CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9195 | CVE-2004-0767 | Candidate | NGSEC StackDefender 1.10 allows attackers to cause a denial of service (system crash) via an invalid address for the ObjectAttribues parameter to the hooks for the (1) ZwCreateFile or (2) ZwOpenFile functions. | Assigned (20040803) | None (candidate not yet proposed) | View | |
9196 | CVE-2004-0768 | Candidate | libpng 1.2.5 and earlier does not properly calculate certain buffer offsets, which could allow remote attackers to execute arbitrary code via a buffer overflow attack. | Assigned (20040803) | None (candidate not yet proposed) | View | |
9197 | CVE-2004-0769 | Candidate | Buffer overflow in LHA allows remote attackers to execute arbitrary code via long pathnames in LHarc format 2 headers for a .LHZ archive, as originally demonstrated using the "x" option but also exploitable through "l" and "v", and fixed in header.c, a different issue than CVE-2004-0771. | Assigned (20040803) | None (candidate not yet proposed) | View | |
9198 | CVE-2004-0770 | Candidate | romload.c in DGen Emulator 1.23 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files during decompression of (1) gzip or (2) bzip ROM files. | Assigned (20040803) | None (candidate not yet proposed) | View | |
9185 | CVE-2004-0757 | Candidate | Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code. | Assigned (20040802) | None (candidate not yet proposed) | View |
Page 20016 of 20943, showing 5 records out of 104715 total, starting on record 100076, ending on 100080