <vers edition="sp2" num="" />
                <vers edition="sp2:x64" num="" />
                <vers edition="sp2:pro_x64" num="" />
                <vers edition="sp3" num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2010-0255" seq="2010-0255" severity="High" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="9.3" modified="2010-02-05">
        <desc>
            <descript source="cve">Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving JavaScript exploit code that constructs a reference to a file://127.0.0.1 URL, aka the dynamic OBJECT tag vulnerability, as demonstrated by obtaining the data from an index.dat file, a variant of CVE-2009-1140 and related to CVE-2008-1448.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38056">38056</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38055">38055</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509345/100/0/threaded">20100203 CORE-2009-0625: Internet Explorer Dynamic OBJECT tag and URLMON sniffing vulnerabilities</ref>
            <ref source="CONFIRM" url="http://www.microsoft.com/technet/security/advisory/980088.mspx" adv="1">http://www.microsoft.com/technet/security/advisory/980088.mspx</ref>
            <ref source="MISC" url="http://www.coresecurity.com/content/internet-explorer-dynamic-object-tag">http://www.coresecurity.com/content/internet-explorer-dynamic-object-tag</ref>
            <ref source="MISC" url="http://isc.sans.org/diary.html?n&amp;storyid=8152">http://isc.sans.org/diary.html?n&amp;storyid=8152</ref>
            <ref source="CONFIRM" url="http://blogs.technet.com/msrc/archive/2010/02/03/security-advisory-980088-released.aspx">http://blogs.technet.com/msrc/archive/2010/02/03/security-advisory-980088-released.aspx</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="ie">
                <vers edition="sp4" num="5.01" />
                <vers edition="sp1" num="6" />
                <vers num="7" />
            </prod>
            <prod vendor="microsoft" name="windows_2000">
                <vers edition="sp4" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2003">
                <vers edition=":x64" num="" />
                <vers edition="sp1" num="" />
                <vers edition="sp1:itanium" num="" />
                <vers edition="sp2" num="" />
                <vers edition="sp2:x64" num="" />
                <vers edition="sp2:itanium" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_server_2008">
                <vers edition=":32_bit" num="" />
                <vers edition=":itanium" num="" />
                <vers edition=":x64" num="" />
            </prod>
            <prod vendor="microsoft" name="windows_vista">
                <vers edition=":x64" num="" />
                <vers edition="sp1" num="" />
                <vers edition="sp1:x64" num="" />
                <vers num="gold" />
            </prod>
            <prod vendor="microsoft" name="windows_xp">
                <vers edition=":x64" num="" />
                <vers edition=":pro_x64" num="" />
                <vers edition="sp2" num="" />
                <vers edition="sp2:x64" num="" />
                <vers edition="sp2:pro_x64" num="" />
                <vers edition="sp3" num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2010-0548" seq="2010-0548" severity="High" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="7.8" modified="2010-02-05">
        <desc>
            <descript source="cve">Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknown vectors that bypass Scan to Mailbox authorization or (2) read device configuration information via via unknown vectors that bypass web server authorization.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.xerox.com/downloads/usa/en/c/cert_XRX10-002_v1.0.pdf" adv="1">http://www.xerox.com/downloads/usa/en/c/cert_XRX10-002_v1.0.pdf</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0209" adv="1">ADV-2010-0209</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38139" adv="1">38139</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xerox" name="workcentre_5632">
                <vers num="" />
            </prod>
            <prod vendor="xerox" name="workcentre_5638">
                <vers num="" />
            </prod>
            <prod vendor="xerox" name="workcentre_5645">
                <vers num="" />
            </prod>
            <prod vendor="xerox" name="workcentre_5655">
                <vers num="" />
            </prod>
            <prod vendor="xerox" name="workcentre_5665">
                <vers num="" />
            </prod>
            <prod vendor="xerox" name="workcentre_5675">
                <vers num="" />
            </prod>
            <prod vendor="xerox" name="workcentre_5687">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2010-0549" seq="2010-0549" severity="High" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="7.8" modified="2010-02-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Network Controller in Xerox WorkCentre 6400 System Software 060.070.109.11407 through 060.070.109.29510, and Net Controller 060.079.11410 through 060.079.29310, allows remote attackers to access "directory structure" via a crafted PostScript file, aka "Unauthorized Directory Structure Access Vulnerability."</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.xerox.com/downloads/usa/en/c/cert_XRX10-001_v1.0.pdf" adv="1">http://www.xerox.com/downloads/usa/en/c/cert_XRX10-001_v1.0.pdf</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0208" adv="1">ADV-2010-0208</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023500">1023500</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38339" adv="1">38339</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xerox" name="workcentre_6400_net_controller">
                <vers num="060.079.11410" />
                <vers num="060.079.29310" />
            </prod>
            <prod vendor="xerox" name="workcentre_6400_system_software">
                <vers num="060.070.109.11407" />
                <vers num="060.070.109.29510" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:N/I:P/A:N)" CVSS_base_score="4.0" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="2.9" name="CVE-2010-0550" seq="2010-0550" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="4.0" modified="2010-02-05">
        <desc>
            <descript source="cve">admin.htm in Geo++ GNCASTER 1.4.0.7 and earlier does not properly enforce HTTP Digest Authentication, which allows remote authenticated users to use HTTP Basic Authentication, bypassing intended server policy.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55976">gncaster-httpbasic-weak-security(55976)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509199/100/0/threaded">20100127 [RT-SA-2010-003] Geo++(R) GNCASTER: Faulty implementation of HTTPDigest Authentication</ref>
            <ref source="MISC" url="http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-003/-geo-r-gncaster-faulty-implementation-of-http-digest-authentication">http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-003/-geo-r-gncaster-faulty-implementation-of-http-digest-authentication</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38323" adv="1">38323</ref>
            <ref source="OSVDB" url="http://osvdb.org/62013">62013</ref>
        </refs>
        <vuln_soft>
            <prod vendor="geopp" name="geo++_gncaster">
                <vers num="1.4.0.0" />
