CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9195  CVE-2004-0767  Candidate  NGSEC StackDefender 1.10 allows attackers to cause a denial of service (system crash) via an invalid address for the ObjectAttribues parameter to the hooks for the (1) ZwCreateFile or (2) ZwOpenFile functions.  Assigned (20040803)  None (candidate not yet proposed)    View
9196  CVE-2004-0768  Candidate  libpng 1.2.5 and earlier does not properly calculate certain buffer offsets, which could allow remote attackers to execute arbitrary code via a buffer overflow attack.  Assigned (20040803)  None (candidate not yet proposed)    View
9197  CVE-2004-0769  Candidate  Buffer overflow in LHA allows remote attackers to execute arbitrary code via long pathnames in LHarc format 2 headers for a .LHZ archive, as originally demonstrated using the "x" option but also exploitable through "l" and "v", and fixed in header.c, a different issue than CVE-2004-0771.  Assigned (20040803)  None (candidate not yet proposed)    View
9198  CVE-2004-0770  Candidate  romload.c in DGen Emulator 1.23 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files during decompression of (1) gzip or (2) bzip ROM files.  Assigned (20040803)  None (candidate not yet proposed)    View
9185  CVE-2004-0757  Candidate  Heap-based buffer overflow in the SendUidl in the POP3 capability for Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, may allow remote POP3 mail servers to execute arbitrary code.  Assigned (20040802)  None (candidate not yet proposed)    View

Page 20016 of 20943, showing 5 records out of 104715 total, starting on record 100076, ending on 100080

Actions