CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12999  CVE-2005-1793  Candidate  User32.DLL in Microsoft Windows 98SE, and possibly other operating systems, allows local and remote attackers to cause a denial of service (crash) via an icon (.ico) bitmap file with large width and height values.  Assigned (20050601)  None (candidate not yet proposed)    View
13000  CVE-2005-1794  Candidate  Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it to sign a certificate, which allows remote attackers to spoof public keys of legitimate servers and conduct man-in-the-middle attacks.  Assigned (20050601)  None (candidate not yet proposed)    View
13001  CVE-2005-1795  Candidate  The filecopy function in misc.c in Clam AntiVirus (ClamAV) before 0.85, on Mac OS, allows remote attackers to execute arbitrary code via a virus in a filename that contains shell metacharacters, which are not properly handled when HFS permissions prevent the file from being deleted and ditto is invoked.  Assigned (20050601)  None (candidate not yet proposed)    View
13002  CVE-2005-1796  Candidate  Format string vulnerability in the curses_msg function in the Ncurses interface (ec_curses.c) for Ettercap before 0.7.3 allows remote attackers to execute arbitrary code.  Assigned (20050601)  None (candidate not yet proposed)    View
13003  CVE-2005-1797  Candidate  The design of Advanced Encryption Standard (AES), aka Rijndael, allows remote attackers to recover AES keys via timing attacks on S-box lookups, which are difficult to perform in constant time in AES implementations.  Assigned (20050601)  None (candidate not yet proposed)    View

Page 19312 of 20943, showing 5 records out of 104715 total, starting on record 96556, ending on 96560

Actions