Логотип exploitDog
source:"ubuntu"
Консоль
Логотип exploitDog

exploitDog

source:"ubuntu"

Количество 59 250

Количество 59 250

ubuntu логотип

CVE-2005-3272

почти 20 лет назад

Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3271

почти 20 лет назад

Exec in Linux kernel 2.6 does not properly clear posix-timers in multi-threaded environments, which results in a resource leak and could allow a large number of multiple local users to cause a denial of service by using more posix-timers than specified by the quota for a single user.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2005-3268

почти 20 лет назад

yiff server (yiff-server) 2.14.2 on Debian GNU/Linux runs as root and does not properly verify ownership of files that it opens, which allows local users to read arbitrary files.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2005-3258

почти 20 лет назад

The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain "odd" responses.

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2005-3257

почти 20 лет назад

The VT implementation (vt_ioctl.c) in Linux kernel 2.6.12, and possibly other versions including 2.6.14.4, allows local users to use the KDSKBSENT ioctl on terminals of other users and gain privileges, as demonstrated by modifying key bindings using loadkeys.

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2005-3256

почти 20 лет назад

The key selection dialogue in Enigmail before 0.92.1 can incorrectly select a key with a user ID that does not have additional information, which allows parties with that key to decrypt the message.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3255

почти 20 лет назад

The (1) cgiwrap and (2) php-cgiwrap packages before 3.9 in Debian GNU/Linux provide access to debugging CGIs under the web document root, which allows remote attackers to obtain sensitive information via direct requests to those CGIs.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3254

почти 20 лет назад

The CGIwrap program before 3.9 on Debian GNU/Linux uses an incorrect minimum value of 100 for a UID to determine whether it can perform a seteuid operation, which could allow attackers to execute code as other system UIDs that are greater than the minimum value, which should be 1000 on Debian systems.

CVSS2: 10
EPSS: Низкий
ubuntu логотип

CVE-2005-3252

почти 20 лет назад

Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.

CVSS2: 7.5
EPSS: Высокий
ubuntu логотип

CVE-2005-3249

почти 20 лет назад

Unspecified vulnerability in the WSP dissector in Ethereal 0.10.1 to 0.10.12 allows remote attackers to cause a denial of service or corrupt memory via unknown vectors that cause Ethereal to free an invalid pointer.

CVSS2: 6.4
EPSS: Низкий
ubuntu логотип

CVE-2005-3248

почти 20 лет назад

Unspecified vulnerability in the X11 dissector in Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (divide-by-zero) via unknown vectors.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3247

почти 20 лет назад

The SigComp UDVM in Ethereal 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3246

почти 20 лет назад

Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (null dereference) via unknown vectors in the (1) SCSI, (2) sFlow, or (3) RTnet dissectors.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3245

почти 20 лет назад

Unspecified vulnerability in the ONC RPC dissector in Ethereal 0.10.3 to 0.10.12, when the "Dissect unknown RPC program numbers" option is enabled, allows remote attackers to cause a denial of service (memory consumption).

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3244

почти 20 лет назад

The BER dissector in Ethereal 0.10.3 to 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3243

почти 20 лет назад

Multiple buffer overflows in Ethereal 0.10.12 and earlier might allow remote attackers to execute arbitrary code via unknown vectors in the (1) SLIMP3 and (2) AgentX dissector.

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2005-3242

почти 20 лет назад

Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3241

почти 20 лет назад

Multiple vulnerabilities in Ethereal 0.10.12 and earlier allow remote attackers to cause a denial of service (memory consumption) via unspecified vectors in the (1) ISAKMP, (2) FC-FCS, (3) RSVP, and (4) ISIS LSP dissector.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-3239

почти 20 лет назад

The OLE2 unpacker in clamd in Clam AntiVirus (ClamAV) 0.87-1 allows remote attackers to cause a denial of service (segmentation fault) via a DOC file with an invalid property tree, which triggers an infinite recursion in the ole2_walk_property_tree function.

CVSS2: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2005-3229

почти 20 лет назад

Multiple interpretation error in unspecified versions of ClamAV Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

CVSS2: 5.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2005-3272

Linux kernel before 2.6.12 allows remote attackers to poison the bridge forwarding table using frames that have already been dropped by filtering, which can cause the bridge to forward spoofed packets.

