|
1571
|
-
4.6
|
MEDIUM
|
udev does not properly set permissions on certain files in /dev/input, which allows local users to obtain sensitive data that is entered at the console, such as user passwords.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-3631
|
cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:30
2005-12-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1572
|
-
2.1
|
LOW
|
The rw_vm function in usercopy.c in the 4GB split patch for the Linux kernel in Red Hat Enterprise Linux 4 does not perform proper bounds checking, which allows local users to cause a denial of servi…
|
NVD-CWE-Other
|
CVE-2005-2100
|
cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:30
2005-10-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1573
|
-
3.6
|
LOW
|
The raw_sendmsg function in the Linux kernel 2.6 before 2.6.13.1 allows local users to cause a denial of service (change hardware state) or read from arbitrary memory via crafted input.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-2492
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2018-10-20 00:33
2005-09-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1574
|
-
7.2
|
HIGH
|
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications, which allows local users to cause a denial…
|
NVD-CWE-Other
|
CVE-2005-0403
|
cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:29
2005-09-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1575
|
-
7.5
|
HIGH
|
sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2005-1760
|
cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:30
2005-06-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1576
|
-
2.1
|
LOW
|
The xattr file system code, as backported in Red Hat Enterprise Linux 3 on 64-bit systems, does not properly handle certain offsets, which allows local users to cause a denial of service (system cras…
|
NVD-CWE-Other
|
CVE-2005-0757
|
cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:30
2005-05-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1577
|
-
4.6
|
MEDIUM
|
Stack-based buffer overflow in the ieee_putascii function for nasm 0.98 and earlier allows attackers to execute arbitrary code via a crafted asm file, a different vulnerability than CVE-2004-1287.
|
NVD-CWE-Other
|
CVE-2005-1194
|
cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:30
2005-05-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1578
|
-
6.9
|
MEDIUM
|
Race condition in the page fault handler (fault.c) for Linux kernel 2.2.x to 2.2.7, 2.4 to 2.4.29, and 2.6 to 2.6.10, when running on multiprocessor machines, allows local users to execute arbitrary …
|
NVD-CWE-Other
|
CVE-2005-0001
|
cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:29
2005-05-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1579
|
-
2.1
|
LOW
|
The DBI library (libdbi-perl) for Perl allows local users to overwrite arbitrary files via a symlink attack on a temporary PID file.
|
NVD-CWE-Other
|
CVE-2005-0077
|
cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2018-10-20 00:31
2005-05-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1580
|
-
4.6
|
MEDIUM
|
The KDE screen saver in KDE before 3.0.5 does not properly check the return value from a certain function call, which allows attackers with physical access to cause a crash and access the desktop ses…
|
NVD-CWE-Other
|
CVE-2005-0078
|
cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2017-10-11 10:29
2005-05-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|