CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9618 | CVE-2004-1190 | Candidate | SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to conduct unauthorized write activities to modify the firmware of associated SCSI devices. | Assigned (20041213) | None (candidate not yet proposed) | View | |
9619 | CVE-2004-1191 | Candidate | Race condition in SuSE Linux 8.1 through 9.2, when run on SMP systems that have more than 4GB of memory, could allow local users to read unauthorized memory from "foreign memory pages." | Assigned (20041213) | None (candidate not yet proposed) | View | |
9620 | CVE-2004-1192 | Candidate | Format string vulnerability in the lprintf function in Citadel/UX 6.27 and earlier allows remote attackers to execute arbitrary code via format string specifiers sent to the server. | Assigned (20041213) | None (candidate not yet proposed) | View | |
9599 | CVE-2004-1171 | Candidate | KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user"s .desktop file, which may be created with world-readable permissions, which could allow local users to obtain usernames and passwords for remote resources such as SMB shares. | Assigned (20041210) | None (candidate not yet proposed) | View | |
9589 | CVE-2004-1161 | Candidate | rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S. | Assigned (20041209) | None (candidate not yet proposed) | View |
Page 19934 of 20943, showing 5 records out of 104715 total, starting on record 99666, ending on 99670