CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12734  CVE-2005-1528  Candidate  Untrusted search path vulnerability in the crttrap command in QNX Neutrino RTOS 6.2.1 allows local users to load arbitrary libraries via a LD_LIBRARY_PATH environment variable that references a malicious library.  Assigned (20050512)  None (candidate not yet proposed)    View
12735  CVE-2005-1529  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20050512)  None (candidate not yet proposed)    View
12736  CVE-2005-1530  Candidate  Sophos Anti-Virus 5.0.1, with "Scan inside archive files" enabled, allows remote attackers to cause a denial of service (CPU consumption by infinite loop) via a Bzip2 archive with a large "Extra field length" value.  Assigned (20050512)  None (candidate not yet proposed)    View
12737  CVE-2005-1531  Candidate  Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly implement certain security checks for script injection, which allows remote attackers to execute script via "Wrapped" javascript: URLs, as demonstrated using (1) a javascript: URL in a view-source: URL, (2) a javascript: URL in a jar: URL, or (3) "a nested variant."  Assigned (20050512)  None (candidate not yet proposed)    View
12738  CVE-2005-1532  Candidate  Firefox before 1.0.4 and Mozilla Suite before 1.7.8 do not properly limit privileges of Javascript eval and Script objects in the calling context, which allows remote attackers to conduct unauthorized activities via "non-DOM property overrides," a variant of CVE-2005-1160.  Assigned (20050512)  None (candidate not yet proposed)    View

Page 1558 of 20943, showing 5 records out of 104715 total, starting on record 7786, ending on 7790

Actions