CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9438  CVE-2004-1010  Candidate  Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when using recursive folder compression, allows remote attackers to execute arbitrary code via a ZIP file containing a long pathname.  Assigned (20041104)  None (candidate not yet proposed)    View
9439  CVE-2004-1011  Candidate  Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015.  Assigned (20041104)  None (candidate not yet proposed)    View
9440  CVE-2004-1012  Candidate  The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption.  Assigned (20041104)  None (candidate not yet proposed)    View
9441  CVE-2004-1013  Candidate  The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) "body[p", (2) "binary[p", or (3) "binary[p") that cause an index increment error that leads to an out-of-bounds memory corruption.  Assigned (20041104)  None (candidate not yet proposed)    View
9442  CVE-2004-1014  Candidate  statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.  Assigned (20041104)  None (candidate not yet proposed)    View

Page 978 of 20943, showing 5 records out of 104715 total, starting on record 4886, ending on 4890

Actions