- EPSS 4.44%
- Published 27.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabili...
- EPSS 3.39%
- Published 27.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabilities than those identified by C...
- EPSS 18.83%
- Published 27.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via (1) the "Send p...
- EPSS 18.83%
- Published 27.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to execute arbitrary code via malformed VCard attachment...
- EPSS 6.06%
- Published 27.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The ms_fnmatch function in Samba 3.0.4 and 3.0.7 and possibly other versions allows remote authenticated users to cause a denial of service (CPU consumption) via a SAMBA request that contains multiple * (wildcard) characters.
CVE-2004-0883
- EPSS 19.54%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requ...
- EPSS 20.84%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrary code via a crafted NFS reque...
CVE-2004-0949
- EPSS 3.37%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or...
- EPSS 2.46%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.
CVE-2004-1068
- EPSS 0.06%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition.