Page 10 of 104 results (0.010 seconds)

CVSS: 9.8EPSS: 1%CPEs: 82EXPL: 0

02 Mar 2005 — scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow. • ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2006.5/SCOSA-2006.5.txt •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

21 Feb 2005 — Unknown vulnerability in the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch, when using the hugemem kernel, allows local users to read and write to arbitrary kernel memory and gain privileges via certain syscalls. • http://www.redhat.com/support/errata/RHSA-2005-092.html •

CVSS: 5.5EPSS: 0%CPEs: 4EXPL: 0

21 Feb 2005 — A regression error in the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch omits an "access check," which allows local users to cause a denial of service (crash). • http://www.redhat.com/support/errata/RHSA-2005-092.html •

CVSS: 7.5EPSS: 12%CPEs: 14EXPL: 0

19 Feb 2005 — Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000933 •

CVSS: 6.5EPSS: 11%CPEs: 14EXPL: 0

19 Feb 2005 — The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes "an invalid memory access," a different vulnerability than CVE-2005-0208. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000933 •

CVSS: 5.5EPSS: 0%CPEs: 4EXPL: 0

19 Feb 2005 — Unknown vulnerability in the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch, when running on x86 with the hugemem kernel, allows local users to cause a denial of service (crash). • http://www.redhat.com/support/errata/RHSA-2005-092.html •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

15 Feb 2005 — The alsa-lib package in Red Hat Linux 4 disables stack protection for the libasound.so library, which makes it easier for attackers to execute arbitrary code if there are other vulnerabilities in the library. El paquete alsa-lib en Red Hat Linux 4 deshabilita la protección de pila de la librería libasound.so, lo que facilita a los atacantes la ejecución de código arbitrario si existen otras vulnerabilidades en la librería. • http://www.redhat.com/support/errata/RHSA-2005-033.html •

CVSS: 9.1EPSS: 0%CPEs: 13EXPL: 0

10 Feb 2005 — Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname. • http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=267837 •

CVSS: 5.5EPSS: 0%CPEs: 7EXPL: 0

29 Jan 2005 — The DBI library (libdbi-perl) for Perl allows local users to overwrite arbitrary files via a symlink attack on a temporary PID file. • http://marc.info/?l=bugtraq&m=110667936707597&w=2 •

CVSS: 7.2EPSS: 0%CPEs: 134EXPL: 0

21 Jan 2005 — Multiple drivers in Linux kernel 2.4.19 and earlier do not properly mark memory with the VM_IO flag, which causes incorrect reference counts and may lead to a denial of service (kernel panic) when accessing freed kernel pages. • http://secunia.com/advisories/18562 •