CVSS2: 5
2%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3271

Exec in Linux kernel 2.6 does not properly clear posix-timers in multi-threaded environments, which results in a resource leak and could allow a large number of multiple local users to cause a denial of service by using more posix-timers than specified by the quota for a single user.

CVSS2: 2.1
0%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3268

yiff server (yiff-server) 2.14.2 on Debian GNU/Linux runs as root and does not properly verify ownership of files that it opens, which allows local users to read arbitrary files.

CVSS2: 2.1
0%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3258

The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain "odd" responses.

CVSS2: 5
24%
Средний
почти 20 лет назад
ubuntu логотип
CVE-2005-3257

The VT implementation (vt_ioctl.c) in Linux kernel 2.6.12, and possibly other versions including 2.6.14.4, allows local users to use the KDSKBSENT ioctl on terminals of other users and gain privileges, as demonstrated by modifying key bindings using loadkeys.

CVSS2: 4.6
0%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3256

The key selection dialogue in Enigmail before 0.92.1 can incorrectly select a key with a user ID that does not have additional information, which allows parties with that key to decrypt the message.

CVSS2: 5
1%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3255

The (1) cgiwrap and (2) php-cgiwrap packages before 3.9 in Debian GNU/Linux provide access to debugging CGIs under the web document root, which allows remote attackers to obtain sensitive information via direct requests to those CGIs.

CVSS2: 5
0%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3254

The CGIwrap program before 3.9 on Debian GNU/Linux uses an incorrect minimum value of 100 for a UID to determine whether it can perform a seteuid operation, which could allow attackers to execute code as other system UIDs that are greater than the minimum value, which should be 1000 on Debian systems.

CVSS2: 10
1%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3252

Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.

CVSS2: 7.5
84%
Высокий
почти 20 лет назад
ubuntu логотип
CVE-2005-3249

Unspecified vulnerability in the WSP dissector in Ethereal 0.10.1 to 0.10.12 allows remote attackers to cause a denial of service or corrupt memory via unknown vectors that cause Ethereal to free an invalid pointer.

CVSS2: 6.4
5%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3248

Unspecified vulnerability in the X11 dissector in Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (divide-by-zero) via unknown vectors.

CVSS2: 5
3%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3247

The SigComp UDVM in Ethereal 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.

CVSS2: 5
3%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3246

Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (null dereference) via unknown vectors in the (1) SCSI, (2) sFlow, or (3) RTnet dissectors.

CVSS2: 5
3%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3245

Unspecified vulnerability in the ONC RPC dissector in Ethereal 0.10.3 to 0.10.12, when the "Dissect unknown RPC program numbers" option is enabled, allows remote attackers to cause a denial of service (memory consumption).

CVSS2: 5
3%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3244

The BER dissector in Ethereal 0.10.3 to 0.10.12 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.

CVSS2: 5
7%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3243

Multiple buffer overflows in Ethereal 0.10.12 and earlier might allow remote attackers to execute arbitrary code via unknown vectors in the (1) SLIMP3 and (2) AgentX dissector.

CVSS2: 7.5
20%
Средний
почти 20 лет назад
ubuntu логотип
CVE-2005-3242

Ethereal 0.10.12 and earlier allows remote attackers to cause a denial of service (crash) via unknown vectors in (1) the IrDA dissector and (2) the SMB dissector when SMB transaction payload reassembly is enabled.

CVSS2: 5
3%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3241

Multiple vulnerabilities in Ethereal 0.10.12 and earlier allow remote attackers to cause a denial of service (memory consumption) via unspecified vectors in the (1) ISAKMP, (2) FC-FCS, (3) RSVP, and (4) ISIS LSP dissector.

CVSS2: 5
4%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3239

The OLE2 unpacker in clamd in Clam AntiVirus (ClamAV) 0.87-1 allows remote attackers to cause a denial of service (segmentation fault) via a DOC file with an invalid property tree, which triggers an infinite recursion in the ole2_walk_property_tree function.

CVSS2: 7.8
5%
Низкий
почти 20 лет назад
ubuntu логотип
CVE-2005-3229

Multiple interpretation error in unspecified versions of ClamAV Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

CVSS2: 5.1
0%
Низкий
почти 20 лет назад

Уязвимостей на страницу