CVE-2004-1073
- EPSS 0.2%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality.
- EPSS 31.75%
- Published 31.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to execute arbitrary code via wide bitmap files that trigger heap-based buffer overfl...
CVE-2004-0817
- EPSS 3.6%
- Published 31.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
CVE-2004-0802
- EPSS 6.29%
- Published 31.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817.
CVE-2004-0803
- EPSS 17.88%
- Published 23.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.
- EPSS 6.72%
- Published 15.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and (2) do not properly restrict access to certain Java classes from the Java applet, which allows remote attackers to bypass sa...
- EPSS 8.83%
- Published 15.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed SMB packet.
- EPSS 6.15%
- Published 15.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial of service (application crash).
- EPSS 8.5%
- Published 06.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
The SNMP dissector in Ethereal 0.8.15 through 0.10.4 allows remote attackers to cause a denial of service (process crash) via a (1) malformed or (2) missing community string, which causes an out-of-bounds read.
- EPSS 37.28%
- Published 06.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow.