CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8605 | CVE-2004-0177 | Candidate | The ext3 code in Linux 2.4.x before 2.4.26 does not properly initialize journal descriptor blocks, which causes an information leak in which in-memory data is written to the device for the ext3 file system, which allows privileged users to obtain portions of kernel memory by reading the raw device. | Assigned (20040225) | None (candidate not yet proposed) | View | |
8606 | CVE-2004-0178 | Candidate | The OSS code for the Sound Blaster (sb16) driver in Linux 2.4.x before 2.4.26, when operating in 16 bit mode, does not properly handle certain sample sizes, which allows local users to cause a denial of service (crash) via a sample with an odd number of bytes. | Assigned (20040225) | None (candidate not yet proposed) | View | |
8607 | CVE-2004-0179 | Candidate | Multiple format string vulnerabilities in (1) neon 0.24.4 and earlier, and other products that use neon including (2) Cadaver, (3) Subversion, and (4) OpenOffice, allow remote malicious WebDAV servers to execute arbitrary code. | Assigned (20040225) | None (candidate not yet proposed) | View | |
8608 | CVE-2004-0180 | Candidate | The client for CVS before 1.11 allows a remote malicious CVS server to create arbitrary files using certain RCS diff files that use absolute pathnames during checkouts or updates, a different vulnerability than CVE-2004-0405. | Assigned (20040225) | None (candidate not yet proposed) | View | |
8609 | CVE-2004-0181 | Candidate | The JFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the JFS file system, which allows local users to obtain sensitive information by reading the raw device. | Assigned (20040225) | None (candidate not yet proposed) | View |
Page 833 of 20943, showing 5 records out of 104715 total, starting on record 4161, ending on 4165