CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8605  CVE-2004-0177  Candidate  The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an information leak in which in-memory data is written to the device for the ext3 file system, which allows privileged users to obtain portions of kernel memory by reading the raw device.  Assigned (20040225)  None (candidate not yet proposed)    View
8604  CVE-2004-0176  Candidate  Multiple buffer overflows in Ethereal 0.8.13 to 0.10.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) NetFlow, (2) IGAP, (3) EIGRP, (4) PGM, (5) IrDA, (6) BGP, (7) ISUP, or (8) TCAP dissectors.  Assigned (20040225)  None (candidate not yet proposed)    View
8603  CVE-2004-0175  Candidate  Directory traversal vulnerability in scp for OpenSSH before 3.4p1 allows remote malicious servers to overwrite arbitrary files. NOTE: this may be a rediscovery of CVE-2000-0992.  Assigned (20040225)  None (candidate not yet proposed)    View
8602  CVE-2004-0174  Candidate  Apache 1.4.x before 1.3.30, and 2.0.x before 2.0.49, when using multiple listening sockets on certain platforms, allows remote attackers to cause a denial of service (blocked new connections) via a "short-lived connection on a rarely-accessed listening socket."  Assigned (20040225)  None (candidate not yet proposed)    View
8601  CVE-2004-0173  Entry  Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences.        View

Page 19223 of 20943, showing 5 records out of 104715 total, starting on record 96111, ending on 96115

Actions