CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6992  CVE-2003-0163  Candidate  decrypt_msg for the Gaim-Encryption GAIM plugin 1.15 and earlier does not properly validate a message length parameter, which allows remote attackers to cause a denial of service (crash) via a negative length, which overwrites arbitrary heap memory with a zero byte.  Assigned (20030324)  None (candidate not yet proposed)    View
6993  CVE-2003-0164  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20030324)  None (candidate not yet proposed)    View
6994  CVE-2003-0165  Candidate  Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.  Assigned (20030326)  NOOP(1) Christey  Christey> MANDRAKE:MDKSA-2003:048 | (as suggested by Vincent Danen of Mandrake)  View
6995  CVE-2003-0166  Candidate  Integer signedness error in emalloc() function for PHP before 4.3.2 allow remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via negative arguments to functions such as (1) socket_recv, (2) socket_recvfrom, and possibly other functions.  Assigned (20030326)  None (candidate not yet proposed)    View
6996  CVE-2003-0167  Candidate  Multiple off-by-one buffer overflows in the IMAP capability for Mutt 1.3.28 and earlier, and Balsa 1.2.4 and earlier, allow a remote malicious IMAP server to cause a denial of service (crash) and possibly execute arbitrary code via a specially crafted mail folder, a different vulnerability than CVE-2003-0140.  Assigned (20030327)  None (candidate not yet proposed)    View

Page 647 of 20943, showing 5 records out of 104715 total, starting on record 3231, ending on 3235

Actions