CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8841 | CVE-2004-0413 | Candidate | libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via an integer overflow that leads to a heap-based buffer overflow. | Assigned (20040416) | None (candidate not yet proposed) | View | |
8842 | CVE-2004-0414 | Candidate | CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution. | Assigned (20040416) | None (candidate not yet proposed) | View | |
8843 | CVE-2004-0415 | Candidate | Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portions of kernel memory. | Assigned (20040416) | None (candidate not yet proposed) | View | |
8844 | CVE-2004-0416 | Candidate | Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code. | Assigned (20040416) | None (candidate not yet proposed) | View | |
8845 | CVE-2004-0417 | Candidate | Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space. | Assigned (20040416) | None (candidate not yet proposed) | View |
Page 20090 of 20943, showing 5 records out of 104715 total, starting on record 100446, ending on 100450