Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2005-06-29 CVE-2005-2056 Quantum Decompressor Denial Of Service vulnerability in Clam Anti-Virus Clamav 0.85/0.85.1/0.86
The Quantum archive decompressor in Clam AntiVirus (ClamAV) before 0.86.1 allows remote attackers to cause a denial of service (application crash) via a crafted Quantum archive.
network
high complexity
clam-anti-virus
2.6
2005-06-29 CVE-2005-0201 Local Privilege Escalation vulnerability in D-BUS Session Bus
D-BUS (dbus) before 0.22 does not properly restrict access to a socket, if the socket address is known, which allows local users to listen or send arbitrary messages on another user's per-user session bus via that socket.
local
low complexity
d-bus
2.1
2005-06-28 CVE-2005-1759 Unspecified vulnerability in Shtool
Race condition in shtool 2.0.1 and earlier allows local users to modify or create arbitrary files via a symlink attack on temporary files after they have been created, a different vulnerability than CVE-2005-1751.
local
high complexity
shtool
1.2
2005-06-20 CVE-2005-1993 Local Race Condition vulnerability in Todd Miller Sudo
Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack.
local
high complexity
todd-miller
3.7
2005-06-16 CVE-2005-2032 Arbitrary Local File Overwrite vulnerability in Sun LPAdmin
Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.
local
low complexity
sun
2.1
2005-06-16 CVE-2005-1720 Unspecified vulnerability in Apple AFP Server
AFP Server for Mac OS X 10.4.1, when using an ACL enabled volume, does not properly remove an ACL when a file is copied to a directory that does not use ACLs, which will override the POSIX file permissions for that ACL.
local
low complexity
apple
2.1
2005-06-16 CVE-2005-1265 Local Denial Of Service vulnerability in Linux Kernel 2.6.10
The mmap function in the Linux Kernel 2.6.10 can be used to create memory maps with a start address beyond the end address, which allows local users to cause a denial of service (kernel crash).
local
low complexity
linux
2.1
2005-06-14 CVE-2005-1937 Unspecified vulnerability in Mozilla Firefox and Mozilla
A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that was originally identified and addressed by CVE-2004-0718.
network
high complexity
mozilla
2.6
2005-06-09 CVE-2005-1944 Local Security vulnerability in Xmysqladmin 1.0
xmysqladmin 1.0 and earlier allows local users to delete arbitrary files via a symlink attack on a database backup file in /tmp.
local
low complexity
xmysqladmin
2.1
2005-06-09 CVE-2005-1902 Directory Traversal vulnerability in E-Post Corporation Spa-Pro Mail Atsolomon 4.00
Directory traversal vulnerability in the IMAP service for SPA-PRO Mail @Solomon 4.00 allows remote authenticated users to read other users' mail and perform operations on arbitrary directories via ..
local
low complexity
e-post-corporation
3.6