CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7367  CVE-2003-0540  Candidate  The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope address to a local host that would generate a bounce and contains the ".!" string in the MAIL FROM or Errors-To headers, which causes nqmgr to lock up, or (2) via a valid MAIL FROM with a RCPT TO containing a ".!" string, which causes an instance of the SMTP listener to lock up.  Assigned (20030714)  None (candidate not yet proposed)    View
7368  CVE-2003-0541  Candidate  gtkhtml before 1.1.10, as used in Evolution, allows remote attackers to cause a denial of service (crash) via a malformed message that causes a null pointer dereference.  Assigned (20030714)  None (candidate not yet proposed)    View
7369  CVE-2003-0542  Candidate  Multiple stack-based buffer overflows in (1) mod_alias and (2) mod_rewrite for Apache before 1.3.29 allow attackers to create configuration files to cause a denial of service (crash) or execute arbitrary code via a regular expression with more than 9 captures.  Assigned (20030714)  None (candidate not yet proposed)    View
7370  CVE-2003-0543  Candidate  Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL client certificate with certain ASN.1 tag values.  Assigned (20030714)  None (candidate not yet proposed)    View
7371  CVE-2003-0544  Candidate  OpenSSL 0.9.6 and 0.9.7 does not properly track the number of characters in certain ASN.1 inputs, which allows remote attackers to cause a denial of service (crash) via an SSL client certificate that causes OpenSSL to read past the end of a buffer when the long form is used.  Assigned (20030714)  None (candidate not yet proposed)    View

Page 20218 of 20943, showing 5 records out of 104715 total, starting on record 101086, ending on 101090

Actions