CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8920  CVE-2004-0492  Candidate  Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.  Assigned (20040527)  None (candidate not yet proposed)    View
8919  CVE-2004-0491  Candidate  The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to mlock more memory than specified by the rlimit.  Assigned (20040527)  None (candidate not yet proposed)    View
8918  CVE-2004-0490  Candidate  cPanel, when compiling Apache 1.3.29 and PHP with the mod_phpsuexec option, does not set the --enable-discard-path option, which causes php to use the SCRIPT_FILENAME variable to find and execute a script instead of the PATH_TRANSLATED variable, which allows local users to execute arbitrary PHP code as other users via a URL that references the attacker"s script after the user"s script, which executes the attacker"s script with the user"s privileges, a different vulnerability than CVE-2004-0529.  Assigned (20040527)  None (candidate not yet proposed)    View
8917  CVE-2004-0489  Candidate  Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option.  Assigned (20040525)  None (candidate not yet proposed)    View
8916  CVE-2004-0488  Candidate  Stack-based buffer overflow in the ssl_util_uuencode_binary function in ssl_util.c for Apache mod_ssl, when mod_ssl is configured to trust the issuing CA, may allow remote attackers to execute arbitrary code via a client certificate with a long subject DN.  Assigned (20040524)  None (candidate not yet proposed)    View

Page 19160 of 20943, showing 5 records out of 104715 total, starting on record 95796, ending on 95800

Actions