CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9477  CVE-2004-1049  Candidate  Integer overflow in the LoadImage API of the USER32 Lib for Microsoft Windows allows remote attackers to execute arbitrary code via a .bmp, .cur, .ico or .ani file with a large image size field, which leads to a buffer overflow, aka the "Cursor and Icon Format Handling Vulnerability."  Assigned (20041117)  None (candidate not yet proposed)    View
9478  CVE-2004-1050  Candidate  Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME vulnerability" or the "HTML Elements Vulnerability."  Assigned (20041117)  None (candidate not yet proposed)    View
9479  CVE-2004-1051  Candidate  sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without using the program"s full pathname.  Assigned (20041117)  None (candidate not yet proposed)    View
9480  CVE-2004-1052  Candidate  Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to execute arbitrary code via an IRC server response that contains many (1) ! (exclamation) or (2) @ (at sign) characters.  Assigned (20041117)  None (candidate not yet proposed)    View
9468  CVE-2004-1040  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20041117)  None (candidate not yet proposed)    View

Page 985 of 20943, showing 5 records out of 104715 total, starting on record 4921, ending on 4925

Actions