CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13301  CVE-2005-2095  Candidate  options_identities.php in SquirrelMail 1.4.4 and earlier uses the extract function to process the $_POST variable, which allows remote attackers to modify or read the preferences of other users, conduct cross-site scripting XSS) attacks, and write arbitrary files.  Assigned (20050630)  None (candidate not yet proposed)    View
13302  CVE-2005-2096  Candidate  zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a crafted compressed stream with an incomplete code description of a length greater than 1, which leads to a buffer overflow, as demonstrated using a crafted PNG file.  Assigned (20050630)  None (candidate not yet proposed)    View
13303  CVE-2005-2097  Candidate  xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.  Assigned (20050630)  None (candidate not yet proposed)    View
13304  CVE-2005-2098  Candidate  The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.  Assigned (20050630)  None (candidate not yet proposed)    View
13305  CVE-2005-2099  Candidate  The Linux kernel before 2.6.12.5 does not properly destroy a keyring that is not instantiated properly, which allows local users or remote attackers to cause a denial of service (kernel oops) via a keyring with a payload that is not empty, which causes the creation to fail, leading to a null dereference in the keyring destructor.  Assigned (20050630)  None (candidate not yet proposed)    View

Page 19187 of 20943, showing 5 records out of 104715 total, starting on record 95931, ending on 95935

Actions