                <vers num="1.4.0.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0551" seq="2010-0551" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">HTTP authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to read authentication headers of other users via a large request with an incorrect authentication attempt, which includes sensitive memory in the response.  NOTE: this is referred to as a "memory leak" by some sources, but is better characterized as "memory disclosure."</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55978">gncaster-server-info-disclosure(55978)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509199/100/0/threaded">20100127 [RT-SA-2010-003] Geo++(R) GNCASTER: Faulty implementation of HTTPDigest Authentication</ref>
            <ref source="MISC" url="http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-003/-geo-r-gncaster-faulty-implementation-of-http-digest-authentication">http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-003/-geo-r-gncaster-faulty-implementation-of-http-digest-authentication</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38323" adv="1">38323</ref>
            <ref source="OSVDB" url="http://osvdb.org/62015">62015</ref>
        </refs>
        <vuln_soft>
            <prod vendor="geopp" name="geo++_gncaster">
                <vers num="1.4.0.0" />
                <vers num="1.4.0.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0552" seq="2010-0552" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-05">
        <desc>
            <descript source="cve">Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via multiple requests for a non-existent file using a long URI.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55974">gncaster-httpget-code-execution(55974)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509194/100/0/threaded">20100127 [RT-SA-2010-001] Geo++(R) GNCASTER: Insecure handling of long URLs</ref>
            <ref source="MISC" url="http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-001/-geo-r-gncaster-insecure-handling-of-long-urls">http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-001/-geo-r-gncaster-insecure-handling-of-long-urls</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38323" adv="1">38323</ref>
            <ref source="OSVDB" url="http://osvdb.org/62011">62011</ref>
        </refs>
        <vuln_soft>
            <prod vendor="geopp" name="geo++_gncaster">
                <vers num="1.4.0.0" />
                <vers num="1.4.0.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="6.4" name="CVE-2010-0553" seq="2010-0553" severity="Medium" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="6.5" modified="2010-02-05">
        <desc>
            <descript source="cve">Geo++ GNCASTER 1.4.0.7 and earlier allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a long NMEA data sentence.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55975">gncaster-nmea-code-execution(55975)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509197/100/0/threaded">20100127 [RT-SA-2010-002] Geo++(R) GNCASTER: Insecure handling of NMEA-data</ref>
            <ref source="MISC" url="http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-002/-geo-r-gncaster-insecure-handling-of-nmea-data">http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-002/-geo-r-gncaster-insecure-handling-of-nmea-data</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38323" adv="1">38323</ref>
            <ref source="OSVDB" url="http://osvdb.org/62012">62012</ref>
        </refs>
        <vuln_soft>
            <prod vendor="geopp" name="geo++_gncaster">
                <vers num="1.4.0.0" />
                <vers num="1.4.0.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0554" seq="2010-0554" severity="High" type="CVE" published="2010-02-04" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-05">
        <desc>
            <descript source="cve">The HTTP Authentication implementation in Geo++ GNCASTER 1.4.0.7 and earlier uses the same nonce for all authentication, which allows remote attackers to hijack web sessions or bypass authentication via a replay attack.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/55977">gncaster-nonce-replay(55977)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509199/100/0/threaded">20100127 [RT-SA-2010-003] Geo++(R) GNCASTER: Faulty implementation of HTTPDigest Authentication</ref>
            <ref source="MISC" url="http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-003/-geo-r-gncaster-faulty-implementation-of-http-digest-authentication">http://www.redteam-pentesting.de/en/advisories/rt-sa-2010-003/-geo-r-gncaster-faulty-implementation-of-http-digest-authentication</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38323" adv="1">38323</ref>
            <ref source="OSVDB" url="http://osvdb.org/62014">62014</ref>
        </refs>
        <vuln_soft>
            <prod vendor="geopp" name="geo++_gncaster">
                <vers num="1.4.0.0" />
                <vers num="1.4.0.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2003-1577" seq="2003-1577" severity="Low" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="2.6" modified="2010-02-08">
        <desc>
            <descript source="cve">Sun ONE (aka iPlanet) Web Server 4.1 through SP12 and 6.0 through SP5, when DNS resolution is enabled for client IP addresses, allows remote attackers to inject arbitrary text into log files, and conduct cross-site scripting (XSS) attacks involving the iPlanet Log Analyzer, via an HTTP request in conjunction with a crafted DNS response, related to an "Inverse Lookup Log Corruption (ILLC)" issue, a different vulnerability than CVE-2002-1315 and CVE-2002-1316.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201453-1" adv="1">201453</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="one_web_server">
                <vers edition="sp1" num="4.1" prev="1" />
                <vers edition="sp10" num="4.1" prev="1" />
                <vers edition="sp11" num="4.1" prev="1" />
                <vers edition="sp12" num="4.1" prev="1" />
                <vers edition="sp2" num="4.1" prev="1" />
                <vers edition="sp3" num="4.1" prev="1" />
                <vers edition="sp4" num="4.1" prev="1" />
                <vers edition="sp5" num="4.1" prev="1" />
                <vers edition="sp6" num="4.1" prev="1" />
                <vers edition="sp7" num="4.1" prev="1" />
                <vers edition="sp8" num="4.1" prev="1" />
                <vers edition="sp9" num="4.1" prev="1" />
                <vers edition="sp1" num="6.0" prev="1" />
                <vers edition="sp2" num="6.0" prev="1" />
                <vers edition="sp3" num="6.0" prev="1" />
                <vers edition="sp4" num="6.0" prev="1" />
                <vers edition="sp5" num="6.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1578" seq="2003-1578" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Sun ONE (aka iPlanet) Web Server 4.1 through SP12 and 6.0 through SP5, when DNS resolution is enabled for client IP addresses, allows remote attackers to hide HTTP requests from the log-preview functionality by accompanying the requests with crafted DNS responses specifying a domain name beginning with a "format=" substring, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/7012">7012</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201453-1" adv="1">201453</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="one_web_server">
                <vers edition="sp1" num="4.1" prev="1" />
                <vers edition="sp10" num="4.1" prev="1" />
                <vers edition="sp11" num="4.1" prev="1" />
                <vers edition="sp12" num="4.1" prev="1" />
                <vers edition="sp2" num="4.1" prev="1" />
                <vers edition="sp3" num="4.1" prev="1" />
                <vers edition="sp4" num="4.1" prev="1" />
