conectiva kayıtları
conectiva üreticisine ait 66 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 22
- Düzeltme kaydı olan
- %50
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-264 Permissions, Privileges, and Access Controls3
- CWE-399 Resource Management Errors2
- CWE-193 Off-by-one Error1
- CWE-20 Improper Input Validation1
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
66 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
60Bu hafta | CVE-2003-0780Kavram kanıtı | Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privilmysql · mysql | Kritik9,0 | — | %78,4 | 22 Eyl 2003 |
48Planlayın | CVE-2000-0666Kavram kanıtı | rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote atconectiva · linux | Kritik10,0 | — | %26,3 | 16 Tem 2000 |
48Planlayın | CVE-2004-0557Kavram kanıtı | Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers tsox · sox | Kritik10,0 | — | %25,1 | 6 Ağu 2004 |
45Planlayın | CVE-2000-0844Kavram kanıtı | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackecaldera · openlinux ebuilder · CWE-264 | Kritik10,0 | — | %15,6 | 14 Kas 2000 |
44Planlayın | CVE-2004-0882İstismar yok | Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via asamba · samba | Kritik10,0 | — | %13,7 | 27 Oca 2005 |
43Planlayın | CVE-2002-0083Kavram kanıtı | Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.immunix · immunix · CWE-193 | Kritik9,8 | — | %14,7 | 15 Mar 2002 |
43Planlayın | CVE-2004-0902İstismar yok | Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow rmozilla · mozilla | Kritik10,0 | — | %10,1 | 27 Oca 2005 |
43Planlayın | CVE-2004-0903İstismar yok | Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.mozilla · mozilla | Kritik10,0 | — | %9,7 | 27 Oca 2005 |
42Planlayın | CVE-2004-1029Kavram kanıtı | The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restsun · jdk · CWE-264 | Kritik9,3 | — | %17,0 | 1 Mar 2005 |
42Planlayın | CVE-2004-0904İstismar yok | Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.mozilla · firefox | Kritik10,0 | — | %8,0 | 31 Ara 2004 |
42Planlayın | CVE-2004-1012İstismar yok | The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary codcarnegie mellon university · cyrus imap server | Kritik10,0 | — | %6,0 | 10 Oca 2005 |
42Planlayın | CVE-2004-1011İstismar yok | Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execcarnegie mellon university · cyrus imap server | Kritik10,0 | — | %5,8 | 10 Oca 2005 |
42Planlayın | CVE-2004-1013İstismar yok | The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary codcarnegie mellon university · cyrus imap server | Kritik10,0 | — | %5,8 | 10 Oca 2005 |
41Planlayın | CVE-2005-3625İstismar yok | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial libextractor · libextractor · CWE-399 | Kritik10,0 | — | %3,8 | 31 Ara 2005 |
41Planlayın | CVE-2000-0747İstismar yok | The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.conectiva · linux | Kritik10,0 | — | %1,7 | 20 Eki 2000 |
34İzleyin | CVE-2001-0690Kavram kanıtı | Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allows a remote attackerconectiva · linux | Yüksek7,5 | — | %11,9 | 20 Eyl 2001 |
33İzleyin | CVE-2001-0136Kavram kanıtı | Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commanproftpd · proftpd · CWE-401 | Orta5,0 | — | %44,9 | 12 Mar 2001 |
32İzleyin | CVE-2005-0699İstismar yok | Multiple buffer overflows in the dissect_a11_radius function in the CDMA A11 (3G-A11) dissector (packet-3g-a11.c) for Ethereal 0.10.9 and eaethereal group · ethereal | Yüksek7,5 | — | %6,5 | 8 Mar 2005 |
32İzleyin | CVE-2004-1307İstismar yok | Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code vilibtiff · libtiff | Yüksek7,5 | — | %6,3 | 21 Ara 2004 |
32İzleyin | CVE-2004-0827İstismar yok | Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a deimagemagick · imagemagick | Yüksek7,5 | — | %5,5 | 16 Eyl 2004 |
31İzleyin | CVE-2004-0817İstismar yok | Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.enlightenment · imlib | Yüksek7,5 | — | %4,9 | 31 Ara 2004 |
31İzleyin | CVE-2001-0440Kavram kanıtı | Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitralicq · licq | Yüksek7,5 | — | %4,6 | 2 Tem 2001 |
31İzleyin | CVE-2004-0801İstismar yok | Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUPS to execute arbitralinuxprinting.org · foomatic-filters | Yüksek7,5 | — | %4,3 | 16 Eyl 2004 |
