CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13301 | CVE-2005-2095 | Candidate | options_identities.php in SquirrelMail 1.4.4 and earlier uses the extract function to process the $_POST variable, which allows remote attackers to modify or read the preferences of other users, conduct cross-site scripting XSS) attacks, and write arbitrary files. | Assigned (20050630) | None (candidate not yet proposed) | View | |
13302 | CVE-2005-2096 | Candidate | zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as demonstrated using a crafted PNG file. | Assigned (20050630) | None (candidate not yet proposed) | View | |
13303 | CVE-2005-2097 | Candidate | xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information. | Assigned (20050630) | None (candidate not yet proposed) | View | |
13304 | CVE-2005-2098 | Candidate | The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM. | Assigned (20050630) | None (candidate not yet proposed) | View | |
13305 | CVE-2005-2099 | Candidate | The Linux kernel before 2.6.12.5 does not properly destroy a keyring that is not instantiated properly, which allows local users or remote attackers to cause a denial of service (kernel oops) via a keyring with a payload that is not empty, which causes the creation to fail, leading to a null dereference in the keyring destructor. | Assigned (20050630) | None (candidate not yet proposed) | View |
Page 19187 of 20943, showing 5 records out of 104715 total, starting on record 95931, ending on 95935