                <vers edition="sp5" num="4.1" prev="1" />
                <vers edition="sp6" num="4.1" prev="1" />
                <vers edition="sp7" num="4.1" prev="1" />
                <vers edition="sp8" num="4.1" prev="1" />
                <vers edition="sp9" num="4.1" prev="1" />
                <vers edition="sp1" num="6.0" prev="1" />
                <vers edition="sp2" num="6.0" prev="1" />
                <vers edition="sp3" num="6.0" prev="1" />
                <vers edition="sp4" num="6.0" prev="1" />
                <vers edition="sp5" num="6.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1579" seq="2003-1579" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Sun ONE (aka iPlanet) Web Server 6 on Windows, when DNS resolution is enabled for client IP addresses, uses a logging format that does not identify whether a dotted quad represents an unresolved IP address, which allows remote attackers to spoof IP addresses via crafted DNS responses containing numerical top-level domains, as demonstrated by a forged 123.123.123.123 domain name, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="one_web_server">
                <vers num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1580" seq="2003-1580" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">The Apache HTTP Server 2.0.44, when DNS resolution is enabled for client IP addresses, uses a logging format that does not identify whether a dotted quad represents an unresolved IP address, which allows remote attackers to spoof IP addresses via crafted DNS responses containing numerical top-level domains, as demonstrated by a forged 123.123.123.123 domain name, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="http_server">
                <vers num="2.0.44" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2003-1581" seq="2003-1581" severity="Low" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="2.6" modified="2010-02-08">
        <desc>
            <descript source="cve">The Apache HTTP Server 2.0.44, when DNS resolution is enabled for client IP addresses, allows remote attackers to inject arbitrary text into log files via an HTTP request in conjunction with a crafted DNS response, as demonstrated by injecting XSS sequences, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="http_server">
                <vers num="2.0.44" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2003-1582" seq="2003-1582" severity="Low" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="2.6" modified="2010-02-08">
        <desc>
            <descript source="cve">Microsoft Internet Information Services (IIS) 6.0, when DNS resolution is enabled for client IP addresses, allows remote attackers to inject arbitrary text into log files via an HTTP request in conjunction with a crafted DNS response, as demonstrated by injecting XSS sequences, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="iis">
                <vers num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1583" seq="2003-1583" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in WebTrends allows remote attackers to inject arbitrary web script or HTML via a crafted client domain name, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="webtrends" name="webtrends_log_analyzer">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1584" seq="2003-1584" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in SurfStats allows remote attackers to inject arbitrary web script or HTML via a crafted client domain name, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="surfstats" name="surfstats">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1585" seq="2003-1585" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in WebLogExpert allows remote attackers to inject arbitrary web script or HTML via a crafted client domain name, related to an "Inverse Lookup Log Corruption (ILLC)" issue.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="alentum" name="weblog_expert">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2003-1586" seq="2003-1586" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in WebExpert allows remote attackers to inject arbitrary web script or HTML via a crafted User-Agent HTTP header.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="iplanet" name="webexpert">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2003-1587" seq="2003-1587" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-08">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in LoganPro allows remote attackers to inject arbitrary web script or HTML via a crafted User-Agent HTTP header.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/313867">20030304 Log corruption on multiple webservers, log analyzers,...</ref>
        </refs>
        <vuln_soft>
            <prod vendor="iplanet" name="loganpro">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-2751" seq="2009-2751" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">IBM WebSphere Commerce 7.0 uses the same cryptographic key for session attributes and merchant data encryption, which has unspecified impact and remote attack vectors.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56089">websphere-commerce-key-weak-security(56089)</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/docview.wss?uid=swg1JR35136">JR35136</ref>
            <ref source="CONFIRM" url="http://www-01.ibm.com/support/docview.wss?uid=swg21418443" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg21418443</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_commerce">
                <vers num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:S/C:P/I:N/A:N)" CVSS_base_score="1.5" CVSS_exploit_subscore="2.7" CVSS_impact_subscore="2.9" name="CVE-2009-2752" seq="2009-2752" severity="Low" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="1.5" modified="2010-02-08">
        <desc>
            <descript source="cve">IBM WebSphere Commerce 7.0 does not properly encrypt data in a database, which makes it easier for local users to obtain sensitive information by defeating cryptographic protection mechanisms.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56090">websphere-commerce-scheme-weak-security(56090)</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/docview.wss?uid=swg1JR35199">JR35199</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/docview.wss?uid=swg1JR35136">JR35136</ref>
            <ref source="CONFIRM" url="http://www-01.ibm.com/support/docview.wss?uid=swg21418445" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg21418445</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_commerce">
                <vers num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2009-4185" seq="2009-4185" severity="Medium" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="4.3" modified="2010-02-08">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in proxy/smhui/getuiinfo in HP System Management Homepage (SMH) before 6.0 allows remote attackers to inject arbitrary web script or HTML via the servercert parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0294" adv="1">ADV-2010-0294</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38081">38081</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/509195/100/0/threaded">20100127 PR09-15: XSS injection vulnerability within HP System Management Homepage (Insight Manager)</ref>
            <ref source="MISC" url="http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr09-15">http://www.procheckup.com/vulnerability_manager/vulnerabilities/pr09-15</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38341" adv="1">38341</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=126529736830358&amp;w=2">SSRT090220</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=126529736830358&amp;w=2">SSRT090220</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hp" name="system_management_homepage">
