Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-01-10 CVE-2004-1304 Buffer Overflow vulnerability in File ELF Header
Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF file.
network
low complexity
file gentoo trustix
critical
10.0
2005-01-10 CVE-2004-1303 Remote Security vulnerability in Yanf 0.4
Buffer overflow in the get function in get.c for Yanf 0.4 allows remote malicious web servers to execute arbitrary code via crafted HTTP responses.
network
low complexity
yanf
critical
10.0
2005-01-10 CVE-2004-1302 Unspecified vulnerability in Yamt 0.5
The id3tag_sort function in id3tag.c for YAMT 0.5 allows remote attackers to execute arbitrary commands via an MP3 file with double quotes in the Artist tag.
network
low complexity
yamt
critical
10.0
2005-01-10 CVE-2004-1301 Remote Security vulnerability in Xlreader 0.9
Buffer overflow in the book_format_sql function in format.c for xlreader 0.9.0 allows remote attackers to execute arbitrary code via a crafted Excel (XLS) file.
network
low complexity
xlreader
critical
10.0
2005-01-10 CVE-2004-1300 Unspecified vulnerability in Xine Xine-Lib 1Rc7
Buffer overflow in the open_aiff_file function in demux_aiff.c for xine-lib (libxine) 1-rc7 allows remote attackers to execute arbitrary code via a crafted AIFF file.
network
low complexity
xine
critical
10.0
2005-01-10 CVE-2004-1299 Unspecified vulnerability in Vilistextum 2.6.6
Buffer overflow in the get_attr function in html.c for vilistextum 2.6.6 allows remote attackers to execute arbitrary code via a crafted web page.
network
low complexity
vilistextum
critical
10.0
2005-01-10 CVE-2004-1298 Remote Security vulnerability in Michael Kohn Vb2C 0.02
Buffer overflow in the parse function in vb2c.c for vb2c 0.02 allows remote attackers to execute arbitrary code via a crafted FRM file.
network
low complexity
michael-kohn
critical
10.0
2005-01-10 CVE-2004-1297 Remote Security vulnerability in Zack Smith Unrtf 0.19.3
Buffer overflow in the process_font_table function in convert.c for unrtf 0.19.3 allows remote attackers to execute arbitrary code via a crafted RTF file.
network
low complexity
zack-smith
critical
10.0
2005-01-10 CVE-2004-1295 Denial-Of-Service vulnerability in Uml-Utilities 20030903
The slip_down function in slip.c for the uml_net program in uml-utilities 20030903, when uml_net is installed setuid root, does not verify whether the calling user has sufficient permission to disable an interface, which allows local users to cause a denial of service (network service disabled).
local
low complexity
uml-utilities
2.1
2005-01-10 CVE-2004-1294 Unspecified vulnerability in Luke Mewburn Tnftp 20030825
The mget function in cmds.c for tnftp 20030825 allows remote FTP servers to overwrite arbitrary files via FTP responses containing file names with / (slash) characters.
network
low complexity
luke-mewburn
5.0