CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8992  CVE-2004-0564  Candidate  Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "is NOT designed to run setuid-root." Therefore this identifier applies *only* to those configurations and installations under which pppoe is run setuid root despite the developer"s warnings.  Assigned (20040614)  NOOP(1) Christey  Christey> In addition to the public statement made to Bugtraq, David | F. Skoll, the developer of pppoe, says: | >CVE-2004-0564 is a | >bogus "vulnerability". rp-pppoe is NOT meant to be installed | >setuid-root. One might as well file a "vulnerability" on "cat" | >because if "cat" is setuid-root, then an "attacker" can read any file | >on the system. | > | >This vulnerability is more properly a Debian vulnerability because | >Debian ... insecurely installs rp-pppoe suid-root. | > | >Please add my comments to the "Comments" field of the CVE; I don"t think | >it should be blessed with an official listing.  View
8977  CVE-2004-0549  Candidate  The WebBrowser ActiveX control, or the Internet Explorer HTML rendering engine (MSHTML), as used in Internet Explorer 6, allows remote attackers to execute arbitrary code in the Local Security context by using the showModalDialog method and modifying the location to execute code such as Javascript, as demonstrated using (1) delayed HTTP redirect operations, and an HTTP response with a Location: header containing a "URL:" prepended to a "ms-its" protocol URI, or (2) modifying the location attribute of the window, as exploited by the Download.ject (aka Scob aka Toofer) using the ADODB.Stream object.  Assigned (20040611)  None (candidate not yet proposed)    View
8978  CVE-2004-0550  Candidate  Buffer overflow in Real Networks RealPlayer 10 allows remote attackers to execute arbitrary code via a URL with a large number of "." (period) characters.  Assigned (20040611)  None (candidate not yet proposed)    View
8979  CVE-2004-0551  Candidate  Cisco CatOS 5.x before 5.5(20) through 8.x before 8.2(2) and 8.3(2)GLX, as used in Catalyst switches, allows remote attackers to cause a denial of service (system crash and reload) by sending invalid packets instead of the final ACK portion of the three-way handshake to the (1) Telnet, (2) HTTP, or (3) SSH services, aka "TCP-ACK DoS attack."  Assigned (20040611)  None (candidate not yet proposed)    View
8980  CVE-2004-0552  Candidate  Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed.  Assigned (20040611)  None (candidate not yet proposed)    View

Page 20060 of 20943, showing 5 records out of 104715 total, starting on record 100296, ending on 100300

Actions