                <vers num="2.0.0" />
                <vers num="2.0.1" />
                <vers num="2.0.2" />
                <vers num="2.1" />
                <vers num="2.1.0-103" />
                <vers num="2.1.0-103(a)" />
                <vers num="2.1.0-109" />
                <vers num="2.1.0-118" />
                <vers num="2.1.1" />
                <vers num="2.1.10" />
                <vers num="2.1.10-186" />
                <vers num="2.1.11" />
                <vers num="2.1.11-197" />
                <vers num="2.1.12-118" />
                <vers num="2.1.12-200" />
                <vers num="2.1.15-210" />
                <vers num="2.1.2" />
                <vers num="2.1.2-127" />
                <vers num="2.1.3" />
                <vers num="2.1.3.132" />
                <vers num="2.1.4" />
                <vers num="2.1.4-143" />
                <vers num="2.1.5" />
                <vers num="2.1.5-146" />
                <vers num="2.1.6" />
                <vers num="2.1.6-156" />
                <vers num="2.1.7" />
                <vers num="2.1.7-168" />
                <vers num="2.1.8" />
                <vers num="2.1.8-177" />
                <vers num="2.1.9" />
                <vers num="2.1.9-178" />
                <vers num="2.2.6" />
                <vers num="2.2.8" />
                <vers num="3.0.0-68" />
                <vers num="3.0.1.73" />
                <vers num="3.0.2.77" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0557" seq="2010-0557" severity="High" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-08">
        <desc>
            <descript source="cve">IBM Cognos Express 9.0 allows attackers to obtain unspecified access to the Tomcat Manager component, and cause a denial of service, by leveraging hardcoded credentials.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0297" adv="1">ADV-2010-0297</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38084">38084</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/62118">62118</ref>
            <ref source="CONFIRM" url="http://www-01.ibm.com/support/docview.wss?uid=swg21419179" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg21419179</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38457" adv="1">38457</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="cognos_express">
                <vers num="9.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0558" seq="2010-0558" severity="High" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-08">
        <desc>
            <descript source="cve">The default configuration of Oracle OpenSolaris snv_77 through snv_131 allows attackers to have an unspecified impact via vectors related to using smbadm to join a Windows Active Directory domain.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-275790-1" adv="1">275790</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition=":sparc" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":sparc" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition="" num="snv_107" />
                <vers edition=":sparc" num="snv_107" />
                <vers edition=":x86" num="snv_107" />
                <vers edition="" num="snv_108" />
                <vers edition=":x86" num="snv_108" />
                <vers edition="" num="snv_109" />
                <vers edition=":sparc" num="snv_109" />
                <vers edition=":x86" num="snv_109" />
                <vers edition="" num="snv_110" />
                <vers edition=":sparc" num="snv_110" />
                <vers edition=":x86" num="snv_110" />
                <vers edition="" num="snv_111" />
                <vers edition=":x86" num="snv_111" />
                <vers edition=":sparc" num="snv_111" />
                <vers edition="" num="snv_112" />
                <vers edition=":x86" num="snv_112" />
                <vers edition="" num="snv_113" />
                <vers edition=":x86" num="snv_113" />
                <vers edition=":sparc" num="snv_113" />
                <vers edition="" num="snv_114" />
                <vers edition=":x86" num="snv_114" />
                <vers edition="" num="snv_115" />
                <vers edition=":x86" num="snv_115" />
                <vers edition=":sparc" num="snv_115" />
                <vers edition="" num="snv_116" />
                <vers edition=":x86" num="snv_116" />
                <vers edition="" num="snv_117" />
                <vers edition=":sparc" num="snv_117" />
                <vers edition=":x86" num="snv_117" />
                <vers edition="" num="snv_118" />
                <vers edition=":x86" num="snv_118" />
                <vers edition="" num="snv_119" />
                <vers edition=":sparc" num="snv_119" />
                <vers edition=":x86" num="snv_119" />
                <vers edition="" num="snv_120" />
                <vers edition=":sparc" num="snv_120" />
                <vers edition=":x86" num="snv_120" />
                <vers edition="" num="snv_121" />
                <vers edition=":x86" num="snv_121" />
                <vers edition=":sparc" num="snv_121" />
                <vers edition="" num="snv_122" />
                <vers edition=":sparc" num="snv_122" />
                <vers edition=":x86" num="snv_122" />
                <vers edition="" num="snv_123" />
                <vers edition=":sparc" num="snv_123" />
                <vers edition="" num="snv_124" />
                <vers edition=":x86" num="snv_124" />
                <vers edition=":sparc" num="snv_124" />
                <vers edition="" num="snv_125" />
                <vers edition=":x86" num="snv_125" />
                <vers edition=":sparc" num="snv_125" />
                <vers edition="" num="snv_126" />
                <vers edition=":sparc" num="snv_126" />
                <vers edition=":x86" num="snv_126" />
                <vers edition="" num="snv_127" />
                <vers edition=":x86" num="snv_127" />
                <vers edition=":sparc" num="snv_127" />
                <vers edition="" num="snv_128" />
                <vers edition=":x86" num="snv_128" />
                <vers edition="" num="snv_129" />
                <vers edition=":x86" num="snv_129" />
                <vers edition=":sparc" num="snv_129" />
                <vers edition="" num="snv_130" />
                <vers edition=":sparc" num="snv_130" />
                <vers edition=":x86" num="snv_130" />
                <vers edition="" num="snv_131" />
                <vers edition=":sparc" num="snv_131" />
                <vers edition=":x86" num="snv_131" />
                <vers edition="" num="snv_77" />
                <vers edition=":x86" num="snv_77" />
                <vers edition=":sparc" num="snv_77" />
                <vers edition="" num="snv_78" />
                <vers edition=":x86" num="snv_78" />
                <vers edition=":sparc" num="snv_78" />
                <vers edition="" num="snv_79" />
                <vers edition=":x86" num="snv_79" />
                <vers edition=":sparc" num="snv_79" />
                <vers edition="" num="snv_80" />
                <vers edition=":sparc" num="snv_80" />
                <vers edition=":x86" num="snv_80" />
                <vers edition="" num="snv_81" />
                <vers edition=":sparc" num="snv_81" />
                <vers edition=":x86" num="snv_81" />
                <vers edition="" num="snv_82" />
