CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9810 | CVE-2004-1382 | Candidate | The glibcbug script in glibc 2.3.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2004-0968. | Assigned (20050128) | None (candidate not yet proposed) | View | |
9809 | CVE-2004-1381 | Candidate | Firefox before 1.0 and Mozilla before 1.7.5 allow inactive (background) tabs to focus on input being entered in the active tab, as originally reported using form fields, which allows remote attackers to steal sensitive data that is intended for other sites, which could facilitate phishing attacks. | Assigned (20050125) | None (candidate not yet proposed) | View | |
9808 | CVE-2004-1380 | Candidate | Firefox before 1.0 and Mozilla before 1.7.5 allows inactive (background) tabs to launch dialog boxes, which can allow remote attackers to spoof the dialog boxes from web sites in other windows and facilitate phishing attacks, aka the "Dialog Box Spoofing Vulnerability." | Assigned (20050125) | None (candidate not yet proposed) | View | |
9807 | CVE-2004-1379 | Candidate | Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to execute arbitrary code via a (1) DVD or (2) MPEG subpicture header where the second field reuses RLE data from the end of the first field. | Assigned (20050119) | None (candidate not yet proposed) | View | |
9806 | CVE-2004-1378 | Candidate | The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and possibly other packages, allows remote attackers to cause a denial of service (application crash) via a malformed packet to a socket that accepts XML connections. | Assigned (20050119) | None (candidate not yet proposed) | View |
Page 18982 of 20943, showing 5 records out of 104715 total, starting on record 94906, ending on 94910