CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7286  CVE-2003-0459  Candidate  KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.  Assigned (20030626)  None (candidate not yet proposed)    View
7287  CVE-2003-0460  Candidate  The rotatelogs program on Apache before 1.3.28, for Windows and OS/2 systems, does not properly ignore certain control characters that are received over the pipe, which could allow remote attackers to cause a denial of service.  Assigned (20030626)  None (candidate not yet proposed)    View
7288  CVE-2003-0461  Candidate  /proc/tty/driver/serial in Linux 2.4.x reveals the exact number of characters used in serial links, which could allow local users to obtain potentially sensitive information such as the length of passwords.  Assigned (20030626)  None (candidate not yet proposed)    View
7289  CVE-2003-0462  Candidate  A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash).  Assigned (20030626)  None (candidate not yet proposed)    View
7290  CVE-2003-0463  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20030626)  None (candidate not yet proposed)    View

Page 707 of 20943, showing 5 records out of 104715 total, starting on record 3531, ending on 3535

Actions