CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7791  CVE-2003-0967  Candidate  rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADIUS string attribute with a tag, which causes memcpy to be called with a -1 length argument, as demonstrated using the Tunnel-Password attribute.  Assigned (20031126)  None (candidate not yet proposed)    View
7792  CVE-2003-0968  Candidate  Stack-based buffer overflow in SMB_Logon_Server of the rlm_smb experimental module for FreeRADIUS 0.9.3 and earlier allows remote attackers to execute arbitrary code via a long User-Password attribute.  Assigned (20031126)  None (candidate not yet proposed)    View
7793  CVE-2003-0969  Entry  mpg321 0.2.10 allows remote attackers to overwrite memory and possibly execute arbitrary code via an mp3 file that passes certain strings to the printf function, possibly triggering a format string vulnerability.        View
7794  CVE-2003-0970  Candidate  The Network Management Port on Sun Fire B1600 systems allows remote attackers to cause a denial of service (packet loss) via ARP packets, which cause all ports to become temporarily disabled.  Assigned (20031201)  None (candidate not yet proposed)    View
7795  CVE-2003-0971  Candidate  GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature.  Assigned (20031201)  None (candidate not yet proposed)    View

Page 1559 of 20943, showing 5 records out of 104715 total, starting on record 7791, ending on 7795

Actions