Vulnerabilities > Redhat > Fedora Core > core.1.0

DATE CVE VULNERABILITY TITLE RISK
2004-08-06 CVE-2004-0587 Denial of Service vulnerability in Linux Kernel HbaApiNode Improper File Permissions
Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service.
local
low complexity
mandrakesoft redhat suse
2.1
2004-08-06 CVE-2004-0557 Buffer Overflow vulnerability in SoX WAV File
Multiple buffer overflows in the st_wavstartread function in wav.c for Sound eXchange (SoX) 12.17.2 through 12.17.4 allow remote attackers to execute arbitrary code via certain WAV file header fields.
network
low complexity
sox conectiva gentoo redhat
critical
10.0
2004-07-27 CVE-2004-0595 The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restricting input to allowed tags, which allows dangerous tags to be processed by web browsers such as Internet Explorer and Safari, which ignore null characters and facilitate the exploitation of cross-site scripting (XSS) vulnerabilities. 6.8