Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2004-08-06 CVE-2004-0658 Unspecified vulnerability in Linux Kernel
Integer overflow in the hpsb_alloc_packet function (incorrectly reported as alloc_hpsb_packet) in IEEE 1394 (Firewire) driver 2.4 and 2.6 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via the functions (1) raw1394_write, (2) state_connected, (3) handle_remote_request, or (4) hpsb_make_writebpacket.
local
low complexity
linux
7.2
2004-08-06 CVE-2004-0655 Symbolic Link vulnerability in Esearch eupdatedb
eupdatedb in esearch 0.6.1 and earlier allows local users to create arbitrary files via a symlink attack on the esearchdb.py.tmp temporary file.
local
low complexity
esearch
7.2
2004-08-06 CVE-2004-0652 Local Password Disclosure vulnerability in BEA Weblogic Server 7.0/7.0.0.1/8.1
BEA WebLogic Server and WebLogic Express 7.0 through 7.0 Service Pack 4, and 8.1 through 8.1 Service Pack 2, allows attackers to obtain the username and password for booting the server by directly accessing certain internal methods.
local
low complexity
bea
7.2
2004-08-06 CVE-2004-0579 Format string vulnerability in super before 3.23 allows local users to execute arbitrary code as root.
local
low complexity
william-deich debian
7.2
2004-08-06 CVE-2004-0550 Remote Security vulnerability in Realnetworks Realplayer 10.0
Buffer overflow in Real Networks RealPlayer 10 allows remote attackers to execute arbitrary code via a URL with a large number of "." (period) characters.
network
low complexity
realnetworks
7.5
2004-08-06 CVE-2004-0548 Stack Buffer Overflow vulnerability in GNU Aspell
Multiple stack-based buffer overflows in the word-list-compress functionality in compress.c for Aspell allow local users to execute arbitrary code via a long entry in the wordlist that is not properly handled when using the (1) "c" compress option or (2) "d" decompress option.
local
low complexity
gnu gentoo
7.2
2004-08-06 CVE-2004-0545 LVM Utilities Symbolic Link vulnerability in IBM AIX 5.1/5.2
LVM for AIX 5.1 and 5.2 allows local users to overwrite arbitrary files via a symlink attack.
local
low complexity
ibm
7.2
2004-08-06 CVE-2004-0544 Buffer Overflow vulnerability in IBM AIX 4.3.3/5.1/5.2
Multiple buffer overflows in LVM for AIX 5.1 and 5.2 allow local users to gain privileges via the (1) putlvcb or (2) getlvcb commands.
local
low complexity
ibm
7.2
2004-08-06 CVE-2004-0538 Unspecified vulnerability in Apple mac OS X and mac OS X Server
LaunchServices in Mac OS X 10.3.4 and 10.2.8 automatically registers and executes new applications, which could allow attackers to execute arbitrary code without warning the user.
network
low complexity
apple
7.5
2004-08-06 CVE-2004-0536 Unspecified vulnerability in Tripwire
Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.
local
low complexity
tripwire
7.2