Логотип exploitDog
source:"ubuntu"
Консоль
Логотип exploitDog

exploitDog

source:"ubuntu"

Количество 59 256

Количество 59 256

ubuntu логотип

CVE-2004-0416

около 21 года назад

Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

CVSS2: 10
EPSS: Средний
ubuntu логотип

CVE-2004-0415

почти 21 год назад

Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portions of kernel memory.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2004-0414

около 21 года назад

CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.

CVSS2: 10
EPSS: Низкий
ubuntu логотип

CVE-2004-0413

около 21 года назад

libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via an integer overflow that leads to a heap-based buffer overflow.

CVSS2: 10
EPSS: Средний
ubuntu логотип

CVE-2004-0412

около 21 года назад

Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2004-0409

около 21 года назад

Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2004-0408

почти 21 год назад

Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2004-0405

около 21 года назад

CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2004-0403

около 21 года назад

Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2004-0402

около 21 года назад

Buffer overflow in xpcd-svga in xpcd before 2.08, and possibly other versions, may allow local users to execute arbitrary code.

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2004-0401

около 21 года назад

Unknown vulnerability in libtasn1 0.1.x before 0.1.2, and 0.2.x before 0.2.7, related to the DER parsing functions.

CVSS2: 10
EPSS: Низкий
ubuntu логотип

CVE-2004-0400

около 21 года назад

Stack-based buffer overflow in Exim 4 before 4.33, when the headers_check_syntax option is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code during the header check.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2004-0399

около 21 года назад

Stack-based buffer overflow in Exim 3.35, and other versions before 4, when the sender_verify option is true, allows remote attackers to cause a denial of service and possibly execute arbitrary code during sender verification.

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2004-0398

около 21 года назад

Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the client.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2004-0397

около 21 года назад

Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitrary code via a (1) DAV2 REPORT query or (2) get-dated-rev svn-protocol command.

CVSS2: 7.5
EPSS: Высокий
ubuntu логотип

CVE-2004-0396

около 21 года назад

Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines.

CVSS2: 7.5
EPSS: Высокий
ubuntu логотип

CVE-2004-0395

больше 20 лет назад

The xatitv program in the gatos package does not properly drop root privileges when the configuration file does not exist, which allows local users to execute arbitrary commands via shell metacharacters in a system call.

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2004-0394

около 21 года назад

A "potential" buffer overflow exists in the panic() function in Linux 2.4.x, although it may not be exploitable due to the functionality of panic.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2004-0393

больше 20 лет назад

Format string vulnerability in the msg function for rlpr daemon (rlprd) 2.0.4 allows remote attackers to execute arbitrary code via format string specifiers in a buffer that can not be resolved, which is provided to the syslog function.

CVSS2: 10
EPSS: Средний
ubuntu логотип

CVE-2004-0388

около 21 года назад

The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 2.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2004-0416

Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

CVSS2: 10
43%
Средний
около 21 года назад
ubuntu логотип
CVE-2004-0415

Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portions of kernel memory.

CVSS2: 2.1
0%
Низкий
почти 21 год назад
ubuntu логотип
CVE-2004-0414

CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, does not properly handle malformed "Entry" lines, which prevents a NULL terminator from being used and may lead to a denial of service (crash), modification of critical program data, or arbitrary code execution.

CVSS2: 10
5%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0413

libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via an integer overflow that leads to a heap-based buffer overflow.

CVSS2: 10
11%
Средний
около 21 года назад
ubuntu логотип
CVE-2004-0412

Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.

CVSS2: 5
3%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0409

Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.

CVSS2: 7.5
27%
Средний
около 21 года назад
ubuntu логотип
CVE-2004-0408

Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary code.

CVSS2: 7.5
3%
Низкий
почти 21 год назад
ubuntu логотип
CVE-2004-0405

CVS before 1.11 allows CVS clients to read arbitrary files via .. (dot dot) sequences in filenames via CVS client requests, a different vulnerability than CVE-2004-0180.

CVSS2: 5
1%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0403

Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.

CVSS2: 5
13%
Средний
около 21 года назад
ubuntu логотип
CVE-2004-0402

Buffer overflow in xpcd-svga in xpcd before 2.08, and possibly other versions, may allow local users to execute arbitrary code.

CVSS2: 4.6
0%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0401

Unknown vulnerability in libtasn1 0.1.x before 0.1.2, and 0.2.x before 0.2.7, related to the DER parsing functions.

CVSS2: 10
1%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0400

Stack-based buffer overflow in Exim 4 before 4.33, when the headers_check_syntax option is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code during the header check.

CVSS2: 7.5
6%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0399

Stack-based buffer overflow in Exim 3.35, and other versions before 4, when the sender_verify option is true, allows remote attackers to cause a denial of service and possibly execute arbitrary code during sender verification.

CVSS2: 7.5
42%
Средний
около 21 года назад
ubuntu логотип
CVE-2004-0398

Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the client.

CVSS2: 7.5
5%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0397

Stack-based buffer overflow during the apr_time_t data conversion in Subversion 1.0.2 and earlier allows remote attackers to execute arbitrary code via a (1) DAV2 REPORT query or (2) get-dated-rev svn-protocol command.

CVSS2: 7.5
87%
Высокий
около 21 года назад
ubuntu логотип
CVE-2004-0396

Heap-based buffer overflow in CVS 1.11.x up to 1.11.15, and 1.12.x up to 1.12.7, when using the pserver mechanism allows remote attackers to execute arbitrary code via Entry lines.

CVSS2: 7.5
87%
Высокий
около 21 года назад
ubuntu логотип
CVE-2004-0395

The xatitv program in the gatos package does not properly drop root privileges when the configuration file does not exist, which allows local users to execute arbitrary commands via shell metacharacters in a system call.

CVSS2: 7.2
0%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2004-0394

A "potential" buffer overflow exists in the panic() function in Linux 2.4.x, although it may not be exploitable due to the functionality of panic.

CVSS2: 2.1
0%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-0393

Format string vulnerability in the msg function for rlpr daemon (rlprd) 2.0.4 allows remote attackers to execute arbitrary code via format string specifiers in a buffer that can not be resolved, which is provided to the syslog function.

CVSS2: 10
15%
Средний
больше 20 лет назад
ubuntu логотип
CVE-2004-0388

The mysqld_multi script in MySQL allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 2.1
0%
Низкий
около 21 года назад

Уязвимостей на страницу