CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6960  CVE-2003-0131  Candidate  The SSL and TLS components for OpenSSL 0.9.6i and earlier, 0.9.7, and 0.9.7a allow remote attackers to perform an unauthorized RSA private key operation via a modified Bleichenbacher attack that uses a large number of SSL or TLS connections using PKCS #1 v1.5 padding that cause OpenSSL to leak information regarding the relationship between ciphertext and the associated plaintext, aka the "Klima-Pokorny-Rosa attack."  Assigned (20030313)  NOOP(1) Christey  Christey> REDHAT:RHSA-2003:205  View
6961  CVE-2003-0132  Candidate  A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed.  Assigned (20030313)  NOOP(1) Christey  Christey> MANDRAKE:MDKSA-2003:050 | (as suggested by Vincent Danen of Mandrake)  View
6962  CVE-2003-0133  Candidate  GtkHTML, as included in Evolution before 1.2.4, allows remote attackers to cause a denial of service (crash) via certain malformed messages.  Assigned (20030313)  None (candidate not yet proposed)    View
6963  CVE-2003-0134  Candidate  Unknown vulnerability in filestat.c for Apache running on OS2, versions 2.0 through 2.0.45, allows unknown attackers to cause a denial of service via requests related to device names.  Assigned (20030313)  None (candidate not yet proposed)    View
6964  CVE-2003-0135  Candidate  vsftpd FTP daemon in Red Hat Linux 9 is not compiled against TCP wrappers (tcp_wrappers) but is installed as a standalone service, which inadvertently prevents vsftpd from restricting access as intended.  Assigned (20030313)  None (candidate not yet proposed)    View

Page 20302 of 20943, showing 5 records out of 104715 total, starting on record 101506, ending on 101510

Actions