CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8920 | CVE-2004-0492 | Candidate | Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied. | Assigned (20040527) | None (candidate not yet proposed) | View | |
8919 | CVE-2004-0491 | Candidate | The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to mlock more memory than specified by the rlimit. | Assigned (20040527) | None (candidate not yet proposed) | View | |
8918 | CVE-2004-0490 | Candidate | cPanel, when compiling Apache 1.3.29 and PHP with the mod_phpsuexec option, does not set the --enable-discard-path option, which causes php to use the SCRIPT_FILENAME variable to find and execute a script instead of the PATH_TRANSLATED variable, which allows local users to execute arbitrary PHP code as other users via a URL that references the attacker"s script after the user"s script, which executes the attacker"s script with the user"s privileges, a different vulnerability than CVE-2004-0529. | Assigned (20040527) | None (candidate not yet proposed) | View | |
8917 | CVE-2004-0489 | Candidate | Argument injection vulnerability in the SSH URI handler for Safari on Mac OS 10.3.3 and earlier allows remote attackers to (1) execute arbitrary code via the ProxyCommand option or (2) conduct port forwarding via the -R option. | Assigned (20040525) | None (candidate not yet proposed) | View | |
8916 | CVE-2004-0488 | Candidate | Stack-based buffer overflow in the ssl_util_uuencode_binary function in ssl_util.c for Apache mod_ssl, when mod_ssl is configured to trust the issuing CA, may allow remote attackers to execute arbitrary code via a client certificate with a long subject DN. | Assigned (20040524) | None (candidate not yet proposed) | View |
Page 19160 of 20943, showing 5 records out of 104715 total, starting on record 95796, ending on 95800