Show filters
99 Total Results
Displaying 41-50 of 99
Sort by:
Attacker Value
Unknown
CVE-2007-1352
Disclosure Date: April 06, 2007 (last updated October 04, 2023)
Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.
0
Attacker Value
Unknown
CVE-2007-1351
Disclosure Date: April 06, 2007 (last updated October 04, 2023)
Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.
0
Attacker Value
Unknown
CVE-2006-5649
Disclosure Date: December 14, 2006 (last updated October 04, 2023)
Unspecified vulnerability in the "alignment check exception handling" in Ubuntu 5.10, 6.06 LTS, and 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (kernel panic) via unspecified vectors.
0
Attacker Value
Unknown
CVE-2006-5648
Disclosure Date: December 14, 2006 (last updated October 04, 2023)
Ubuntu Linux 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (resource consumption) by using the (1) sys_get_robust_list and (2) sys_set_robust_list functions to create processes that cannot be killed.
0
Attacker Value
Unknown
CVE-2006-6235
Disclosure Date: December 07, 2006 (last updated October 04, 2023)
A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute arbitrary code via crafted OpenPGP packets that cause GnuPG to dereference a function pointer from deallocated stack memory.
0
Attacker Value
Unknown
CVE-2006-5466
Disclosure Date: November 06, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in the showQueryPackage function in librpm in RPM Package Manager 4.4.8, when the LANG environment variable is set to ru_RU.UTF-8, might allow user-assisted attackers to execute arbitrary code via crafted RPM packages.
0
Attacker Value
Unknown
CVE-2006-3597
Disclosure Date: July 18, 2006 (last updated October 04, 2023)
passwd before 1:4.0.13 on Ubuntu 6.06 LTS leaves the root password blank instead of locking it when the administrator selects the "Go Back" option after the final "Installation complete" message and uses the main menu, which causes the password to be zeroed out in the installer's memory.
0
Attacker Value
Unknown
CVE-2006-3378
Disclosure Date: July 06, 2006 (last updated October 04, 2023)
passwd command in shadow in Ubuntu 5.04 through 6.06 LTS, when called with the -f, -g, or -s flag, does not check the return code of a setuid call, which might allow local users to gain root privileges if setuid fails in cases such as PAM failures or resource limits.
0
Attacker Value
Unknown
CVE-2006-1183
Disclosure Date: March 13, 2006 (last updated February 22, 2025)
The Ubuntu 5.10 installer does not properly clear passwords from the installer log file (questions.dat), and leaves the log file with world-readable permissions, which allows local users to gain privileges.
0
Attacker Value
Unknown
CVE-2006-0151
Disclosure Date: January 09, 2006 (last updated February 22, 2025)
sudo 1.6.8 and other versions does not clear the PYTHONINSPECT environment variable, which allows limited local users to gain privileges via a Python script, a variant of CVE-2005-4158.
0