CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9440  CVE-2004-1012  Candidate  The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption.  Assigned (20041104)  None (candidate not yet proposed)    View
9439  CVE-2004-1011  Candidate  Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015.  Assigned (20041104)  None (candidate not yet proposed)    View
9438  CVE-2004-1010  Candidate  Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote attackers to execute arbitrary code via a ZIP file containing a long pathname.  Assigned (20041104)  None (candidate not yet proposed)    View
9437  CVE-2004-1009  Candidate  Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.  Assigned (20041103)  None (candidate not yet proposed)    View
9436  CVE-2004-1008  Candidate  Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a modified stringlen parameter, which leads to a buffer overflow.  Assigned (20041103)  None (candidate not yet proposed)    View

Page 19056 of 20943, showing 5 records out of 104715 total, starting on record 95276, ending on 95280

Actions