CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12470  CVE-2005-1264  Candidate  Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block device, which crosses security boundaries by making kernel address space accessible from user space, a similar vulnerability to CVE-2005-1589.  Assigned (20050425)  None (candidate not yet proposed)    View
12471  CVE-2005-1265  Candidate  The mmap function in the Linux Kernel 2.6.10 can be used to create memory maps with a start address beyond the end address, which allows local users to cause a denial of service (kernel crash).  Assigned (20050425)  None (candidate not yet proposed)    View
12472  CVE-2005-1266  Candidate  Apache SpamAssassin 3.0.1, 3.0.2, and 3.0.3 allows remote attackers to cause a denial of service (CPU consumption and slowdown) via a message with a long Content-Type header without any boundaries.  Assigned (20050425)  None (candidate not yet proposed)    View
12473  CVE-2005-1267  Candidate  The bgp_update_print function in tcpdump 3.x does not properly handle a -1 return value from the decode_prefix4 function, which allows remote attackers to cause a denial of service (infinite loop) via a crafted BGP packet.  Assigned (20050425)  None (candidate not yet proposed)    View
12474  CVE-2005-1268  Candidate  Off-by-one error in the mod_ssl Certificate Revocation List (CRL) verification callback in Apache, when configured to use a CRL, allows remote attackers to cause a denial of service (child process crash) via a CRL that causes a buffer overflow of one null byte.  Assigned (20050425)  None (candidate not yet proposed)    View

Page 1432 of 20943, showing 5 records out of 104715 total, starting on record 7156, ending on 7160

Actions