Mandrakesoft
mandrakesoft
139 CVEs • 7 products
Products (7)
Click to collapseToggle
Products (7)
Click to collapse
CVEs (139)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
8Altlinux LesstifMandrakesoft+5 more11Alt Linux Enterprise LinuxEnterprise Linux Desktop+8 moreApr 16, 2026 Mar 2, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow. |
5Debian MandrakesoftTodd Miller+2 more7Debian Linux Mandrake LinuxMandrake Linux Corporate Server+4 moreApr 16, 2026 Mar 1, 2005 N/A· v4 N/A· v3 7.2 HIGH· v2 sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without usin...Show more |
4Gentoo MandrakesoftUbuntu+1 more5Linux Mandrake LinuxMandrake Linux Corporate Server+2 moreApr 16, 2026 Mar 1, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The CGI module in Ruby 1.6 before 1.6.8, and 1.8 before 1.8.2, allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a certain HTTP request. |
uim before 0.4.5.1 trusts certain environment variables when libUIM is used in setuid or setgid applications, which allows local users to gain privileges. |
4Mandrakesoft PostgresqlRedhat+1 more6Enterprise Linux Enterprise Linux DesktopMandrake Linux+3 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files. |
3Gentoo MandrakesoftOpenssl5Linux Mandrake LinuxMandrake Linux Corporate Server+2 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 The der_chop script in the openssl package in Trustix Secure Linux 1.5 through 2.1 and other operating systems allows local users to overwrite files via a symlink attack on temporary files. |
3Mandrakesoft NetatalkRedhat4Fedora Core Mandrake LinuxMandrake Linux Corporate Server+1 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 The netatalk package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files. |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Feb 9, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file f...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target s...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-An...Show more |
11Archive Zip BroadcomCa+8 more23Antivirus Engine Archive ZipBrightstor Arcserve Backup+20 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via a compressed file with both local and gl...Show more |
9Apple KdeLibtiff+6 more13Enterprise Linux Enterprise Linux DesktopFedora Core+10 moreApr 16, 2026 Jan 27, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls. |
3Mandrakesoft MplayerXine4Mandrake Linux MplayerXine+1 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 10.0 HIGH· v2 The pnm_get_chunk function in xine 0.99.2 and earlier, and other packages such as MPlayer that use the same code, does not properly verify that the chunk size is less than the PREAMBLE_SIZE, which causes a read operation...Show more |
3Mandrakesoft MplayerXine4Mandrake Linux MplayerXine+1 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 10.0 HIGH· v2 Heap-based buffer overflow in the pnm_get_chunk function for xine 0.99.2, and other packages such as MPlayer that use the same code, allows remote attackers to execute arbitrary code via long PNA_TAG values, a different...Show more |
3Kde MandrakesoftRedhat3Fedora Core KdeMandrake LinuxApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 2.1 LOW· v2 KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which m...Show more |
3Kde MandrakesoftRedhat3Fedora Core KonquerorMandrake LinuxApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Konqueror 3.x up to 3.2.2-6, and possibly other versions, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window or tab whose name is known but resides in a differe...Show more |
3Mandrakesoft Roaring PenguinSuse4Mandrake Linux Mandrake Linux Corporate ServerMimedefang+1 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 MIMEDefang in MIME-tools 5.414 allows remote attackers to bypass virus scanning capabilities via an e-mail attachment with a virus that contains an empty boundary string in the Content-Type header. |
10Broadcom CaEset Software+7 more22Antivirus Engine Brightstor Arcserve BackupEtrust Antivirus+19 moreApr 16, 2026 Jan 10, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, whic...Show more |