CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14293  CVE-2005-3087  Candidate  The SecureW2 3.0 TLS implementation uses weak random number generators (rand and srand from system time) during generation of the pre-master secret (PMS), which makes it easier for attackers to guess the secret and decrypt sensitive data.  Assigned (20050927)  None (candidate not yet proposed)    View
8056  CVE-2003-1232  Candidate  Emacs 21.2.1 does not prompt or warn the user before executing Lisp code in the local variables section of a text file, which allows user-assisted attackers to execute arbitrary commands, as demonstrated using the mode-name variable.  Assigned (20050926)  None (candidate not yet proposed)    View
14259  CVE-2005-3053  Candidate  The sys_set_mempolicy function in mempolicy.c in Linux kernel 2.6.x allows local users to cause a denial of service (kernel BUG()) via a negative first argument.  Assigned (20050926)  None (candidate not yet proposed)    View
14260  CVE-2005-3054  Candidate  fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not properly restrict access to other directories when the open_basedir directive includes a trailing slash, which allows PHP scripts in one directory to access files in other directories whose names are substrings of the original directory.  Assigned (20050926)  None (candidate not yet proposed)    View
14261  CVE-2005-3055  Candidate  Linux kernel 2.6.8 to 2.6.14-rc2 allows local users to cause a denial of service (kernel OOPS) via a userspace process that issues a USB Request Block (URB) to a USB device and terminates before the URB is finished, which leads to a stale pointer reference.  Assigned (20050926)  None (candidate not yet proposed)    View

Page 18876 of 20943, showing 5 records out of 104715 total, starting on record 94376, ending on 94380

Actions