CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9200  CVE-2004-0772  Candidate  Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.  Assigned (20040805)  None (candidate not yet proposed)    View
9199  CVE-2004-0771  Candidate  Buffer overflow in the extract_one function from lhext.c in LHA may allow attackers to execute arbitrary code via a long w (working directory) command line option, a different issue than CVE-2004-0769. NOTE: this issue may be REJECTED if there are not any cases in which LHA is setuid or is otherwise used across security boundaries.  Assigned (20040804)  None (candidate not yet proposed)    View
9198  CVE-2004-0770  Candidate  romload.c in DGen Emulator 1.23 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files during decompression of (1) gzip or (2) bzip ROM files.  Assigned (20040803)  None (candidate not yet proposed)    View
9197  CVE-2004-0769  Candidate  Buffer overflow in LHA allows remote attackers to execute arbitrary code via long pathnames in LHarc format 2 headers for a .LHZ archive, as originally demonstrated using the "x" option but also exploitable through "l" and "v", and fixed in header.c, a different issue than CVE-2004-0771.  Assigned (20040803)  None (candidate not yet proposed)    View
9196  CVE-2004-0768  Candidate  libpng 1.2.5 and earlier does not properly calculate certain buffer offsets, which could allow remote attackers to execute arbitrary code via a buffer overflow attack.  Assigned (20040803)  None (candidate not yet proposed)    View

Page 19104 of 20943, showing 5 records out of 104715 total, starting on record 95516, ending on 95520

Actions