CVEs (1,928)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
5Linux RedhatSuse+2 more8Enterprise Linux Enterprise Linux DesktopFedora Core+5 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.2 HIGH· v2 The load_elf_binary function in the binfmt_elf loader (binfmt_elf.c) in Linux kernel 2.4.x up to 2.4.27, and 2.6.x up to 2.6.8, does not properly check return values from calls to the kernel_read function, which may allo...Show more |
3Linux RedhatUbuntu5Enterprise Linux Enterprise Linux DesktopLinux Advanced Workstation+2 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 6.2 MEDIUM· v2 A "missing serialization" error in the unix_dgram_recvmsg function in Linux 2.4.27 and earlier, and 2.6.x up to 2.6.9, allows local users to gain privileges via a race condition. |
4Debian MandrakesoftNfs+1 more6Debian Linux Enterprise LinuxEnterprise Linux Desktop+3 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 statd in nfs-utils 1.257 and earlier does not ignore the SIGPIPE signal, which allows remote attackers to cause a denial of service (server process crash) via a TCP connection that is prematurely terminated. |
5Linux RedhatSuse+2 more8Enterprise Linux Enterprise Linux DesktopFedora Core+5 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 6.4 MEDIUM· v2 The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read a...Show more |
2Nfs Redhat3Enterprise Linux Enterprise Linux DesktopNfs UtilsApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 10.0 HIGH· v2 rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrar...Show more |
5Linux RedhatSuse+2 more8Enterprise Linux Enterprise Linux DesktopFedora Core+5 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 6.4 MEDIUM· v2 Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1)...Show more |
4Conectiva MozillaNetscape+1 more10Enterprise Linux Enterprise Linux DesktopFedora Core+7 moreApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allow remote attackers to execute arbitrary code via wide bitmap files that tr...Show more |
9Conectiva EnlightenmentImagemagick+6 more16Enterprise Linux Enterprise Linux DesktopFedora Core+13 moreApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file. |
9Conectiva EnlightenmentImagemagick+6 more16Enterprise Linux Enterprise Linux DesktopFedora Core+13 moreApr 16, 2026 Dec 31, 2004 N/A· v4 N/A· v3 5.1 MEDIUM· v2 Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817. |
The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which allows local users to mlock more memory than...Show more |
9Apple KdeLibtiff+6 more13Enterprise Linux Enterprise Linux DesktopFedora Core+10 moreApr 16, 2026 Dec 23, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files. |
3Linux RedhatTrustix4Enterprise Linux Enterprise Linux DesktopLinux Kernel+1 moreApr 16, 2026 Dec 23, 2004 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Certain USB drivers in the Linux 2.4 kernel use the copy_to_user function on uninitialized structures, which could allow local users to obtain sensitive information by reading memory that was not cleared from previous us...Show more |
7Altlinux ConectivaDebian+4 more9Alt Linux Debian LinuxEnterprise Linux+6 moreApr 16, 2026 Dec 15, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and (2) do not properly restrict access to certain Java classes from the Java applet, which allows...Show more |
7Altlinux ConectivaDebian+4 more9Alt Linux Debian LinuxEnterprise Linux+6 moreApr 16, 2026 Dec 15, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed SMB packet. |
7Altlinux ConectivaDebian+4 more9Alt Linux Debian LinuxEnterprise Linux+6 moreApr 16, 2026 Dec 15, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial of service (application crash). |
4Ethereal Group GentooMandrakesoft+1 more5Enterprise Linux EtherealLinux+2 moreApr 16, 2026 Dec 6, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The SNMP dissector in Ethereal 0.8.15 through 0.10.4 allows remote attackers to cause a denial of service (process crash) via a (1) malformed or (2) missing community string, which causes an out-of-bounds read. |
4Ethereal Group GentooMandrakesoft+1 more5Enterprise Linux EtherealLinux+2 moreApr 16, 2026 Dec 6, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The SMB SID snooping capability in Ethereal 0.9.15 to 0.10.4 allows remote attackers to cause a denial of service (process crash) via a handle without a policy name, which causes a null dereference. |
4Ethereal Group GentooMandrakesoft+1 more5Enterprise Linux EtherealLinux+2 moreApr 16, 2026 Dec 6, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The iSNS dissector for Ethereal 0.10.3 through 0.10.4 allows remote attackers to cause a denial of service (process abort) via an integer overflow. |
3Ipsec Tools KameRedhat4Enterprise Linux Enterprise Linux DesktopIpsec Tools+1 moreApr 16, 2026 Dec 6, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication. |
7Conectiva GentooLinux+4 more9Enterprise Linux LinuxLinux+6 moreApr 16, 2026 Dec 6, 2004 N/A· v4 N/A· v3 2.1 LOW· v2 Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4. |