CVE-2004-1235
- EPSS 0.08%
- Published 14.04.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.
CVE-2004-1237
- EPSS 0.06%
- Published 14.04.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in the system call filtering code in the audit subsystem for Red Hat Enterprise Linux 3 allows local users to cause a denial of service (system crash) via unknown vectors.
CVE-2005-0003
- EPSS 0.08%
- Published 14.04.2005 04:00:00
- Last modified 03.04.2025 01:03:51
The 64 bit ELF support in Linux kernel 2.6 before 2.6.10, on 64-bit architectures, does not properly check for overlapping VMA (virtual memory address) allocations, which allows local users to cause a denial of service (system crash) or execute arbit...
CVE-2005-0750
- EPSS 0.17%
- Published 27.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.
- EPSS 12.77%
- Published 15.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd client.
- EPSS 4.06%
- Published 14.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.
- EPSS 8.2%
- Published 14.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ.
- EPSS 18.52%
- Published 14.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes "an invalid memory access," a different vulnerability than CVE-2005-0208.
CVE-2005-0736
- EPSS 0.05%
- Published 09.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Integer overflow in sys_epoll_wait in eventpoll.c for Linux kernel 2.6 to 2.6.11 allows local users to overwrite kernel memory via a large number of events.
CVE-2005-0699
- EPSS 4.23%
- Published 08.03.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple buffer overflows in the dissect_a11_radius function in the CDMA A11 (3G-A11) dissector (packet-3g-a11.c) for Ethereal 0.10.9 and earlier allow remote attackers to execute arbitrary code via RADIUS authentication packets with large length val...