                <vers edition=":x86" num="snv_82" />
                <vers edition=":sparc" num="snv_82" />
                <vers edition="" num="snv_83" />
                <vers edition=":sparc" num="snv_83" />
                <vers edition=":x86" num="snv_83" />
                <vers edition="" num="snv_84" />
                <vers edition=":sparc" num="snv_84" />
                <vers edition=":x86" num="snv_84" />
                <vers edition="" num="snv_85" />
                <vers edition=":sparc" num="snv_85" />
                <vers edition=":x86" num="snv_85" />
                <vers edition="" num="snv_86" />
                <vers edition=":x86" num="snv_86" />
                <vers edition=":sparc" num="snv_86" />
                <vers edition="" num="snv_87" />
                <vers edition=":sparc" num="snv_87" />
                <vers edition=":x86" num="snv_87" />
                <vers edition="" num="snv_88" />
                <vers edition=":sparc" num="snv_88" />
                <vers edition=":x86" num="snv_88" />
                <vers edition="" num="snv_89" />
                <vers edition=":x86" num="snv_89" />
                <vers edition=":sparc" num="snv_89" />
                <vers edition="" num="snv_90" />
                <vers edition=":x86" num="snv_90" />
                <vers edition=":sparc" num="snv_90" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0559" seq="2010-0559" severity="High" type="CVE" published="2010-02-05" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-08">
        <desc>
            <descript source="cve">The default configuration of Oracle OpenSolaris snv_91 through snv_131 allows attackers to have an unspecified impact via vectors related to using kclient to join a Windows Active Directory domain.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-275790-1" adv="1">275790</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="opensolaris">
                <vers edition="" num="snv_100" />
                <vers edition=":x86" num="snv_100" />
                <vers edition=":sparc" num="snv_100" />
                <vers edition="" num="snv_101" />
                <vers edition=":x86" num="snv_101" />
                <vers edition=":sparc" num="snv_101" />
                <vers edition="" num="snv_102" />
                <vers edition=":sparc" num="snv_102" />
                <vers edition=":x86" num="snv_102" />
                <vers edition="" num="snv_103" />
                <vers edition=":x86" num="snv_103" />
                <vers edition=":sparc" num="snv_103" />
                <vers edition="" num="snv_104" />
                <vers edition=":sparc" num="snv_104" />
                <vers edition=":x86" num="snv_104" />
                <vers edition="" num="snv_105" />
                <vers edition=":x86" num="snv_105" />
                <vers edition=":sparc" num="snv_105" />
                <vers edition="" num="snv_106" />
                <vers edition=":x86" num="snv_106" />
                <vers edition=":sparc" num="snv_106" />
                <vers edition="" num="snv_107" />
                <vers edition=":sparc" num="snv_107" />
                <vers edition=":x86" num="snv_107" />
                <vers edition="" num="snv_108" />
                <vers edition=":x86" num="snv_108" />
                <vers edition=":sparc" num="snv_108" />
                <vers edition="" num="snv_109" />
                <vers edition=":sparc" num="snv_109" />
                <vers edition=":x86" num="snv_109" />
                <vers edition="" num="snv_110" />
                <vers edition=":sparc" num="snv_110" />
                <vers edition=":x86" num="snv_110" />
                <vers edition="" num="snv_111" />
                <vers edition=":x86" num="snv_111" />
                <vers edition=":sparc" num="snv_111" />
                <vers edition="" num="snv_112" />
                <vers edition=":sparc" num="snv_112" />
                <vers edition=":x86" num="snv_112" />
                <vers edition="" num="snv_113" />
                <vers edition=":x86" num="snv_113" />
                <vers edition=":sparc" num="snv_113" />
                <vers edition="" num="snv_114" />
                <vers edition=":sparc" num="snv_114" />
                <vers edition=":x86" num="snv_114" />
                <vers edition="" num="snv_115" />
                <vers edition=":sparc" num="snv_115" />
                <vers edition=":x86" num="snv_115" />
                <vers edition="" num="snv_116" />
                <vers edition=":x86" num="snv_116" />
                <vers edition=":sparc" num="snv_116" />
                <vers edition="" num="snv_117" />
                <vers edition=":sparc" num="snv_117" />
                <vers edition=":x86" num="snv_117" />
                <vers edition="" num="snv_118" />
                <vers edition=":sparc" num="snv_118" />
                <vers edition=":x86" num="snv_118" />
                <vers edition="" num="snv_119" />
                <vers edition=":sparc" num="snv_119" />
                <vers edition=":x86" num="snv_119" />
                <vers edition="" num="snv_120" />
                <vers edition=":sparc" num="snv_120" />
                <vers edition=":x86" num="snv_120" />
                <vers edition="" num="snv_121" />
                <vers edition=":x86" num="snv_121" />
                <vers edition=":sparc" num="snv_121" />
                <vers edition="" num="snv_122" />
                <vers edition=":x86" num="snv_122" />
                <vers edition=":sparc" num="snv_122" />
                <vers edition="" num="snv_123" />
                <vers edition=":sparc" num="snv_123" />
                <vers edition="" num="snv_124" />
                <vers edition=":x86" num="snv_124" />
                <vers edition=":sparc" num="snv_124" />
                <vers edition="" num="snv_125" />
                <vers edition=":x86" num="snv_125" />
                <vers edition=":sparc" num="snv_125" />
                <vers edition="" num="snv_126" />
                <vers edition=":sparc" num="snv_126" />
                <vers edition=":x86" num="snv_126" />
                <vers edition="" num="snv_127" />
                <vers edition=":sparc" num="snv_127" />
                <vers edition="" num="snv_128" />
                <vers edition=":x86" num="snv_128" />
                <vers edition=":sparc" num="snv_128" />
                <vers edition="" num="snv_129" />
                <vers edition=":x86" num="snv_129" />
                <vers edition=":sparc" num="snv_129" />
                <vers edition="" num="snv_130" />
                <vers edition=":sparc" num="snv_130" />
                <vers edition="" num="snv_131" />
                <vers edition=":sparc" num="snv_131" />
                <vers edition=":x86" num="snv_131" />
                <vers edition="" num="snv_91" />
                <vers edition=":x86" num="snv_91" />
                <vers edition=":sparc" num="snv_91" />
                <vers edition="" num="snv_92" />
                <vers edition=":sparc" num="snv_92" />
                <vers edition=":x86" num="snv_92" />
                <vers edition="" num="snv_93" />
                <vers edition=":sparc" num="snv_93" />
                <vers edition=":x86" num="snv_93" />
                <vers edition="" num="snv_94" />
                <vers edition=":sparc" num="snv_94" />
                <vers edition=":x86" num="snv_94" />
                <vers edition="" num="snv_95" />
                <vers edition=":x86" num="snv_95" />
                <vers edition=":sparc" num="snv_95" />
