CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8855  CVE-2004-0427  Candidate  The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count counter when an error occurs after the mm_struct for a child process has been activated, which triggers a memory leak that allows local users to cause a denial of service (memory exhaustion) via the clone (CLONE_VM) system call.  Assigned (20040429)  None (candidate not yet proposed)    View
8854  CVE-2004-0426  Candidate  rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module"s path.  Assigned (20040429)  None (candidate not yet proposed)    View
8853  CVE-2004-0425  Candidate  Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie.  Assigned (20040422)  None (candidate not yet proposed)    View
8852  CVE-2004-0424  Candidate  Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.  Assigned (20040421)  None (candidate not yet proposed)    View
8851  CVE-2004-0423  Candidate  The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file.  Assigned (20040419)  None (candidate not yet proposed)    View

Page 19173 of 20943, showing 5 records out of 104715 total, starting on record 95861, ending on 95865

Actions