CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9265  CVE-2004-0837  Candidate  MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows attackers to cause a denial of service (crash or hang) via multiple threads that simultaneously alter MERGE table UNIONs.  Assigned (20040908)  None (candidate not yet proposed)    View
9264  CVE-2004-0836  Candidate  Buffer overflow in the mysql_real_connect function in MySQL 4.x before 4.0.21, and 3.x before 3.23.49, allows remote DNS servers to cause a denial of service and possibly execute arbitrary code via a DNS response with a large address length (h_length).  Assigned (20040908)  None (candidate not yet proposed)    View
9263  CVE-2004-0835  Candidate  MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.  Assigned (20040908)  None (candidate not yet proposed)    View
9262  CVE-2004-0834  Candidate  Format string vulnerability in Speedtouch USB driver before 1.3.1 allows local users to execute arbitrary code via (1) modem_run, (2) pppoa2, or (3) pppoa3.  Assigned (20040908)  None (candidate not yet proposed)    View
9261  CVE-2004-0833  Candidate  Sendmail before 8.12.3 on Debian GNU/Linux, when using sasl and sasl-bin, uses a Sendmail configuration script with a fixed username and password, which could allow remote attackers to use Sendmail as an open mail relay and send spam messages.  Assigned (20040908)  None (candidate not yet proposed)    View

Page 19091 of 20943, showing 5 records out of 104715 total, starting on record 95451, ending on 95455

Actions