Show filters
27 Total Results
Displaying 11-20 of 27
Sort by:
Attacker Value
Unknown
CVE-2005-4077
Disclosure Date: December 08, 2005 (last updated February 22, 2025)
Multiple off-by-one errors in the cURL library (libcurl) 7.11.2 through 7.15.0 allow local users to trigger a buffer overflow and cause a denial of service or bypass PHP security restrictions via certain URLs that (1) are malformed in a way that prevents a terminating null byte from being added to either a hostname or path buffer, or (2) contain a "?" separator in the hostname portion, which causes a "/" to be prepended to the resulting string.
0
Attacker Value
Unknown
CVE-2005-3962
Disclosure Date: December 01, 2005 (last updated February 22, 2025)
Integer overflow in the format string functionality (Perl_sv_vcatpvfn) in Perl 5.9.2 and 5.8.6 Perl allows attackers to overwrite arbitrary memory and possibly execute arbitrary code via format string specifiers with large values, which causes an integer wrap and leads to a buffer overflow, as demonstrated using format string vulnerabilities in Perl applications.
0
Attacker Value
Unknown
CVE-2005-2753
Disclosure Date: November 05, 2005 (last updated February 22, 2025)
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string.
0
Attacker Value
Unknown
CVE-2005-2754
Disclosure Date: November 05, 2005 (last updated February 22, 2025)
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file with "Improper movie attributes."
0
Attacker Value
Unknown
CVE-2005-3267
Disclosure Date: October 27, 2005 (last updated February 22, 2025)
Integer overflow in Skype client before 1.4.x.84 on Windows, before 1.3.x.17 on Mac OS, before 1.2.x.18 on Linux, and 1.1.x.6 and earlier allows remote attackers to cause a denial of service (crash) via crafted network data with a large Object Counter value, which leads to a resultant heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2005-2495
Disclosure Date: September 15, 2005 (last updated February 22, 2025)
Multiple integer overflows in XFree86 before 4.3.0 allow user-assisted attackers to execute arbitrary code via a crafted pixmap image.
0
Attacker Value
Unknown
CVE-2005-1852
Disclosure Date: July 26, 2005 (last updated February 22, 2025)
Multiple integer overflows in libgadu, as used in Kopete in KDE 3.2.3 to 3.4.1, ekg before 1.6rc3, GNU Gadu, CenterICQ, Kadu, and other packages, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an incoming message.
0
Attacker Value
Unknown
CVE-2005-1704
Disclosure Date: May 24, 2005 (last updated February 22, 2025)
Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted attackers to execute arbitrary code via a crafted object file that specifies a large number of section headers, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2005-0739
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The IAPP dissector (packet-iapp.c) for Ethereal 0.9.1 to 0.10.9 does not properly use certain routines for formatting strings, which could leave it vulnerable to buffer overflows, as demonstrated using modified length values that are not properly handled by the dissect_pdus and pduval_to_str functions.
0
Attacker Value
Unknown
CVE-2004-2731
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple integer overflows in Sbus PROM driver (drivers/sbus/char/openprom.c) for the Linux kernel 2.4.x up to 2.4.27, 2.6.x up to 2.6.7, and possibly later versions, allow local users to execute arbitrary code by specifying (1) a small buffer size to the copyin_string function or (2) a negative buffer size to the copyin function.
0