CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9418  CVE-2004-0990  Candidate  Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-2004-0941.  Assigned (20041027)  None (candidate not yet proposed)    View
9419  CVE-2004-0991  Candidate  Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or MP3 files.  Assigned (20041102)  None (candidate not yet proposed)    View
9420  CVE-2004-0992  Candidate  Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execute arbitrary code via format string specifiers in an invalid proxy answer.  Assigned (20041102)  None (candidate not yet proposed)    View
9421  CVE-2004-0993  Candidate  Buffer overflow in hpsockd before 0.6 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code.  Assigned (20041102)  None (candidate not yet proposed)    View
9422  CVE-2004-0994  Candidate  Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read_prf_file function in readprf.c. NOTE: CVE-2004-0994 and CVE-2004-1095 identify sets of bugs that only partially overlap, despite having the same developer. Therefore, they should be regarded as distinct.  Assigned (20041102)  None (candidate not yet proposed)    View

Page 974 of 20943, showing 5 records out of 104715 total, starting on record 4866, ending on 4870

Actions