Show filters
55 Total Results
Displaying 31-40 of 55
Sort by:
Attacker Value
Unknown

CVE-2004-0805

Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Buffer overflow in layer2.c in mpg123 0.59r and possibly mpg123 0.59s allows remote attackers to execute arbitrary code via a certain (1) mp3 or (2) mp2 file.
0
Attacker Value
Unknown

CVE-2004-0803

Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.
0
Attacker Value
Unknown

CVE-2004-0834

Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.
0
Attacker Value
Unknown

CVE-2004-1307

Disclosure Date: December 21, 2004 (last updated February 22, 2025)
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2004-0496

Disclosure Date: December 06, 2004 (last updated February 22, 2025)
Multiple unknown vulnerabilities in Linux kernel 2.6 allow local users to gain privileges or access kernel memory, a different set of vulnerabilities than those identified in CVE-2004-0495, as found by the Sparse source code checking tool.
0
Attacker Value
Unknown

CVE-2004-0565

Disclosure Date: December 06, 2004 (last updated February 22, 2025)
Floating point information leak in the context switch code for Linux 2.4.x only checks the MFH bit but does not verify the FPH owner, which allows local users to read register values of other processes by setting the MFH bit.
0
Attacker Value
Unknown

CVE-2004-0633

Disclosure Date: December 06, 2004 (last updated February 22, 2025)
The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow.
0
Attacker Value
Unknown

CVE-2004-0634

Disclosure Date: December 06, 2004 (last updated February 22, 2025)
The SMB SID snooping capability in Ethereal 0.9.15 to 0.10.4 allows remote attackers to cause a denial of service (process crash) via a handle without a policy name, which causes a null dereference.
0
Attacker Value
Unknown

CVE-2004-0497

Disclosure Date: December 06, 2004 (last updated February 22, 2025)
Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4.
0
Attacker Value
Unknown

CVE-2004-0635

Disclosure Date: December 06, 2004 (last updated February 22, 2025)
The SNMP dissector in Ethereal 0.8.15 through 0.10.4 allows remote attackers to cause a denial of service (process crash) via a (1) malformed or (2) missing community string, which causes an out-of-bounds read.
0