                <vers edition="" num="snv_96" />
                <vers edition=":x86" num="snv_96" />
                <vers edition=":sparc" num="snv_96" />
                <vers edition="" num="snv_97" />
                <vers edition=":x86" num="snv_97" />
                <vers edition=":sparc" num="snv_97" />
                <vers edition="" num="snv_98" />
                <vers edition=":x86" num="snv_98" />
                <vers edition=":sparc" num="snv_98" />
                <vers edition="" num="snv_99" />
                <vers edition=":sparc" num="snv_99" />
                <vers edition=":x86" num="snv_99" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="1.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="2.9" name="CVE-2003-1588" seq="2003-1588" severity="Low" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="1.9" modified="2010-02-09">
        <desc>
            <descript source="cve">Sun Cluster 2.2, when HA-Oracle or HA-Sybase DBMS services are used, stores database credentials in cleartext in a cluster configuration file, which allows local users to obtain sensitive information by reading this file.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201460-1" adv="1">201460</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="cluster">
                <vers edition="" num="2.2" />
                <vers edition=":sparc" num="2.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:P)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2010-0292" seq="2010-0292" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="6.4" modified="2010-02-09">
        <desc>
            <descript source="cve">The read_from_cmd_socket function in cmdmon.c in chronyd in Chrony before 1.23.1, and 1.24-pre1, allows remote attackers to cause a denial of service (CPU and bandwidth consumption) by sending a spoofed cmdmon packet that triggers a continuous exchange of NOHOSTACCESS messages between two daemons, a related issue to CVE-2009-3563.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/38106">38106</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=555367">https://bugzilla.redhat.com/show_bug.cgi?id=555367</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1992">DSA-1992</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38480" adv="1">38480</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38428" adv="1">38428</ref>
            <ref source="CONFIRM" url="http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=7864c7a70ce00369194e734eb2842ecc5f8db531">http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=7864c7a70ce00369194e734eb2842ecc5f8db531</ref>
            <ref source="CONFIRM" url="http://chrony.tuxfamily.org/News.html" adv="1">http://chrony.tuxfamily.org/News.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tuxfamily" name="chrony">
                <vers num="1.18" />
                <vers num="1.19" />
                <vers num="1.19-1" />
                <vers num="1.19.99.1" />
                <vers num="1.19.99.2" />
                <vers num="1.19.99.3" />
                <vers num="1.20" />
                <vers num="1.21" />
                <vers num="1.21-pre1" />
                <vers num="1.23-pre1" prev="1" />
                <vers num="1.24-pre1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0293" seq="2010-0293" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-09">
        <desc>
            <descript source="cve">The client logging functionality in chronyd in Chrony before 1.23.1 does not restrict the amount of memory used for storage of client information, which allows remote attackers to cause a denial of service (memory consumption) via spoofed (1) NTP or (2) cmdmon packets.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=555367">https://bugzilla.redhat.com/show_bug.cgi?id=555367</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38106">38106</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1992">DSA-1992</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38480" adv="1">38480</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38428" adv="1">38428</ref>
            <ref source="CONFIRM" url="http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=2f63cf448560fdb96b80d8488aae6a15b802a753">http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=2f63cf448560fdb96b80d8488aae6a15b802a753</ref>
            <ref source="CONFIRM" url="http://chrony.tuxfamily.org/News.html" adv="1">http://chrony.tuxfamily.org/News.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tuxfamily" name="chrony">
                <vers num="1.18" />
                <vers num="1.19" />
                <vers num="1.19-1" />
                <vers num="1.19.99.1" />
                <vers num="1.19.99.2" />
                <vers num="1.19.99.3" />
                <vers num="1.20" />
                <vers num="1.21" />
                <vers num="1.21-pre1" />
                <vers num="1.23-pre1" prev="1" />
                <vers num="1.24-pre1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0294" seq="2010-0294" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-09">
        <desc>
            <descript source="cve">chronyd in Chrony before 1.23.1, and possibly 1.24-pre1, generates a syslog message for each unauthorized cmdmon packet, which allows remote attackers to cause a denial of service (disk consumption) via a large number of invalid packets.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/38106">38106</ref>
            <ref source="CONFIRM" patch="1" url="http://chrony.tuxfamily.org/News.html" adv="1">http://chrony.tuxfamily.org/News.html</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=555367">https://bugzilla.redhat.com/show_bug.cgi?id=555367</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1992">DSA-1992</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38480" adv="1">38480</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38428" adv="1">38428</ref>
            <ref source="CONFIRM" url="http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=0b710499f994823bd938fc6895f097eefb9cc59f">http://git.tuxfamily.org/chrony/chrony.git/?p=gitroot/chrony/chrony.git;a=commit;h=0b710499f994823bd938fc6895f097eefb9cc59f</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tuxfamily" name="chrony">
                <vers num="1.18" />
                <vers num="1.19" />
                <vers num="1.19-1" />
                <vers num="1.19.99.1" />
                <vers num="1.19.99.2" />
                <vers num="1.19.99.3" />
                <vers num="1.20" />
                <vers num="1.21" />
                <vers num="1.21-pre1" />
                <vers num="1.23-pre1" prev="1" />
                <vers num="1.24-pre1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2010-0411" seq="2010-0411" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="4.9" modified="2010-02-09">
        <desc>
            <descript source="cve">Multiple integer signedness errors in the (1) __get_argv and (2) __get_compat_argv functions in tapset/aux_syscalls.stp in SystemTap 1.1 allow local users to cause a denial of service (script crash, or system crash or hang) via a process with a large number of arguments, leading to a buffer overflow.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=559719">https://bugzilla.redhat.com/show_bug.cgi?id=559719</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38120">38120</ref>
            <ref source="CONFIRM" url="http://sourceware.org/git/gitweb.cgi?p=systemtap.git;a=commit;h=a2d399c87a642190f08ede63dc6fc434a5a8363a">http://sourceware.org/git/gitweb.cgi?p=systemtap.git;a=commit;h=a2d399c87a642190f08ede63dc6fc434a5a8363a</ref>
