Vulnerability index

Browse CVEs

43 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Linux HIGH 10.0
CVE-2005-3625

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of servic…

Patch available
Fix from $1,950 2005-12-31
Linux MEDIUM 5.0
CVE-2005-3624

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attac…

Patch available
Fix from $1,600 2005-12-31
Linux MEDIUM 5.0
CVE-2005-3626

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of servic…

Patch available
Fix from $1,600 2005-12-31
Linux HIGH 7.5
CVE-2005-0754

Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbitrary cod…

Patch available
Fix from $1,950 2005-04-22
Linux HIGH 7.2
CVE-2005-0750

The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain p…

Patch available
Fix from $1,950 2005-03-27
Linux HIGH 7.5
CVE-2005-0699EPSS 6%

Multiple buffer overflows in the dissect_a11_radius function in the CDMA A11 (3G-A11) dissector (packet-3g-a11.c) for Ethereal 0.10.9 and earlier all…

Patch available
Fix from $1,950 2005-03-08
Linux HIGH 9.3
CVE-2004-1029EPSS 17%

The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict acce…

Patch available
Fix from $1,950 2005-03-01
Linux HIGH 10.0
CVE-2004-0882EPSS 14%

Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a TRANSACT…

Patch available
Fix from $1,950 2005-01-27
Linux HIGH 10.0
CVE-2004-0902EPSS 10%

Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote att…

Patch available
Fix from $1,950 2005-01-27
Linux HIGH 10.0
CVE-2004-0903EPSS 10%

Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Th…

Mitigation only
Fix from $1,950 2005-01-27
Linux HIGH 7.2
CVE-2004-0884

The (1) libsasl and (2) libsasl2 libraries in Cyrus-SASL 2.1.18 and earlier trust the SASL_PATH environment variable to find all available SASL plug-…

Patch available
Fix from $1,950 2005-01-27
Linux MEDIUM 5.0
CVE-2004-0930

The ms_fnmatch function in Samba 3.0.4 and 3.0.7 and possibly other versions allows remote authenticated users to cause a denial of service (CPU cons…

Patch available
Fix from $1,600 2005-01-27
Linux HIGH 10.0
CVE-2004-1011EPSS 6%

Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbit…

Mitigation only
Fix from $1,950 2005-01-10
Linux HIGH 10.0
CVE-2004-1012EPSS 6%

The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a c…

Mitigation only
Fix from $1,950 2005-01-10
Linux HIGH 10.0
CVE-2004-1013EPSS 6%

The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via cer…

Patch available
Fix from $1,950 2005-01-10
Linux HIGH 7.5
CVE-2004-0817

Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.

Patch available
Fix from $1,950 2004-12-31
Linux MEDIUM 5.1
CVE-2004-0802

Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a diffe…

Patch available
Fix from $1,600 2004-12-31
Linux HIGH 7.2
CVE-2004-1337

The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a process that is launched before t…

Patch available
Fix from $1,950 2004-12-23
Linux MEDIUM 5.0
CVE-2004-1139

Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial of service (application cras…

Patch available
Fix from $1,600 2004-12-15
Linux MEDIUM 5.0
CVE-2004-1142

Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed SMB packet.

Patch available
Fix from $1,600 2004-12-15
Linux MEDIUM 5.0
CVE-2004-1145

Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and (2) do not properly res…

Patch available
Fix from $1,600 2004-12-15
Linux MEDIUM 5.0
CVE-2004-0626

The tcp_find_option function of the netfilter subsystem in Linux kernel 2.6, when using iptables and TCP options rules, allows remote attackers to ca…

Patch available
Fix from $1,600 2004-12-06
Linux HIGH 7.5
CVE-2005-0373

Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in …

Patch available
Fix from $1,950 2004-10-07
Linux HIGH 7.5
CVE-2004-0801

Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUPS to execute arbitrary comman…

Patch available
Fix from $1,950 2004-09-16
Linux HIGH 7.5
CVE-2004-0827EPSS 6%

Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of s…

Patch available
Fix from $1,950 2004-09-16
Linux MEDIUM 5.0
CVE-2004-0807EPSS 5%

Samba 3.0.6 and earlier allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via certain malformed requests tha…

Patch available
Fix from $1,600 2004-09-13
Linux HIGH 10.0
CVE-2004-0557EPSS 25%

Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers to execute…

Patch available
Fix from $1,950 2004-08-06
Linux MEDIUM 5.0
CVE-2003-0468

Postfix 1.1.11 and earlier allows remote attackers to use Postfix to conduct "bounce scans" or DDos attacks of other hosts via an email address to th…

Patch available
Fix from $1,600 2003-08-27
Linux MEDIUM 5.0
CVE-2003-0540EPSS 21%

The address parser code in Postfix 1.1.12 and earlier allows remote attackers to cause a denial of service (lock) via (1) a malformed envelope addres…

Patch available
Fix from $1,600 2003-08-27
Linux CRITICAL 9.8
CVE-2002-0083EPSS 15%

Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.

Fix: 3.1+
Fix from $2,300 2002-03-15