CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9210  CVE-2004-0782  Candidate  Integer overflow in pixbuf_create_from_xpm (io-xpm.c) in the XPM image decoder for gtk+ 2.4.4 (gtk2) and earlier, and gdk-pixbuf before 0.22, allows remote attackers to execute arbitrary code via certain n_col and cpp values that enable a heap-based buffer overflow. NOTE: this identifier is ONLY for gtk+. It was incorrectly referenced in an advisory for a different issue (CVE-2004-0687).  Assigned (20040817)  None (candidate not yet proposed)    View
9209  CVE-2004-0781  Candidate  Cross-site scripting (XSS) vulnerability in list.cgi in the Icecast internal web server (icecast-server) 1.3.12 and earlier allows remote attackers to inject arbitrary web script via the UserAgent parameter.  Assigned (20040817)  None (candidate not yet proposed)    View
9208  CVE-2004-0780  Candidate  Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument.  Assigned (20040817)  None (candidate not yet proposed)    View
9207  CVE-2004-0779  Candidate  The (1) Mozilla 1.6, (2) Firebird 0.7 and (3) Firefox 0.8 web browsers do not properly verify that cached passwords for SSL encrypted sites are only sent via SSL encrypted sessions to the site, which allows a remote attacker to cause a cached password to be sent in cleartext to a spoofed site.  Assigned (20040813)  None (candidate not yet proposed)    View
9206  CVE-2004-0778  Candidate  CVS 1.11.x before 1.11.17, and 1.12.x before 1.12.9, allows remote attackers to determine the existence of arbitrary files and directories via the -X command for an alternate history file, which causes different error messages to be returned.  Assigned (20040811)  None (candidate not yet proposed)    View

Page 19102 of 20943, showing 5 records out of 104715 total, starting on record 95506, ending on 95510

Actions