            <ref source="CONFIRM" url="http://sourceware.org/bugzilla/show_bug.cgi?id=11234">http://sourceware.org/bugzilla/show_bug.cgi?id=11234</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38426" adv="1">38426</ref>
            <ref source="MLIST" url="http://marc.info/?l=oss-security&amp;m=126530657715364&amp;w=2">[oss-security] 20100204 systemtap DoS issue (CVE-2010-0411)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="systemtap" name="systemtap">
                <vers num="1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2010-0409" seq="2010-0409" severity="High" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="7.5" modified="2010-02-09">
        <desc>
            <descript source="cve">Buffer overflow in the GMIME_UUENCODE_LEN macro in gmime/gmime-encodings.h in GMime before 2.4.15 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via input data for a uuencode operation.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://ftp.gnome.org/pub/GNOME/sources/gmime/2.4/gmime-2.4.14-2.4.15.diff.gz">http://ftp.gnome.org/pub/GNOME/sources/gmime/2.4/gmime-2.4.14-2.4.15.diff.gz</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=561457">https://bugzilla.redhat.com/show_bug.cgi?id=561457</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/02/03/4">[oss-security] 20100203 Re: CVE Request -- GMime-2.4.15</ref>
            <ref source="MLIST" url="http://www.openwall.com/lists/oss-security/2010/02/03/2">[oss-security] 20100203 CVE Request -- GMime-2.4.15</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38459">38459</ref>
            <ref source="CONFIRM" url="http://ftp.gnome.org/pub/GNOME/sources/gmime/2.4/gmime-2.4.15.changes">http://ftp.gnome.org/pub/GNOME/sources/gmime/2.4/gmime-2.4.15.changes</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gnome" name="gmime">
                <vers num="2.4.0" />
                <vers num="2.4.1" />
                <vers num="2.4.10" />
                <vers num="2.4.11" />
                <vers num="2.4.12" />
                <vers num="2.4.13" />
                <vers num="2.4.2" />
                <vers num="2.4.3" />
                <vers num="2.4.4" />
                <vers num="2.4.5" />
                <vers num="2.4.6" />
                <vers num="2.4.7" />
                <vers num="2.4.8" />
                <vers num="2.4.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="4.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.4" name="CVE-2010-0560" seq="2010-0560" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="4.6" modified="2010-02-09">
        <desc>
            <descript source="cve">Unspecified vulnerability in the BIOS in Intel Desktop Board DB, DG, DH, DP, and DQ Series allows local administrators to execute arbitrary code in System Management Mode (SSM) via unknown attack vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0271" adv="1">ADV-2010-0271</ref>
            <ref source="CONFIRM" url="http://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00022&amp;languageid=en-fr" adv="1">http://security-center.intel.com/advisory.aspx?intelid=INTEL-SA-00022&amp;languageid=en-fr</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38413" adv="1">38413</ref>
            <ref source="OSVDB" url="http://osvdb.org/62071">62071</ref>
        </refs>
        <vuln_soft>
            <prod vendor="intel" name="intel_desktop_board">
                <vers num="db" />
                <vers num="dg" />
                <vers num="dh" />
                <vers num="dp" />
                <vers num="dq" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2010-0561" seq="2010-0561" severity="High" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="7.8" modified="2010-02-09">
        <desc>
            <descript source="cve">Integer signedness error in NetBSD 4.0, 5.0, and NetBSD-current before 2010-01-21 allows local users to cause a denial of service (kernel panic) via a negative mixer index number being passed to (1) the azalia_query_devinfo function in the azalia audio driver (src/sys/dev/pci/azalia.c) or (2) the hdaudio_afg_query_devinfo function in the hdaudio audio driver (src/sys/dev/pci/hdaudio/hdaudio_afg.c).</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023539">1023539</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38057">38057</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38284" adv="1">38284</ref>
            <ref source="OSVDB" url="http://osvdb.org/62082">62082</ref>
            <ref source="OSVDB" url="http://osvdb.org/62081">62081</ref>
            <ref source="NETBSD" url="http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2010-003.txt.asc" adv="1">NetBSD-SA2010-003</ref>
        </refs>
        <vuln_soft>
            <prod vendor="netbsd" name="netbsd">
                <vers edition="beta" num="4.0" />
                <vers edition="beta2" num="4.0" />
                <vers num="4.0.1" />
                <vers edition="rc3" num="5.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2010-0562" seq="2010-0562" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="6.8" modified="2010-02-09">
        <desc>
            <descript source="cve">The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an SSL X.509 certificate containing non-printable characters with the high bit set, which triggers a heap-based buffer overflow during escaping.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0296" adv="1">ADV-2010-0296</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023543">1023543</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38088">38088</ref>
            <ref source="CONFIRM" url="http://www.fetchmail.info/fetchmail-SA-2010-01.txt" adv="1">http://www.fetchmail.info/fetchmail-SA-2010-01.txt</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38391" adv="1">38391</ref>
            <ref source="OSVDB" url="http://osvdb.org/62114">62114</ref>
            <ref source="CONFIRM" url="http://mknod.org/svn/fetchmail/branches/BRANCH_6-3/fetchmail-SA-2010-01.txt">http://mknod.org/svn/fetchmail/branches/BRANCH_6-3/fetchmail-SA-2010-01.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eric_raymond" name="fetchmail">
                <vers num="6.3.11" />
                <vers num="6.3.12" />
                <vers num="6.3.13" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2010-0563" seq="2010-0563" severity="Medium" type="CVE" published="2010-02-08" CVSS_version="2.0" CVSS_score="5.0" modified="2010-02-09">
        <desc>
            <descript source="cve">The Single Sign-on (SSO) functionality in IBM WebSphere Application Server (WAS) 7.0.0.0 through 7.0.0.8 does not recognize the Requires SSL configuration option, which might allow remote attackers to obtain sensitive information by sniffing network sessions that were expected to be encrypted.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www-01.ibm.com/support/docview.wss?uid=swg21417839" adv="1">http://www-01.ibm.com/support/docview.wss?uid=swg21417839</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38122">38122</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/62140">62140</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/docview.wss?uid=swg1PM00610">PM00610</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023551">1023551</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38425" adv="1">38425</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_application_server">
                <vers num="7.0" />
                <vers num="7.0.0.1" />
                <vers num="7.0.0.2" />
                <vers num="7.0.0.3" />
                <vers num="7.0.0.4" />
