CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8855 | CVE-2004-0427 | Candidate | The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count counter when an error occurs after the mm_struct for a child process has been activated, which triggers a memory leak that allows local users to cause a denial of service (memory exhaustion) via the clone (CLONE_VM) system call. | Assigned (20040429) | None (candidate not yet proposed) | View | |
8854 | CVE-2004-0426 | Candidate | rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module"s path. | Assigned (20040429) | None (candidate not yet proposed) | View | |
8853 | CVE-2004-0425 | Candidate | Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie. | Assigned (20040422) | None (candidate not yet proposed) | View | |
8852 | CVE-2004-0424 | Candidate | Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option. | Assigned (20040421) | None (candidate not yet proposed) | View | |
8851 | CVE-2004-0423 | Candidate | The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file. | Assigned (20040419) | None (candidate not yet proposed) | View |
Page 19173 of 20943, showing 5 records out of 104715 total, starting on record 95861, ending on 95865