CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11610  CVE-2005-0404  Candidate  KMail 1.7.1 in KDE 3.3.2 allows remote attackers to spoof email information, such as whether the email has been digitally signed or encrypted, via HTML formatted email.  Assigned (20050214)  None (candidate not yet proposed)    View
11609  CVE-2005-0403  Candidate  init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty"s in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.  Assigned (20050214)  None (candidate not yet proposed)    View
11608  CVE-2005-0402  Candidate  Firefox before 1.0.2 allows remote attackers to execute arbitrary code by tricking a user into saving a page as a Firefox sidebar panel, then using the sidebar panel to inject Javascript into a privileged page.  Assigned (20050214)  None (candidate not yet proposed)    View
11607  CVE-2005-0401  Candidate  FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijacking drag and drop events, which allows remote attackers to execute arbitrary XUL code by tricking a user into dragging a scrollbar, a variant of CVE-2005-0527, aka "Firescrolling 2."  Assigned (20050214)  None (candidate not yet proposed)    View
11606  CVE-2005-0400  Candidate  The ext2_make_empty function call in the Linux kernel before 2.6.11.6 does not properly initialize memory when creating a block for a new directory entry, which allows local users to obtain potentially sensitive information by reading the block.  Assigned (20050214)  None (candidate not yet proposed)    View

Page 18622 of 20943, showing 5 records out of 104715 total, starting on record 93106, ending on 93110

Actions