CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9500 | CVE-2004-1072 | Candidate | The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows that allow local users to cause a denial of service (hang) and possibly execute arbitrary code. | Assigned (20041129) | None (candidate not yet proposed) | View | |
9501 | CVE-2004-1073 | Candidate | The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality. | Assigned (20041129) | None (candidate not yet proposed) | View | |
9502 | CVE-2004-1074 | Candidate | The binfmt functionality in the Linux kernel, when "memory overcommit" is enabled, allows local users to cause a denial of service (kernel oops) via a malformed a.out binary. | Assigned (20041129) | None (candidate not yet proposed) | View | |
9503 | CVE-2004-1075 | Candidate | Cross-site scripting (XSS) vulnerability in standard_error_message.dtml for Zwiki after 0.10.0rc1 to 0.36.2 allows remote attackers to inject arbitrary HTML and web script via a malformed URL, which is not properly cleansed when generating an error message. | Assigned (20041129) | None (candidate not yet proposed) | View | |
9504 | CVE-2004-1076 | Candidate | Multiple buffer overflows in the RtConfigLoad function in rt-config.c for Atari800 before 1.3.4 allow local users to execute arbitrary code via large values in the configuration file. | Assigned (20041129) | None (candidate not yet proposed) | View |
Page 19954 of 20943, showing 5 records out of 104715 total, starting on record 99766, ending on 99770