Vulnerabilities > Mandrakesoft > Mandrake Linux Corporate Server > 3.0

DATE CVE VULNERABILITY TITLE RISK
2005-04-14 CVE-2005-0020 Local Buffer Overflow vulnerability in PlayMidi
Buffer overflow in playmidi before 2.4 allows local users to execute arbitrary code.
local
low complexity
playmidi mandrakesoft
7.2
2005-04-14 CVE-2004-1235 Local Privilege Escalation vulnerability in Linux kernel Uselib()
Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.
6.2
2005-03-14 CVE-2005-0473 Remote Denial of Service vulnerability in Gaim
The HTML parsing functions in Gaim before 1.1.3 allow remote attackers to cause a denial of service (application crash) via malformed HTML that causes "an invalid memory access," a different vulnerability than CVE-2005-0208.
network
low complexity
rob-flynn mandrakesoft redhat
5.0
2005-03-14 CVE-2005-0472 Remote Denial of Service vulnerability in Gaim
Gaim before 1.1.3 allows remote attackers to cause a denial of service (infinite loop) via malformed SNAC packets from (1) AIM or (2) ICQ.
network
low complexity
rob-flynn mandrakesoft redhat
5.0
2005-03-02 CVE-2005-0605 Integer Overflow vulnerability in libXPM Bitmap_unit
scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.
7.5
2004-12-21 CVE-2004-1307 Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow. 7.5