CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8855  CVE-2004-0427  Candidate  The do_fork function in Linux 2.4.x before 2.4.26, and 2.6.x before 2.6.6, does not properly decrement the mm_count counter when an error occurs after the mm_struct for a child process has been activated, which triggers a memory leak that allows local users to cause a denial of service (memory exhaustion) via the clone (CLONE_VM) system call.  Assigned (20040429)  None (candidate not yet proposed)    View
8853  CVE-2004-0425  Candidate  Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie.  Assigned (20040422)  None (candidate not yet proposed)    View
8852  CVE-2004-0424  Candidate  Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.  Assigned (20040421)  None (candidate not yet proposed)    View
8848  CVE-2004-0420  Candidate  The Windows Shell application in Windows 98, Windows ME, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code by spoofing the type of a file via a CLSID specifier in the filename, as demonstrated using Internet Explorer 6.0.2800.1106 on Windows XP.  Assigned (20040419)  None (candidate not yet proposed)    View
8849  CVE-2004-0421  Candidate  The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.  Assigned (20040419)  None (candidate not yet proposed)    View

Page 20087 of 20943, showing 5 records out of 104715 total, starting on record 100431, ending on 100435

Actions