CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14480  CVE-2005-3274  Candidate  Race condition in ip_vs_conn_flush in Linux 2.6 before 2.6.13 and 2.4 before 2.4.32-pre2, when running on SMP systems, allows local users to cause a denial of service (null dereference) by causing a connection timer to expire while the connection table is being flushed before the appropriate lock is acquired.  Assigned (20051020)  None (candidate not yet proposed)    View
14481  CVE-2005-3275  Candidate  The NAT code (1) ip_nat_proto_tcp.c and (2) ip_nat_proto_udp.c in Linux kernel 2.6 before 2.6.13 and 2.4 before 2.4.32-rc1 incorrectly declares a variable to be static, which allows remote attackers to cause a denial of service (memory corruption) by causing two packets for the same protocol to be NATed at the same time, which leads to memory corruption.  Assigned (20051020)  None (candidate not yet proposed)    View
14482  CVE-2005-3276  Candidate  The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information.  Assigned (20051020)  None (candidate not yet proposed)    View
14464  CVE-2005-3258  Candidate  The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain "odd" responses.  Assigned (20051019)  None (candidate not yet proposed)    View
14458  CVE-2005-3252  Candidate  Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.  Assigned (20051018)  None (candidate not yet proposed)    View

Page 18836 of 20943, showing 5 records out of 104715 total, starting on record 94176, ending on 94180

Actions