CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9115 | CVE-2004-0687 | Candidate | Multiple stack-based buffer overflows in (1) xpmParseColors in parse.c, (2) ParseAndPutPixels in create.c, and (3) ParsePixels in parse.c for libXpm before 6.8.1 allow remote attackers to execute arbitrary code via a malformed XPM image file. | Assigned (20040713) | None (candidate not yet proposed) | View | |
9116 | CVE-2004-0688 | Candidate | Multiple integer overflows in (1) the xpmParseColors function in parse.c, (2) XpmCreateImageFromXpmImage, (3) CreateXImage, (4) ParsePixels, and (5) ParseAndPutPixels for libXpm before 6.8.1 may allow remote attackers to execute arbitrary code via a malformed XPM image file. | Assigned (20040713) | None (candidate not yet proposed) | View | |
9117 | CVE-2004-0689 | Candidate | KDE before 3.3.0 does not properly handle when certain symbolic links point to "stale" locations, which could allow local users to create or truncate arbitrary files. | Assigned (20040713) | None (candidate not yet proposed) | View | |
9118 | CVE-2004-0690 | Candidate | The DCOPServer in KDE 3.2.3 and earlier allows local users to gain unauthorized access via a symlink attack on DCOP files in the /tmp directory. | Assigned (20040713) | None (candidate not yet proposed) | View | |
9119 | CVE-2004-0691 | Candidate | Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code. | Assigned (20040713) | None (candidate not yet proposed) | View |
Page 912 of 20943, showing 5 records out of 104715 total, starting on record 4556, ending on 4560