CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9440  CVE-2004-1012  Candidate  The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption.  Assigned (20041104)  None (candidate not yet proposed)    View
9441  CVE-2004-1013  Candidate  The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) "body[p", (2) "binary[p", or (3) "binary[p") that cause an index increment error that leads to an out-of-bounds memory corruption.  Assigned (20041104)  None (candidate not yet proposed)    View
9442  CVE-2004-1014  Candidate  statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.  Assigned (20041104)  None (candidate not yet proposed)    View
9443  CVE-2004-1015  Candidate  Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbitrary code, a different vulnerability than CVE-2004-1011.  Assigned (20041104)  None (candidate not yet proposed)    View
9444  CVE-2004-1016  Candidate  The scm_send function in the scm layer for Linux kernel 2.4.x up to 2.4.28, and 2.6.x up to 2.6.9, allows local users to cause a denial of service (system hang) via crafted auxiliary messages that are passed to the sendmsg function, which causes a deadlock condition.  Assigned (20041104)  None (candidate not yet proposed)    View

Page 19965 of 20943, showing 5 records out of 104715 total, starting on record 99821, ending on 99825

Actions