Show filters
54 Total Results
Displaying 21-30 of 54
Sort by:
Attacker Value
Unknown
CVE-2004-1014
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.
0
Attacker Value
Unknown
CVE-2004-0802
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817.
0
Attacker Value
Unknown
CVE-2004-2392
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, related to read failures and other bugs.
0
Attacker Value
Unknown
CVE-2004-0817
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
0
Attacker Value
Unknown
CVE-2004-2395
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer.
0
Attacker Value
Unknown
CVE-2004-2394
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of the search space required for brute force attacks.
0
Attacker Value
Unknown
CVE-2004-0805
Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Buffer overflow in layer2.c in mpg123 0.59r and possibly mpg123 0.59s allows remote attackers to execute arbitrary code via a certain (1) mp3 or (2) mp2 file.
0
Attacker Value
Unknown
CVE-2004-0834
Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.
0
Attacker Value
Unknown
CVE-2004-1307
Disclosure Date: December 21, 2004 (last updated February 22, 2025)
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2004-0496
Disclosure Date: December 06, 2004 (last updated February 22, 2025)
Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a different set of vulnerabilities than those identified in CVE-2004-0495, as found by the Sparse source code checking tool.
0