CVEs (134)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Gentoo MandrakesoftOpenssl5Linux Mandrake LinuxMandrake Linux Corporate Server+2 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files. |
3Mandrakesoft NetatalkRedhat4Fedora Core Mandrake LinuxMandrake Linux Corporate Server+1 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 The netatalk package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files. |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file f...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target s...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-An...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via a compressed file with both local and gl...Show more |
9Apple KdeLibtiff+6 more13Enterprise Linux Enterprise Linux DesktopFedora Core+10 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls. |
3Mandrakesoft MplayerXine4Mandrake Linux MplayerXine+1 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 10.0 HIGH· v2 The pnm_get_chunk function in xine 0.99.2 and earlier, and other packages such as MPlayer that use the same code, does not properly verify that the chunk size is less than the PREAMBLE_SIZE, which causes a read operation...Show more |
3Mandrakesoft MplayerXine4Mandrake Linux MplayerXine+1 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 10.0 HIGH· v2 Heap-based buffer overflow in the pnm_get_chunk function for xine 0.99.2, and other packages such as MPlayer that use the same code, allows remote attackers to execute arbitrary code via long PNA_TAG values, a different...Show more |
3Kde MandrakesoftRedhat3Fedora Core KdeMandrake LinuxApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which m...Show more |
3Kde MandrakesoftRedhat3Fedora Core KonquerorMandrake LinuxApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Konqueror 3.x up to 3.2.2-6, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window or tab whose name is known but resides in a differe...Show more |
3Mandrakesoft Roaring PenguinSuse4Mandrake Linux Mandrake Linux Corporate ServerMimedefang+1 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header. |
10Broadcom CaEset Software+7 more22Antivirus Engine Brightstor Arcserve BackupEtrust Antivirus+19 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, whic...Show more |
4Debian MandrakesoftNfs+1 more6Debian Linux Enterprise LinuxEnterprise Linux Desktop+3 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated. |
1Mandrakesoft 3Mandrake Linux Mandrake Linux Corporate ServerMandrake Multi Network FirewallApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 2.1 LOW· v2 Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer. |
1Mandrakesoft 3Mandrake Linux Mandrake Linux Corporate ServerMandrake Multi Network FirewallApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 2.1 LOW· v2 Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of the search space requi...Show more |
1Mandrakesoft 2Mandrake Linux Mandrake Linux Corporate ServerApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, related to read failures and other bugs. |
9Conectiva EnlightenmentImagemagick+6 more16Enterprise Linux Enterprise Linux DesktopFedora Core+13 moreApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file. |