CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11407  CVE-2005-0201  Candidate  D-BUS (dbus) before 0.22 does not properly restrict access to a socket, if the socket address is known, which allows local users to listen or send arbitrary messages on another user"s per-user session bus via that socket.  Assigned (20050201)  None (candidate not yet proposed)    View
11408  CVE-2005-0202  Candidate  Directory traversal vulnerability in the true_path function in private.py for Mailman 2.1.5 and earlier allows remote attackers to read arbitrary files via ".../....///" sequences, which are not properly cleansed by regular expressions that are intended to remove "../" and "./" sequences.  Assigned (20050201)  None (candidate not yet proposed)    View
11409  CVE-2005-0203  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate has been revoked by its Candidate Numbering Authority (CNA) because it was initially assigned to a problem that was not a security issue. Notes: none.  Assigned (20050201)  None (candidate not yet proposed)    View
11410  CVE-2005-0204  Candidate  Linux kernel before 2.6.9, when running on the AMD64 and Intel EM64T architectures, allows local users to write to privileged IO ports via the OUTS instruction.  Assigned (20050201)  None (candidate not yet proposed)    View
11411  CVE-2005-0205  Candidate  KPPP 2.1.2 in KDE 3.1.5 and earlier, when setuid root without certain wrappers, does not properly close a privileged file descriptor for a domain socket, which allows local users to read and write to /etc/hosts and /etc/resolv.conf and gain control over DNS name resolution by opening a number of file descriptors before executing kppp.  Assigned (20050201)  None (candidate not yet proposed)    View

Page 19847 of 20943, showing 5 records out of 104715 total, starting on record 99231, ending on 99235

Actions