- EPSS 2.05%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple vulnerabilities in libXpm for 6.8.1 and earlier, as used in XFree86 and other packages, include (1) multiple integer overflows, (2) out-of-bounds memory accesses, (3) directory traversal, (4) shell metacharacter, (5) endless loops, and (6) m...
CVE-2004-0949
- EPSS 3.37%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or...
- EPSS 1.05%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
MySQL before 4.0.20 allows remote attackers to cause a denial of service (application crash) via a MATCH AGAINST query with an opening double quote but no closing double quote.
CVE-2004-1070
- EPSS 0.06%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allow local users to modify sensit...
CVE-2004-1071
- EPSS 0.05%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly handle a failed call to the mmap function, which causes an incorrect mapped image and may allow local users to execute arbitrary code.
CVE-2004-1072
- EPSS 0.07%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, may create an interpreter name string that is not NULL terminated, which could cause strings longer than PATH_MAX to be used, leading to buffer overflows ...
CVE-2004-1073
- EPSS 0.2%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The open_exec function in the execve functionality (exec.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, allows local users to read non-readable ELF binaries by using the interpreter (PT_INTERP) functionality.
CVE-2004-1096
- EPSS 20.25%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compres...
CVE-2004-1098
- EPSS 0.45%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header.
- EPSS 27.77%
- Published 10.01.2005 05:00:00
- Last modified 03.04.2025 01:03:51
Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of securit...