CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8605  CVE-2004-0177  Candidate  The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an information leak in which in-memory data is written to the device for the ext3 file system, which allows privileged users to obtain portions of kernel memory by reading the raw device.  Assigned (20040225)  None (candidate not yet proposed)    View
8606  CVE-2004-0178  Candidate  The OSS code for the Sound Blaster (sb16) driver in Linux 2.4.x before 2.4.26, when operating in 16 bit mode, does not properly handle certain sample sizes, which allows local users to cause a denial of service (crash) via a sample with an odd number of bytes.  Assigned (20040225)  None (candidate not yet proposed)    View
8607  CVE-2004-0179  Candidate  Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code.  Assigned (20040225)  None (candidate not yet proposed)    View
8608  CVE-2004-0180  Candidate  The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405.  Assigned (20040225)  None (candidate not yet proposed)    View
8609  CVE-2004-0181  Candidate  The JFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the JFS file system, which allows local users to obtain sensitive information by reading the raw device.  Assigned (20040225)  None (candidate not yet proposed)    View

Page 833 of 20943, showing 5 records out of 104715 total, starting on record 4161, ending on 4165

Actions