31İzleyin | CVE-2005-0373İstismar yok | Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL bucyrus · sasl | Yüksek7,5 | — | %3,9 | 7 Eki 2004 |
31İzleyin | CVE-2005-0754İstismar yok | Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbikde · quanta | Yüksek7,5 | — | %3,0 | 22 Nis 2005 |
- CVE-2003-078060Bu hafta
Buffer overflow in get_salt_from_password from sql_acl.cc for MySQL 4.0.14 and earlier, and 3.23.x, allows attackers with ALTER TABLE privil
KritikCVSS 9,0Kavram kanıtıEPSS %78mysql · mysql22 Eyl 2003
- CVE-2000-066648Planlayın
rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote at
KritikCVSS 10,0Kavram kanıtıEPSS %26conectiva · linux16 Tem 2000
- CVE-2004-055748Planlayın
Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers t
KritikCVSS 10,0Kavram kanıtıEPSS %25sox · sox6 Ağu 2004
- CVE-2000-084445Planlayın
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attacke
KritikCVSS 10,0Kavram kanıtıEPSS %16caldera · openlinux ebuilder14 Kas 2000
- CVE-2004-088244Planlayın
Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a
KritikCVSS 10,0İstismar yokEPSS %14samba · samba27 Oca 2005
- CVE-2002-008343Planlayın
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
KritikCVSS 9,8Kavram kanıtıEPSS %15immunix · immunix15 Mar 2002
- CVE-2004-090243Planlayın
Multiple heap-based buffer overflows in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow r
KritikCVSS 10,0İstismar yokEPSS %10mozilla · mozilla27 Oca 2005
- CVE-2004-090343Planlayın
Stack-based buffer overflow in the writeGroup function in nsVCardObj.cpp for Mozilla Firefox before the Preview Release, Mozilla before 1.7.
KritikCVSS 10,0İstismar yokEPSS %10mozilla · mozilla27 Oca 2005
- CVE-2004-102942Planlayın
The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly rest
KritikCVSS 9,3Kavram kanıtıEPSS %17sun · jdk1 Mar 2005
- CVE-2004-090442Planlayın
Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.
KritikCVSS 10,0İstismar yokEPSS %8mozilla · firefox31 Ara 2004
- CVE-2004-101242Planlayın
The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary cod
KritikCVSS 10,0İstismar yokEPSS %6carnegie mellon university · cyrus imap server10 Oca 2005
- CVE-2004-101142Planlayın
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to exec
KritikCVSS 10,0İstismar yokEPSS %6carnegie mellon university · cyrus imap server10 Oca 2005
- CVE-2004-101342Planlayın
The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary cod
KritikCVSS 10,0İstismar yokEPSS %6carnegie mellon university · cyrus imap server10 Oca 2005
- CVE-2005-362541Planlayın
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial
KritikCVSS 10,0İstismar yokEPSS %4libextractor · libextractor31 Ara 2005
- CVE-2000-074741Planlayın
The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it.
KritikCVSS 10,0İstismar yokEPSS %2conectiva · linux20 Eki 2000
- CVE-2001-069034İzleyin
Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allows a remote attacker
YüksekCVSS 7,5Kavram kanıtıEPSS %12conectiva · linux20 Eyl 2001
- CVE-2001-013633İzleyin
Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE comman
OrtaCVSS 5,0Kavram kanıtıEPSS %45proftpd · proftpd12 Mar 2001
- CVE-2005-069932İzleyin
Multiple buffer overflows in the dissect_a11_radius function in the CDMA A11 (3G-A11) dissector (packet-3g-a11.c) for Ethereal 0.10.9 and ea
YüksekCVSS 7,5İstismar yokEPSS %6ethereal group · ethereal8 Mar 2005
- CVE-2004-130732İzleyin
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code vi
YüksekCVSS 7,5İstismar yokEPSS %6libtiff · libtiff21 Ara 2004
- CVE-2004-082732İzleyin
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a de
YüksekCVSS 7,5İstismar yokEPSS %6imagemagick · imagemagick16 Eyl 2004
- CVE-2004-081731İzleyin
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
YüksekCVSS 7,5İstismar yokEPSS %5enlightenment · imlib31 Ara 2004
- CVE-2001-044031İzleyin
Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitra
YüksekCVSS 7,5Kavram kanıtıEPSS %5licq · licq2 Tem 2001
- CVE-2004-080131İzleyin
Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUPS to execute arbitra
YüksekCVSS 7,5İstismar yokEPSS %4linuxprinting.org · foomatic-filters16 Eyl 2004
- CVE-2005-037331İzleyin
Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL bu
YüksekCVSS 7,5İstismar yokEPSS %4cyrus · sasl7 Eki 2004
- CVE-2005-075431İzleyin
Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbi
YüksekCVSS 7,5İstismar yokEPSS %3kde · quanta22 Nis 2005