Show filters
27 Total Results
Displaying 11-20 of 27
Sort by:
Attacker Value
Unknown
CVE-2004-0746
Disclosure Date: October 20, 2004 (last updated February 22, 2025)
Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session.
0
Attacker Value
Unknown
CVE-2004-0827
Disclosure Date: September 16, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3) DIB files.
0
Attacker Value
Unknown
CVE-2004-0807
Disclosure Date: September 13, 2004 (last updated February 22, 2025)
Samba 3.0.6 and earlier allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via certain malformed requests that cause new processes to be spawned and enter an infinite loop.
0
Attacker Value
Unknown
CVE-2004-0461
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses C include files that define vsnprintf to use the less safe vsprintf function, which can lead to buffer overflow vulnerabilities that enable a denial of service (server crash) and possibly execute arbitrary code.
0
Attacker Value
Unknown
CVE-2004-0587
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service.
0
Attacker Value
Unknown
CVE-2004-0535
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. NOTE: this issue was originally incorrectly reported as a "buffer overflow" by some sources.
0
Attacker Value
Unknown
CVE-2004-0460
Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multiple hostname options in (1) DISCOVER, (2) OFFER, (3) REQUEST, (4) ACK, or (5) NAK messages, which can generate a long string when writing to a log file.
0
Attacker Value
Unknown
CVE-2003-0041
Disclosure Date: February 19, 2003 (last updated February 22, 2025)
Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client.
0
Attacker Value
Unknown
CVE-2002-2185
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
0
Attacker Value
Unknown
CVE-2002-2001
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
jmcce 1.3.8 in Mandrake 8.1 creates log files in /tmp with predictable names, which allows local users to overwrite arbitrary files via a symlink attack.
0