Exploitdb Exploits

3,149 exploits tracked across all sources.

Sort: Activity Stars
CVE-2009-3522 EXPLOITDB c VERIFIED
Avast Antivirus Home - Memory Corruption
Stack-based buffer overflow in aswMon2.sys in avast! Home and Professional for Windows 4.8.1351, and possibly other versions before 4.8.1356, allows local users to cause a denial of service (system crash) and possibly gain privileges via a crafted IOCTL request to IOCTL 0xb2c80018.
by Giuseppe
CVE-2009-4049 EXPLOITDB c VERIFIED
avast! Home and Professional 4.8.1356.0 - Memory Corruption
Heap-based buffer overflow in aswRdr.sys (aka the TDI RDR driver) in avast! Home and Professional 4.8.1356.0 allows local users to cause a denial of service (memory corruption) or possibly gain privileges via crafted arguments to IOCTL 0x80002024.
by Evilcry
EIP-2026-103786 EXPLOITDB c VERIFIED
Multiple Vendor - TLS Protocol Session Renegotiation Security
by Marsh Ray
CVE-2009-3621 EXPLOITDB MEDIUM c VERIFIED
Linux Kernel < 2.6.31.4 - Denial of Service
net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.
by Tomoki Sekiyama
CVSS 5.5
CVE-2009-3888 EXPLOITDB c VERIFIED
Linux Kernel <2.6.31.6 - DoS
The do_mmap_pgoff function in mm/nommu.c in the Linux kernel before 2.6.31.6, when the CPU lacks a memory management unit, allows local users to cause a denial of service (OOPS) via an application that attempts to allocate a large amount of memory.
by David Howells
EIP-2026-104558 EXPLOITDB c VERIFIED
Apple Mac OSX 10.5.6/10.5.7 - ptrace mutex Denial of Service
by prdelka
EIP-2026-104559 EXPLOITDB c VERIFIED
Apple Mac OSX 10.5.x - 'ptrace' Mutex Handling Local Denial of Service
by Micheal Turner
CVE-2009-3547 EXPLOITDB HIGH c VERIFIED
Linux Kernel < 2.6.31.14 - Race Condition
Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privileges by attempting to open an anonymous pipe via a /proc/*/fd/ pathname.
by teach & xipe
CVSS 7.0
CVE-2009-3547 EXPLOITDB HIGH c VERIFIED
Linux Kernel < 2.6.31.14 - Race Condition
Multiple race conditions in fs/pipe.c in the Linux kernel before 2.6.32-rc6 allow local users to cause a denial of service (NULL pointer dereference and system crash) or gain privileges by attempting to open an anonymous pipe via a /proc/*/fd/ pathname.
by teach & xipe
CVSS 7.0
EIP-2026-115878 EXPLOITDB c VERIFIED
Mthree Development MP3 to WAV Decoder - '.mp3' Remote Buffer Overflow
by 4m!n
CVE-2009-3726 EXPLOITDB c VERIFIED
Linux Kernel < 2.6.31 - Resource Management Error
The nfs4_proc_lock function in fs/nfs/nfs4proc.c in the NFSv4 client in the Linux kernel before 2.6.31-rc4 allows remote NFS servers to cause a denial of service (NULL pointer dereference and panic) by sending a certain response containing incorrect file attributes, which trigger attempted use of an open file that lacks NFSv4 state.
by Simon Vallet
EIP-2026-100959 EXPLOITDB c VERIFIED
FreeBSD 7.2 - VFS/devfs Race Condition
by Przemyslaw Frasunek
CVE-2009-3527 EXPLOITDB c VERIFIED
Freebsd - Race Condition
Race condition in the Pipe (IPC) close function in FreeBSD 6.3 and 6.4 allows local users to cause a denial of service (crash) or gain privileges via vectors related to kqueues, which triggers a use after free, leading to a NULL pointer dereference or memory corruption.
by Przemyslaw Frasunek
CVE-2008-5754 EXPLOITDB c VERIFIED
BulletProof FTP Client - Buffer Overflow
Stack-based buffer overflow in BulletProof FTP Client allows user-assisted attackers to execute arbitrary code via a .bps file (aka Session-File) with a long second line, possibly a related issue to CVE-2008-5753.
by Rafa De Sousa
EIP-2026-103353 EXPLOITDB c
Linux Kernel 2.6.32-rc1 (x86-64) - Register Leak
by spender
CVE-2009-3281 EXPLOITDB c VERIFIED
Vmware Fusion < 2.0.5 - Access Control
The vmx86 kernel extension in VMware Fusion before 2.0.6 build 196839 does not use correct file permissions, which allows host OS users to gain privileges on the host OS via unspecified vectors.
by mu-b
EIP-2026-104573 EXPLOITDB c VERIFIED
VMware Fusion 2.0.5 - vmx86 kext Local Buffer Overflow (PoC)
by mu-b
CVE-2009-4114 EXPLOITDB c VERIFIED
Kaspersky Anti-Virus <9.0.0.736 - DoS
kl1.sys in Kaspersky Anti-Virus 2010 9.0.0.463, and possibly other versions before 9.0.0.736, does not properly validate input to IOCTL 0x0022c008, which allows local users to cause a denial of service (system crash) via IOCTL requests using crafted kernel addresses that trigger memory corruption, possibly related to klavemu.kdl.
by Heurs
EIP-2026-114716 EXPLOITDB c VERIFIED
Sun Solaris 10 RPC dmispd - Denial of Service
by Jeremy Brown
EIP-2026-115951 EXPLOITDB c VERIFIED
Notepad++ 5.4.5 - '.C' / '.CPP' Local Stack Buffer Overflow (PoC)
by fl0 fl0w
CVE-2009-2793 EXPLOITDB c VERIFIED
NetBSD <5.0.1 - Privilege Escalation
The kernel in NetBSD, probably 5.0.1 and earlier, on x86 platforms does not properly handle a pre-commit failure of the iret instruction, which might allow local users to gain privileges via vectors related to a tempEIP pseudocode variable that is outside of the code-segment limits.
by Tavis Ormandy
CVE-2008-7162 EXPLOITDB c VERIFIED
Hero Super Player 3000 - Buffer Overflow
Buffer overflow in Hero Super Player 3000 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long filename in a .M3U file. NOTE: this might be related to CVE-2008-4504.
by fl0 fl0w
CVE-2007-2795 EXPLOITDB c VERIFIED
Ipswitch IMail <2006.21 - Buffer Overflow
Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) the authentication feature in IMailsec.dll, which triggers heap corruption in the IMail Server, or (2) a long SUBSCRIBE IMAP command, which triggers a stack-based buffer overflow in the IMAP Daemon.
by dmc
EIP-2026-117638 EXPLOITDB c VERIFIED
MP3 Studio 1.0 - '.m3u' Local Buffer Overflow
by dmc
EIP-2026-115029 EXPLOITDB c VERIFIED
Cerberus FTP Server 3.0.3 - Remote Denial of Service
by Single Eye