                <vers num="7.0.0.5" />
                <vers num="7.0.0.6" />
                <vers num="7.0.0.7" />
                <vers num="7.0.0.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry name="CVE-2010-0438" seq="2010-0438" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in Kernel/System/Ticket.pm in OTRS-Core in Open Ticket Request System (OTRS) 2.1.x before 2.1.9, 2.2.x before 2.2.9, 2.3.x before 2.3.5, and 2.4.x before 2.4.7 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.</descript>
        </desc>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38146">38146</ref>
            <ref source="CONFIRM" url="http://www.otrs.org/news/2010/otrs_2-4-7/">http://www.otrs.org/news/2010/otrs_2-4-7/</ref>
            <ref source="OSVDB" url="http://www.osvdb.org/62181">62181</ref>
            <ref source="CONFIRM" url="http://source.otrs.org/viewvc.cgi/otrs/Kernel/System/Ticket.pm?view=log">http://source.otrs.org/viewvc.cgi/otrs/Kernel/System/Ticket.pm?view=log</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38507">38507</ref>
            <ref source="CONFIRM" url="http://otrs.org/releases/2.4.7/">http://otrs.org/releases/2.4.7/</ref>
            <ref source="CONFIRM" url="http://otrs.org/advisory/OSA-2010-01-en/">http://otrs.org/advisory/OSA-2010-01-en/</ref>
        </refs>
    </entry>
    <entry name="CVE-2010-0444" seq="2010-0444" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">HP Operations Agent 8.51, 8.52, 8.53, and 8.60 on Solaris 10 uses a blank password for the opc_op account, which allows remote attackers to execute arbitrary code via unspecified vectors.</descript>
        </desc>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/38150">38150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1023555">1023555</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=126566258722040&amp;w=2">HPSBMA02487</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=126566258722040&amp;w=2">SSRT100024</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4631" seq="2009-4631" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">Off-by-one error in the VP3 decoder (vp3.c) in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted VP3 file that triggers an out-of-bounds read and possibly memory corruption.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1483">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1483</ref>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4632" seq="2009-4632" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">oggparsevorbis.c in FFmpeg 0.5 does not properly perform certain pointer arithmetic, which might allow remote attackers to obtain sensitive memory contents and cause a denial of service via a crafted file that triggers an out-of-bounds read.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4633" seq="2009-4633" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that modifies a loop counter and triggers a heap-based buffer overflow.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4634" seq="2009-4634" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that (1) bypasses a validation check in vorbis_dec.c and triggers a wraparound of the stack pointer, or (2) access a pointer from out-of-bounds memory in mov.c, related to an elst tag that appears before a tag that creates a stream.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4635" seq="2009-4635" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly ordered tags that cause (1) mov.c and (2) utils.c to use inconsistent codec types and identifiers, which causes the mp3 decoder to process a pointer for a video structure, leading to a stack-based buffer overflow.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4636" seq="2009-4636" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">FFmpeg 0.5 allows remote attackers to cause a denial of service (hang) via a crafted file that triggers an infinite loop.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4637" seq="2009-4637" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-based buffer overflow.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4638" seq="2009-4638" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">Integer overflow in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4639" seq="2009-4639" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">The av_rescale_rnd function in the AVI demuxer in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) via a crafted AVI file that triggers a divide-by-zero error.</descript>
        </desc>
        <refs>
            <ref source="CONFIRM" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1245">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1245</ref>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2009-4640" seq="2009-4640" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">Array index error in vorbis_dec.c in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Vorbis file that triggers an out-of-bounds read.</descript>
        </desc>
        <refs>
            <ref source="MISC" url="https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240">https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240</ref>
            <ref source="MISC" url="http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html">http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html</ref>
        </refs>
    </entry>
    <entry name="CVE-2010-0394" seq="2010-0394" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">PyGIT.py in the Trac Git plugin (trac-git) before 0.0.20080710-3+lenny1 and before 0.0.20090320-1 on Debian GNU/Linux, when enabled in Trac, allows remote attackers to execute arbitrary commands via shell metacharacters in a crafted HTTP query that is used to generate a certain git command.</descript>
        </desc>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56105">tracgit-command-execution(56105)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38076">38076</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2010/dsa-1990">DSA-1990</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38325">38325</ref>
            <ref source="OSVDB" url="http://osvdb.org/62147">62147</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567039">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567039</ref>
        </refs>
    </entry>
    <entry name="CVE-2010-0564" seq="2010-0564" type="CVE" published="2010-02-09" modified="2010-02-09">
        <desc>
            <descript source="cve">Buffer overflow in Trend Micro URL Filtering Engine (TMUFE) in OfficeScan 8.0 before SP1 Patch 5 - Build 3510, possibly tmufeng.dll before 3.0.0.1029, allows attackers to cause a denial of service (crash or OfficeScan hang) via unspecified vectors.  NOTE: it is likely that this issue also affects tmufeng.dll before 2.0.0.1049 for OfficeScan 10.0.</descript>
        </desc>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/56097">officescan-tmufe-bo(56097)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2010/0295">ADV-2010-0295</ref>
            <ref source="MISC" url="http://www.trendmicro.com/ftp/documentation/readme/readme_1224.txt">http://www.trendmicro.com/ftp/documentation/readme/readme_1224.txt</ref>
            <ref source="CONFIRM" url="http://www.trendmicro.com/ftp/documentation/readme/OSCE_80_Win_SP1_Patch_5_en_readme.txt">http://www.trendmicro.com/ftp/documentation/readme/OSCE_80_Win_SP1_Patch_5_en_readme.txt</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1023553">1023553</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/38083">38083</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/38396">38396</ref>
        </refs>
    </entry>

</nvd>