Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 58 409

Количество 58 409

redhat логотип

CVE-2003-0986

почти 23 года назад

Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6.2 and 2.4 prior to 2.4.24 do not use the copy_from_user function when copying data from userspace to kernelspace, which crosses security boundaries and allows local users to cause a denial of service.

EPSS: Низкий
redhat логотип

CVE-2003-0985

больше 22 лет назад

The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.

EPSS: Низкий
redhat логотип

CVE-2003-0984

почти 23 года назад

Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not properly initialize their structures, which could leak kernel data to user space.

EPSS: Низкий
redhat логотип

CVE-2003-0977

почти 23 года назад

CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.

EPSS: Низкий
redhat логотип

CVE-2003-0973

почти 23 года назад

Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.

EPSS: Низкий
redhat логотип

CVE-2003-0972

почти 23 года назад

Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 3.9.15 and earlier, allows local users to execute arbitrary code via a large number of ";" (semicolon) characters in escape sequences, which leads to a buffer overflow.

EPSS: Низкий
redhat логотип

CVE-2003-0971

почти 23 года назад

GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature.

EPSS: Низкий
redhat логотип

CVE-2003-0967

почти 23 года назад

rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADIUS string attribute with a tag, which causes memcpy to be called with a -1 length argument, as demonstrated using the Tunnel-Password attribute.

EPSS: Низкий
redhat логотип

CVE-2003-0966

больше 22 лет назад

Buffer overflow in the frm command in elm 2.5.6 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code via a long Subject line.

EPSS: Низкий
redhat логотип

CVE-2003-0965

больше 22 лет назад

Cross-site scripting (XSS) vulnerability in the admin CGI script for Mailman before 2.1.4 allows remote attackers to steal session cookies and conduct unauthorized activities.

EPSS: Низкий
redhat логотип

CVE-2003-0963

почти 23 года назад

Buffer overflows in (1) try_netscape_proxy and (2) try_squid_eplf for lftp 2.6.9 and earlier allow remote HTTP servers to execute arbitrary code via long directory names that are processed by the ls or rels commands.

EPSS: Средний
redhat логотип

CVE-2003-0962

почти 23 года назад

Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.

EPSS: Средний
redhat логотип

CVE-2003-0961

почти 23 года назад

Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to gain root privileges.

EPSS: Низкий
redhat логотип

CVE-2003-0935

около 23 лет назад

Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.

EPSS: Низкий
redhat логотип

CVE-2003-0927

почти 23 года назад

Heap-based buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the SOCKS dissector.

EPSS: Низкий
redhat логотип

CVE-2003-0926

почти 23 года назад

Ethereal 0.9.15 and earlier, and Tethereal, allows remote attackers to cause a denial of service (crash) via certain malformed (1) ISAKMP or (2) MEGACO packets.

EPSS: Низкий
redhat логотип

CVE-2003-0925

почти 23 года назад

Buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed GTP MSISDN string.

EPSS: Низкий
redhat логотип

CVE-2003-0924

больше 22 лет назад

netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.

EPSS: Низкий
redhat логотип

CVE-2003-0901

около 23 лет назад

Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x before 7.3.4, allows remote attackers to execute arbitrary code.

EPSS: Низкий
redhat логотип

CVE-2003-0859

почти 23 года назад

The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2003-0986

Various routines for the ppc64 architecture on Linux kernel 2.6 prior to 2.6.2 and 2.4 prior to 2.4.24 do not use the copy_from_user function when copying data from userspace to kernelspace, which crosses security boundaries and allows local users to cause a denial of service.

0%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0985

The mremap system call (do_mremap) in Linux kernel 2.4.x before 2.4.21, and possibly other versions before 2.4.24, does not properly perform bounds checks, which allows local users to cause a denial of service and possibly gain privileges by causing a remapping of a virtual memory area (VMA) to create a zero length VMA, a different vulnerability than CAN-2004-0077.

1%
Низкий
больше 22 лет назад
redhat логотип
CVE-2003-0984

Real time clock (RTC) routines in Linux kernel 2.4.23 and earlier do not properly initialize their structures, which could leak kernel data to user space.

0%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0977

CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.

2%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0973

Unknown vulnerability in mod_python 3.0.x before 3.0.4, and 2.7.x before 2.7.9, allows remote attackers to cause a denial of service (httpd crash) via a certain query string.

5%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0972

Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 3.9.15 and earlier, allows local users to execute arbitrary code via a large number of ";" (semicolon) characters in escape sequences, which leads to a buffer overflow.

3%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0971

GnuPG (GPG) 1.0.2, and other versions up to 1.2.3, creates ElGamal type 20 (sign+encrypt) keys using the same key component for encryption as for signing, which allows attackers to determine the private key from a signature.

3%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0967

rad_decode in FreeRADIUS 0.9.2 and earlier allows remote attackers to cause a denial of service (crash) via a short RADIUS string attribute with a tag, which causes memcpy to be called with a -1 length argument, as demonstrated using the Tunnel-Password attribute.

5%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0966

Buffer overflow in the frm command in elm 2.5.6 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code via a long Subject line.

3%
Низкий
больше 22 лет назад
redhat логотип
CVE-2003-0965

Cross-site scripting (XSS) vulnerability in the admin CGI script for Mailman before 2.1.4 allows remote attackers to steal session cookies and conduct unauthorized activities.

2%
Низкий
больше 22 лет назад
redhat логотип
CVE-2003-0963

Buffer overflows in (1) try_netscape_proxy and (2) try_squid_eplf for lftp 2.6.9 and earlier allow remote HTTP servers to execute arbitrary code via long directory names that are processed by the ls or rels commands.

14%
Средний
почти 23 года назад
redhat логотип
CVE-2003-0962

Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.

21%
Средний
почти 23 года назад
redhat логотип
CVE-2003-0961

Integer overflow in the do_brk function for the brk system call in Linux kernel 2.4.22 and earlier allows local users to gain root privileges.

3%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0935

Net-SNMP before 5.0.9 allows a user or community to access data in MIB objects, even if that data is not allowed to be viewed.

2%
Низкий
около 23 лет назад
redhat логотип
CVE-2003-0927

Heap-based buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the SOCKS dissector.

6%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0926

Ethereal 0.9.15 and earlier, and Tethereal, allows remote attackers to cause a denial of service (crash) via certain malformed (1) ISAKMP or (2) MEGACO packets.

4%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0925

Buffer overflow in Ethereal 0.9.15 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed GTP MSISDN string.

6%
Низкий
почти 23 года назад
redhat логотип
CVE-2003-0924

netpbm 9.25 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.

0%
Низкий
больше 22 лет назад
redhat логотип
CVE-2003-0901

Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x before 7.3.4, allows remote attackers to execute arbitrary code.

5%
Низкий
около 23 лет назад
redhat логотип
CVE-2003-0859

The getifaddrs function in GNU libc (glibc) 2.2.4 and earlier allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.

0%
Низкий
почти 23 года назад

Уязвимостей на страницу