Mandrakesoft

Mandrake Linux

134 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.08%
  • Published 14.04.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.

  • EPSS 0.08%
  • Published 14.04.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

The 64 bit ELF support in Linux kernel 2.6 before 2.6.10, on 64-bit architectures, does not properly check for overlapping VMA (virtual memory address) allocations, which allows local users to cause a denial of service (system crash) or execute arbit...

  • EPSS 0.08%
  • Published 14.04.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in playmidi before 2.4 allows local users to execute arbitrary code.

  • EPSS 8.2%
  • Published 14.03.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ.

  • EPSS 18.52%
  • Published 14.03.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes "an invalid memory access," a different vulnerability than CVE-2005-0208.

  • EPSS 2.84%
  • Published 02.03.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.

  • EPSS 1.12%
  • Published 01.03.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

The CGI module in Ruby 1.6 before 1.6.8, and 1.8 before 1.8.2, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a certain HTTP request.

  • EPSS 0.11%
  • Published 01.03.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without using the program's full pathname.

  • EPSS 0.07%
  • Published 21.02.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

uim before 0.4.5.1 trusts certain environment variables when libUIM is used in setuid or setgid applications, which allows local users to gain privileges.

Exploit
  • EPSS 13.2%
  • Published 09.02.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the c...