Show filters
56 Total Results
Displaying 11-20 of 56
Sort by:
Attacker Value
Unknown

CVE-2005-0384

Disclosure Date: March 15, 2005 (last updated February 22, 2025)
Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd client.
0
Attacker Value
Unknown

CVE-2004-0989

Disclosure Date: March 01, 2005 (last updated February 22, 2025)
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code via (1) a long FTP URL that is not properly handled by the xmlNanoFTPScanURL function, (2) a long proxy URL containing FTP data that is not properly handled by the xmlNanoFTPScanProxy function, and other overflows related to manipulation of DNS length values, including (3) xmlNanoFTPConnect, (4) xmlNanoHTTPConnectHost, and (5) xmlNanoHTTPConnectHost.
0
Attacker Value
Unknown

CVE-2004-0990

Disclosure Date: March 01, 2005 (last updated February 22, 2025)
Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941.
0
Attacker Value
Unknown

CVE-2004-1051

Disclosure Date: March 01, 2005 (last updated February 22, 2025)
sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without using the program's full pathname.
0
Attacker Value
Unknown

CVE-2004-0957

Disclosure Date: February 09, 2005 (last updated October 04, 2023)
Unknown vulnerability in MySQL 3.23.58 and earlier, when a local user has privileges for a database whose name includes a "_" (underscore), grants privileges to other databases that have similar names, which can allow the user to conduct unauthorized activities.
0
Attacker Value
Unknown

CVE-2004-0977

Disclosure Date: February 09, 2005 (last updated February 22, 2025)
The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files.
0
Attacker Value
Unknown

CVE-2004-0940

Disclosure Date: February 09, 2005 (last updated February 22, 2025)
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
Attacker Value
Unknown

CVE-2004-0941

Disclosure Date: February 09, 2005 (last updated February 22, 2025)
Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malformed image files that trigger the overflows due to improper calls to the gdMalloc function, a different set of vulnerabilities than CVE-2004-0990.
0
Attacker Value
Unknown

CVE-2005-0156

Disclosure Date: February 07, 2005 (last updated February 22, 2025)
Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree.
0
Attacker Value
Unknown

CVE-2004-0918

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
The asn_parse_header function (asn1.c) in the SNMP module for Squid Web Proxy Cache before 2.4.STABLE7 allows remote attackers to cause a denial of service (server restart) via certain SNMP packets with negative length fields that trigger a memory allocation error.
0