Latest CVE Feed
-
5.1
MEDIUMCVE-2005-1477
The install function in Firefox 1.0.3 allows remote web sites on the browser's whitelist, such as update.mozilla.org or addon.mozilla.org, to execute arbitrary Javascript with chrome privileges, leading to arbitrary code execution on the system when combi... Read more
Affected Products : firefox- Published: May. 09, 2005
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2005-1406
The kernel in FreeBSD 4.x to 4.11 and 5.x to 5.4 does not properly clear certain fixed-length buffers when copying variable-length data for use by applications, which could allow those applications to read previously used sensitive memory.... Read more
Affected Products : freebsd- Published: May. 06, 2005
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2005-1400
The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values.... Read more
Affected Products : freebsd- Published: May. 06, 2005
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2005-1399
FreeBSD 4.6 to 4.11 and 5.x to 5.4 uses insecure default permissions for the /dev/iir device, which allows local users to execute restricted ioctl calls to read or modify data on hardware that is controlled by the iir driver.... Read more
Affected Products : freebsd- Published: May. 06, 2005
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2005-1471
Heap-based buffer overflow in RSA SecurID Web Agent 5, 5.2, and 5.3 allows remote attackers to execute arbitrary code via crafted chunked-encoding data.... Read more
Affected Products : securid_web_agent- Published: May. 06, 2005
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2005-1461
Multiple buffer overflows in the (1) SIP, (2) CMIP, (3) CMP, (4) CMS, (5) CRMF, (6) ESS, (7) OCSP, (8) X.509, (9) ISIS, (10) DISTCC, (11) FCELS, (12) Q.931, (13) NCP, (14) TCAP, (15) ISUP, (16) MEGACO, (17) PKIX1Explitit, (18) PKIX_Qualified, (19) Present... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1457
Multiple unknown vulnerabilities in the (1) AIM, (2) LDAP, (3) FibreChannel, (4) GSM_MAP, (5) SRVLOC, and (6) NTLMSSP dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash).... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1456
Multiple unknown vulnerabilities in the (1) DHCP and (2) Telnet dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (abort).... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1460
Multiple unknown dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (assert error) via an invalid protocol tree item length.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1467
Unknown vulnerability in the NDPS dissector in Ethereal before 0.10.11 allows remote attackers to cause a denial of service (memory exhaustion) via unknown vectors.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1453
fetchnews in leafnode 1.9.48 to 1.11.1 allows remote NNTP servers to cause a denial of service (crash) by closing the connection while fetchnews is reading (1) an article header or (2) an article body, which also prevents fetchnews from querying other ser... Read more
Affected Products : leafnode- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1458
Multiple unknown "other problems" in the KINK dissector in Ethereal before 0.10.11 have unknown impact and attack vectors.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1464
Multiple unknown vulnerabilities in the (1) KINK, (2) L2TP, (3) MGCP, (4) EIGRP, (5) DLSw, (6) MEGACO, (7) LMP, and (8) RSVP dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (infinite loop).... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1470
Multiple unknown vulnerabilities in the (1) TZSP, (2) MGCP, (3) ISUP, (4) SMB, or (5) Bittorrent dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (segmentation fault) via unknown vectors.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-0918
The NPSVG3.dll ActiveX control for Adobe SVG Viewer 3.02 and earlier, when running on Internet Explorer, allows remote attackers to determine the existence of arbitrary files by setting the src property to the target filename and using Javascript to deter... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1468
Multiple unknown vulnerabilities in the (1) WSP, (2) Q.931, (3) H.245, (4) KINK, (5) MGCP, (6) RPC, (7) SMBMailslot, and (8) SMB NETLOGON dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of service (crash) via unknown vectors... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2005-1463
Multiple format string vulnerabilities in the (1) DHCP and (2) ANSI A dissectors in Ethereal before 0.10.11 may allow remote attackers to execute arbitrary code.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1469
Unknown vulnerability in the GSM dissector in Ethereal before 0.10.11 allows remote attackers to cause the dissector to access an invalid pointer.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1459
Multiple unknown vulnerabilities in the (1) WSP, (2) BER, (3) SMB, (4) NDPS, (5) IAX2, (6) RADIUS, (7) TCAP, (8) MRDISC, (9) 802.3 Slow, (10) SMBMailslot, or (11) SMB PIPE dissectors in Ethereal before 0.10.11 allow remote attackers to cause a denial of s... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-1466
Unknown vulnerability in the DICOM dissector in Ethereal before 0.10.11 allows remote attackers to cause a denial of service (large memory allocation) via unknown vectors.... Read more
- Published: May. 05, 2005
- Modified: Apr. 03, 2025