CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9810  CVE-2004-1382  Candidate  The glibcbug script in glibc 2.3.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2004-0968.  Assigned (20050128)  None (candidate not yet proposed)    View
9809  CVE-2004-1381  Candidate  Firefox before 1.0 and Mozilla before 1.7.5 allow inactive (background) tabs to focus on input being entered in the active tab, as originally reported using form fields, which allows remote attackers to steal sensitive data that is intended for other sites, which could facilitate phishing attacks.  Assigned (20050125)  None (candidate not yet proposed)    View
9808  CVE-2004-1380  Candidate  Firefox before 1.0 and Mozilla before 1.7.5 allows inactive (background) tabs to launch dialog boxes, which can allow remote attackers to spoof the dialog boxes from web sites in other windows and facilitate phishing attacks, aka the "Dialog Box Spoofing Vulnerability."  Assigned (20050125)  None (candidate not yet proposed)    View
9807  CVE-2004-1379  Candidate  Heap-based buffer overflow in the DVD subpicture decoder in xine xine-lib 1-rc5 and earlier allows remote attackers to execute arbitrary code via a (1) DVD or (2) MPEG subpicture header where the second field reuses RLE data from the end of the first field.  Assigned (20050119)  None (candidate not yet proposed)    View
9806  CVE-2004-1378  Candidate  The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and possibly other packages, allows remote attackers to cause a denial of service (application crash) via a malformed packet to a socket that accepts XML connections.  Assigned (20050119)  None (candidate not yet proposed)    View

Page 18982 of 20943, showing 5 records out of 104715 total, starting on record 94906, ending on 94910

Actions