Vulnerability index

Browse CVEs

2,592 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora Core HIGH 7.2
CVE-2006-0745

X.Org server (xorg-server) 1.0.0 and later, X11R6.9.0, and X11R7.0 inadvertently treats the address of the geteuid function as if it is the return va…

Patch available
Fix from $1,950 2006-03-21
Fedora Core HIGH 7.8
CVE-2006-0453

The LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (crash) via a certain "bad BER sequence" that r…

Mitigation only
Fix from $1,950 2006-02-14
Fedora Core MEDIUM 5.0
CVE-2006-0451

Multiple memory leaks in the LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (memory consumption) v…

Mitigation only
Fix from $1,600 2006-02-14
Fedora Core MEDIUM 5.0
CVE-2006-0452

dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) vi…

Mitigation only
Fix from $1,600 2006-02-14
Fedora Core MEDIUM 5.0
CVE-2005-3630

Fedora Directory Server before 10 allows remote attackers to obtain sensitive information, such as the password from adm.conf via an IFRAME element, …

Patch available
Fix from $1,600 2005-12-31
Enterprise Linux HIGH 7.2
CVE-2005-0403

init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applic…

Patch available
Fix from $1,950 2005-09-01
Sysreport HIGH 7.5
CVE-2005-1760

sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows l…

Patch available
Fix from $1,950 2005-06-13
Enterprise Linux HIGH 7.5
CVE-2005-0086

Heap-based buffer overflow in less in Red Hat Enterprise Linux 3 allows attackers to cause a denial of service (application crash) or possibly execut…

Mitigation only
Fix from $1,950 2005-05-02
Enterprise Linux HIGH 7.5
CVE-2005-0337

Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to b…

Patch available
Fix from $1,950 2005-05-02
Enterprise Linux HIGH 7.2
CVE-2005-0091

Unknown vulnerability in the Red Hat Enterprise Linux 4 kernel 4GB/4GB split patch, when using the hugemem kernel, allows local users to read and wri…

Mitigation only
Fix from $1,950 2005-05-02
Enterprise Linux MEDIUM 5.0
CVE-2005-1061

The secure script in LogWatch before 2.6-2 allows attackers to prevent LogWatch from detecting malicious activity via certain strings in the secure f…

Mitigation only
Fix from $1,600 2005-05-02
Fedora Core MEDIUM 6.8
CVE-2005-0085

Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the …

Patch available
Fix from $1,600 2005-04-27
Enterprise Linux MEDIUM 5.0
CVE-2005-0384

Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd c…

No fix yet
Fix from $1,600 2005-03-15
Enterprise Linux MEDIUM 5.0
CVE-2005-0398

The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.

Patch available
Fix from $1,600 2005-03-14
Enterprise Linux MEDIUM 5.0
CVE-2005-0472EPSS 5%

Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ.

Patch available
Fix from $1,600 2005-03-14
Enterprise Linux MEDIUM 5.0
CVE-2005-0473

The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that cause…

Patch available
Fix from $1,600 2005-03-14
Enterprise Linux HIGH 7.5
CVE-2005-0605

scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.

Patch available
Fix from $1,950 2005-03-02
Fedora Core HIGH 10.0
CVE-2004-0989EPSS 22%

Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrary code vi…

Patch available
Fix from $1,950 2005-03-01
Enterprise Linux MEDIUM 5.0
CVE-2004-0960

FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (core dump) via malformed USR vendor-specific attributes (VSA) that caus…

Patch available
Fix from $1,600 2005-02-09
Enterprise Linux MEDIUM 5.0
CVE-2004-0961

Memory leak in FreeRADIUS before 1.0.1 allows remote attackers to cause a denial of service (memory exhaustion) via a series of Access-Request packet…

Patch available
Fix from $1,600 2005-02-09
Enterprise Linux MEDIUM 5.0
CVE-2004-0886EPSS 5%

Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF ima…

Patch available
Fix from $1,600 2005-01-27
Enterprise Linux HIGH 10.0
CVE-2004-0946EPSS 11%

rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stac…

Patch available
Fix from $1,950 2005-01-10
Fedora Core HIGH 10.0
CVE-2004-1015EPSS 5%

Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbit…

Patch available
Fix from $1,950 2005-01-10
Fedora Core HIGH 10.0
CVE-2004-1067EPSS 5%

Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attacker…

Patch available
Fix from $1,950 2005-01-10
Fedora Core HIGH 10.0
CVE-2004-1154EPSS 13%

Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (appl…

Mitigation only
Fix from $1,950 2005-01-10
Fedora Core HIGH 7.5
CVE-2004-1158

Konqueror 3.x up to 3.2.2-6, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window i…

Patch available
Fix from $1,950 2005-01-10
Fedora Core MEDIUM 6.5
CVE-2004-1267EPSS 6%

Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary cod…

No fix yet
Fix from $1,600 2005-01-10
Fedora Core MEDIUM 5.0
CVE-2004-1269EPSS 9%

lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes sub…

No fix yet
Fix from $1,600 2005-01-10
Enterprise Linux HIGH 7.5
CVE-2004-0803EPSS 8%

Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, …

Patch available
Fix from $1,950 2004-12-23
Enterprise Linux HIGH 10.0
CVE-2004-0607EPSS 5%

The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attack…

Patch available
Fix from $1,950 2004-12-06