Show filters
99 Total Results
Displaying 91-99 of 99
Sort by:
Attacker Value
Unknown
CVE-2004-1058
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Race condition in Linux kernel 2.6 allows local users to read the environment variables of another process that is still spawning via /proc/.../cmdline.
0
Attacker Value
Unknown
CVE-2004-1067
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.
0
Attacker Value
Unknown
CVE-2004-1016
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
The scm_send function in the scm layer for Linux kernel 2.4.x up to 2.4.28, and 2.6.x up to 2.6.9, allows local users to cause a denial of service (system hang) via crafted auxiliary messages that are passed to the sendmsg function, which causes a deadlock condition.
0
Attacker Value
Unknown
CVE-2004-0802
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817.
0
Attacker Value
Unknown
CVE-2004-0817
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
0
Attacker Value
Unknown
CVE-2004-0814
Disclosure Date: December 23, 2004 (last updated February 22, 2025)
Multiple race conditions in the terminal layer in Linux 2.4.x, and 2.6.x before 2.6.9, allow (1) local users to obtain portions of kernel data via a TIOCSETD ioctl call to a terminal interface that is being accessed by another thread, or (2) remote attackers to cause a denial of service (panic) by switching from console to PPP line discipline, then quickly sending data that is received during the switch.
0
Attacker Value
Unknown
CVE-2004-1337
Disclosure Date: December 23, 2004 (last updated February 22, 2025)
The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a process that is launched before the module is loaded, which allows local users to gain privileges.
0
Attacker Value
Unknown
CVE-2004-0827
Disclosure Date: September 16, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3) DIB files.
0
Attacker Value
Unknown
CVE-1999-1572
Disclosure Date: July 16, 1996 (last updated February 22, 2025)
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.
0