CVE-2007-2444
- EPSS 1.38%
- Published 14.05.2007 21:19:00
- Last modified 09.04.2025 00:30:58
Logic error in the SID/Name translation functionality in smbd in Samba 3.0.23d through 3.0.25pre2 allows local users to gain temporary privileges and execute SMB/CIFS protocol operations via unspecified vectors that cause the daemon to transition to ...
CVE-2007-2650
- EPSS 3.93%
- Published 14.05.2007 21:19:00
- Last modified 09.04.2025 00:30:58
The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) via an OLE2 file with (1) a large property size or (2) a loop in the FAT file block chain that triggers an infinite loop, as demons...
- EPSS 3.26%
- Published 10.05.2007 00:19:00
- Last modified 09.04.2025 00:30:58
The in_decimal::set function in item_cmpfunc.cc in MySQL before 5.0.40, and 5.1 before 5.1.18-beta, allows context-dependent attackers to cause a denial of service (crash) via a crafted IF clause that results in a divide-by-zero error and a NULL poin...
CVE-2007-1864
- EPSS 5.57%
- Published 09.05.2007 00:19:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in the bundled libxmlrpc library in PHP before 4.4.7, and 5.x before 5.2.2, has unknown impact and remote attack vectors.
CVE-2007-1320
- EPSS 0.16%
- Published 02.05.2007 17:19:00
- Last modified 09.04.2025 00:30:58
Multiple heap-based buffer overflows in the cirrus_invalidate_region function in the Cirrus VGA extension in QEMU 0.8.2, as used in Xen and possibly other products, might allow local users to execute arbitrary code via unspecified vectors related to ...
CVE-2007-1322
- EPSS 0.11%
- Published 02.05.2007 17:19:00
- Last modified 09.04.2025 00:30:58
QEMU 0.8.2 allows local users to halt a virtual machine by executing the icebp instruction.
CVE-2007-1366
- EPSS 0.09%
- Published 02.05.2007 17:19:00
- Last modified 09.04.2025 00:30:58
QEMU 0.8.2 allows local users to crash a virtual machine via the divisor operand to the aam instruction, as demonstrated by "aam 0x0," which triggers a divide-by-zero error.
- EPSS 1.28%
- Published 24.04.2007 20:19:00
- Last modified 09.04.2025 00:30:58
Untrusted search path vulnerability in PostgreSQL before 7.3.19, 7.4.x before 7.4.17, 8.0.x before 8.0.13, 8.1.x before 8.1.9, and 8.2.x before 8.2.4 allows remote authenticated users, when permitted to call a SECURITY DEFINER function, to gain the p...
CVE-2007-2172
- EPSS 0.07%
- Published 22.04.2007 19:19:00
- Last modified 09.04.2025 00:30:58
A typo in Linux kernel 2.6 before 2.6.21-rc6 and 2.4 before 2.4.35 causes RTA_MAX to be used as an array size instead of RTN_MAX, which leads to an "out of bound access" by the (1) dn_fib_props (dn_fib.c, DECNet) and (2) fib_props (fib_semantics.c, I...
CVE-2006-4250
- EPSS 0.32%
- Published 10.04.2007 18:19:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in man and mandb (man-db) 2.4.3 and earlier allows local users to execute arbitrary code via crafted arguments to the -H flag.