CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9380  CVE-2004-0952  Candidate  HP-UX B.11.00 through B.11.23, when running Ignite-UX and using the add_new_client command, causes the TFTP server to set world-writable permissions on part of the directory tree, which allows remote attackers to modify data or cause disk consumption.  Assigned (20041013)  None (candidate not yet proposed)    View
9379  CVE-2004-0951  Candidate  The make_recovery command for the TFTP server in HP Ignite-UX before C.6.2.241 makes a copy of the password file in the TFTP directory tree, which allows remote attackers to obtain sensitive information.  Assigned (20041013)  None (candidate not yet proposed)    View
9378  CVE-2004-0950  Candidate  NetOp Host before 7.65 build 2004278 allows remote attackers to obtain sensitive hostname, username and local IP address information via (1) a NetOp HELO request, or (2) when responses are disabled, a "custom" HELO request.  Assigned (20041013)  None (candidate not yet proposed)    View
9377  CVE-2004-0949  Candidate  The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.  Assigned (20041012)  None (candidate not yet proposed)    View
9376  CVE-2004-0948  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. It was a duplicate assignment before public disclosure. Notes: none.  Assigned (20041012)  None (candidate not yet proposed)    View

Page 19068 of 20943, showing 5 records out of 104715 total, starting on record 95336, ending on 95340

Actions