CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9500  CVE-2004-1072  Candidate  The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows that allow local users to cause a denial of service (hang) and possibly execute arbitrary code.  Assigned (20041129)  None (candidate not yet proposed)    View
9501  CVE-2004-1073  Candidate  The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality.  Assigned (20041129)  None (candidate not yet proposed)    View
9502  CVE-2004-1074  Candidate  The binfmt functionality in the Linux kernel, when "memory overcommit" is enabled, allows local users to cause a denial of service (kernel oops) via a malformed a.out binary.  Assigned (20041129)  None (candidate not yet proposed)    View
9503  CVE-2004-1075  Candidate  Cross-site scripting (XSS) vulnerability in standard_error_message.dtml for Zwiki after 0.10.0rc1 to 0.36.2 allows remote attackers to inject arbitrary HTML and web script via a malformed URL, which is not properly cleansed when generating an error message.  Assigned (20041129)  None (candidate not yet proposed)    View
9504  CVE-2004-1076  Candidate  Multiple buffer overflows in the RtConfigLoad function in rt-config.c for Atari800 before 1.3.4 allow local users to execute arbitrary code via large values in the configuration file.  Assigned (20041129)  None (candidate not yet proposed)    View

Page 19954 of 20943, showing 5 records out of 104715 total, starting on record 99766, ending on 99770

Actions