CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6961 | CVE-2003-0132 | Candidate | A memory leak in Apache 2.0 through 2.0.44 allows remote attackers to cause a denial of service (memory consumption) via large chunks of linefeed characters, which causes Apache to allocate 80 bytes for each linefeed. | Assigned (20030313) | NOOP(1) Christey | Christey> MANDRAKE:MDKSA-2003:050 | (as suggested by Vincent Danen of Mandrake) | View |
6967 | CVE-2003-0138 | Candidate | Version 4 of the Kerberos protocol (krb4), as used in Heimdal and other packages, allows an attacker to impersonate any principal in a realm via a chosen-plaintext attack. | Assigned (20030313) | NOOP(1) Christey | Christey> MANDRAKE:MDKSA-2003:043 | (as suggested by Vincent Danen of Mandrake) | View |
6968 | CVE-2003-0139 | Candidate | Certain weaknesses in the implementation of version 4 of the Kerberos protocol (krb4) in the krb5 distribution, when triple-DES keys are used to key krb4 services, allow an attacker to create krb4 tickets for unauthorized principals using a cut-and-paste attack and "ticket splicing." | Assigned (20030313) | NOOP(1) Christey | Christey> MANDRAKE:MDKSA-2003:043 | (as suggested by Vincent Danen of Mandrake) | View |
7488 | CVE-2003-0661 | Candidate | The NetBT Name Service (NBNS) for NetBIOS in Windows NT 4.0, 2000, XP, and Server 2003 may include random memory in a response to a NBNS query, which could allow remote attackers to obtain sensitive information. | Assigned (20030807) | NOOP(1) Christey | Christey> *********** NOTE ********** | *********** NOTE ********** | This CAN was accidentally used in a later bulletin, MS03-042. | It should only be used for THIS NetBT issue. | | The correct CAN for that bulletin (MS03-042) is CVE-2003-0662. | *********** NOTE ********** | *********** NOTE ********** | View |
6979 | CVE-2003-0150 | Candidate | MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf. | Assigned (20030318) | NOOP(1) Christey | Christey> DEBIAN:DSA-303 | URL:http://www.debian.org/security/2003/dsa-303 | View |
Page 20909 of 20943, showing 5 records out of 104715 total, starting on record 104541, ending on 104545