Show filters
135 Total Results
Displaying 131-135 of 135
Sort by:
Attacker Value
Unknown
CVE-2008-4984
Disclosure Date: November 06, 2008 (last updated October 04, 2023)
scratchbox2 1.99.0.24 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/dpkg.#####.tmp, (b) /tmp/missing_deps.#####, and (c) /tmp/sb2-pkg-chk.$tstamp.##### temporary files, related to the (1) dpkg-checkbuilddeps and (2) sb2-check-pkg-mappings scripts.
0
Attacker Value
Unknown
CVE-2008-3834
Disclosure Date: October 07, 2008 (last updated October 04, 2023)
The dbus_signature_validate function in the D-bus library (libdbus) before 1.2.4 allows remote attackers to cause a denial of service (application abort) via a message containing a malformed signature, which triggers a failed assertion error.
0
Attacker Value
Unknown
CVE-2008-1658
Disclosure Date: April 11, 2008 (last updated October 04, 2023)
Format string vulnerability in the grant helper (polkit-grant-helper.c) in PolicyKit 0.7 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in a password.
0
Attacker Value
Unknown
CVE-2008-0595
Disclosure Date: February 29, 2008 (last updated February 01, 2024)
dbus-daemon in D-Bus before 1.0.3, and 1.1.x before 1.1.20, recognizes send_interface attributes in allow directives in the security policy only for fully qualified method calls, which allows local users to bypass intended access restrictions via a method call with a NULL interface.
0
Attacker Value
Unknown
CVE-2007-3387
Disclosure Date: July 30, 2007 (last updated October 04, 2023)
Integer overflow in the StreamPredictor::StreamPredictor function in xpdf 3.02, as used in (1) poppler before 0.5.91, (2) gpdf before 2.8.2, (3) kpdf, (4) kdegraphics, (5) CUPS, (6) PDFedit, and other products, might allow remote attackers to execute arbitrary code via a crafted PDF file that triggers a stack-based buffer overflow in the StreamPredictor::getNextLine function.
0