Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-31 CVE-2005-1774 Local Security vulnerability in Davfs2 0.2.3
WEB-DAV Linux File System (davfs2) 0.2.3 does not properly enforce Unix permissions, which allows local users to write arbitrary files on a davfs2 mounted filesystem.
local
low complexity
davfs2
2.1
2005-05-31 CVE-2005-1773 Multiple Unspecified vulnerability in L-Soft Listserv 1.8D/1.8E/14.3
Multiple unknown vulnerabilities in L-Soft LISTSERV 14.3, 1.8e, and 1.8d allow remote attackers to execute arbitrary code or cause a denial of service.
network
low complexity
lsoft
7.5
2005-05-31 CVE-2005-1772 Denial-Of-Service vulnerability in Terminator 3 War Of The Machines
Buffer overflow in the client cd-key hash in Terminator 3: War of the Machines 1.16 and earlier allows remote attackers to cause a denial of service (application crash) via a long client cd-key hash value, a different vulnerability than CVE-2005-1556.
network
low complexity
atari
5.0
2005-05-31 CVE-2005-1771 Unknown vulnerability in HP-UX trusted systems B.11.00 through B.11.23 allows remote attackers to gain unauthorized access, possibly involving remshd and/or telnet -t.
network
low complexity
hp
7.5
2005-05-31 CVE-2005-1770 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Alwil Avast Antivirus
Buffer overflow in the Aavmker4 device driver in Avast! Antivirus 4.6 and possibly other versions allows local users to cause a denial of service (system crash) and possibly execute arbitrary code via certain signals combined with crafted input.
local
low complexity
alwil CWE-119
7.2
2005-05-31 CVE-2005-1765 Local Denial of Service vulnerability in Linux Kernel 2.6.10/2.6.8.1
syscall in the Linux kernel 2.6.8.1 and 2.6.10 for the AMD64 platform, when running in 32-bit compatibility mode, allows local users to cause a denial of service (kernel hang) via crafted arguments.
local
low complexity
linux
2.1
2005-05-31 CVE-2005-0356 Remote Denial Of Service vulnerability in Multiple Vendor TCP Timestamp PAWS
Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old.
5.0
2005-05-30 CVE-2005-1808 Denial-Of-Service vulnerability in Firefly Studios Stronghold 2 1.2
Firefly Studios Stronghold 2 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a packet with a large size value for the nickname, which causes a memory allocation failure and generates an exception.
network
low complexity
firefly-studios
5.0
2005-05-29 CVE-2005-1830 Denial-Of-Service vulnerability in Compuware Softice Driverstudio 3.1/3.2
The DbgMsg.sys driver in Compuware SoftICE DriverStudio 3.1 and 3.2 allows remote attackers to cause a denial of service (application crash) via an invalid Debug Message pointer.
network
low complexity
compuware
5.0
2005-05-29 CVE-2005-1804 Unspecified vulnerability in NET Portal Dynamic System NET Portal Dynamic System 5.0
Multiple SQL injection vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to execute arbitrary SQL commands via the (1) terme parameter in the glossaire module (glossaire.php) or (2) query parameter to links.php.
network
low complexity
net-portal-dynamic-system
7.5