CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8841  CVE-2004-0413  Candidate  libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via an integer overflow that leads to a heap-based buffer overflow.  Assigned (20040416)  None (candidate not yet proposed)    View
8842  CVE-2004-0414  Candidate  CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.  Assigned (20040416)  None (candidate not yet proposed)    View
8843  CVE-2004-0415  Candidate  Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portions of kernel memory.  Assigned (20040416)  None (candidate not yet proposed)    View
8844  CVE-2004-0416  Candidate  Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.  Assigned (20040416)  None (candidate not yet proposed)    View
8845  CVE-2004-0417  Candidate  Integer overflow in the "Max-dotdot" CVS protocol command (serve_max_dotdot) for CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to cause a server crash, which could cause temporary data to remain undeleted and consume disk space.  Assigned (20040416)  None (candidate not yet proposed)    View

Page 20090 of 20943, showing 5 records out of 104715 total, starting on record 100446, ending on 100450

Actions