CVE-2004-0643
- EPSS 0.13%
- Published 28.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.
- EPSS 14.84%
- Published 16.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access.
CVE-2004-0827
- EPSS 3.69%
- Published 16.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3)...
CVE-2004-0905
- EPSS 6.61%
- Published 14.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a fr...
- EPSS 2.46%
- Published 18.08.2004 04:00:00
- Last modified 03.04.2025 01:03:51
The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.
- EPSS 44.51%
- Published 06.08.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers to execute arbitrary code via certain WAV file header fields.
CVE-2002-2185
- EPSS 0.51%
- Published 31.12.2002 05:00:00
- Last modified 03.04.2025 01:03:51
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the ...
CVE-1999-1572
- EPSS 0.11%
- Published 16.07.1996 04:00:00
- Last modified 03.04.2025 01:03:51
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files...