CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9376  CVE-2004-0948  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. It was a duplicate assignment before public disclosure. Notes: none.  Assigned (20041012)  None (candidate not yet proposed)    View
9377  CVE-2004-0949  Candidate  The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.  Assigned (20041012)  None (candidate not yet proposed)    View
9378  CVE-2004-0950  Candidate  NetOp Host before 7.65 build 2004278 allows remote attackers to obtain sensitive hostname, username and local IP address information via (1) a NetOp HELO request, or (2) when responses are disabled, a "custom" HELO request.  Assigned (20041013)  None (candidate not yet proposed)    View
9379  CVE-2004-0951  Candidate  The make_recovery command for the TFTP server in HP Ignite-UX before C.6.2.241 makes a copy of the password file in the TFTP directory tree, which allows remote attackers to obtain sensitive information.  Assigned (20041013)  None (candidate not yet proposed)    View
9380  CVE-2004-0952  Candidate  HP-UX B.11.00 through B.11.23, when running Ignite-UX and using the add_new_client command, causes the TFTP server to set world-writable permissions on part of the directory tree, which allows remote attackers to modify data or cause disk consumption.  Assigned (20041013)  None (candidate not yet proposed)    View

Page 1876 of 20943, showing 5 records out of 104715 total, starting on record 9376, ending on 9380

Actions