CVE-2005-0102
- EPSS 0.6%
- Veröffentlicht 24.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier allows local users or remote malicious POP3 servers to execute arbitrary code via a length value of -1, which leads to a zero byte memory allocation and a buffer overflow.
CVE-2004-0770
- EPSS 0.06%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
romload.c in DGen Emulator 1.23 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files during decompression of (1) gzip or (2) bzip ROM files.
- EPSS 0.35%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Multiple unknown vulnerabilities in viewcvs before 0.9.2, when exporting a repository as a tar archive, does not properly implement the hide_cvsroot and forbidden settings, which could allow remote attackers to gain sensitive information.
- EPSS 17.53%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Multiple integer overflows in xzgv 0.8 and earlier allow remote attackers to execute arbitrary code via images with large width and height values, which trigger a heap-based buffer overflow, as demonstrated in the read_prf_file function in readprf.c....
CVE-2004-0996
- EPSS 0.56%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
- EPSS 2.46%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated.
CVE-2004-1076
- EPSS 0.1%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Multiple buffer overflows in the RtConfigLoad function in rt-config.c for Atari800 before 1.3.4 allow local users to execute arbitrary code via large values in the configuration file.
- EPSS 21%
- Veröffentlicht 10.01.2005 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Multiple integer overflows in (1) readbmp.c, (2) readgif.c, (3) readgif.c, (4) readmrf.c, (5) readpcx.c, (6) readpng.c,(7) readpnm.c, (8) readprf.c, (9) readtiff.c, (10) readxbm.c, (11) readxpm.c in zgv 5.8 allow remote attackers to execute arbitrary...
CVE-2004-0564
- EPSS 0.07%
- Veröffentlicht 23.12.2004 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "i...
CVE-2004-0833
- EPSS 0.66%
- Veröffentlicht 23.12.2004 05:00:00
- Zuletzt bearbeitet 16.04.2026 00:27:16
Sendmail before 8.12.3 on Debian GNU/Linux, when using sasl and sasl-bin, uses a Sendmail configuration script with a fixed username and password, which could allow remote attackers to use Sendmail as an open mail relay and send spam messages.