Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2005-05-18 CVE-2005-0757 Denial Of Service vulnerability in Linux Kernel 64 Bit EXT3 Filesystem Extended Attribute
The xattr file system code, as backported in Red Hat Enterprise Linux 3 on 64-bit systems, does not properly handle certain offsets, which allows local users to cause a denial of service (system crash) via certain actions on an ext3 file system with extended attributes enabled.
local
low complexity
redhat
2.1
2005-05-18 CVE-2005-0515 Local Insecure File Creation vulnerability in Webroot Software MY Firewall Plus 5.0
Smc.exe in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before launching the Log Viewer export functionality, which allows local users to corrupt arbitrary files by saving log files.
local
low complexity
webroot-software
2.1
2005-05-17 CVE-2005-1641 Unspecified vulnerability in the Ignition Project Ignitionserver
mod_channel in The Ignition Project ignitionServer 0.3.0 to 0.3.6, and possibly earlier versions, does not allow protected operators to access channels that have been locked out by a key, which allows IRC users to cause a denial of service.
local
low complexity
the-ignition-project
2.1
2005-05-17 CVE-2005-1627 Local Security vulnerability in Viewglob
Unknown vulnerability in Viewglob before 2.0.1, related to "a potential security issue with the Viewglob display and ssh X forwarding," has unknown impact.
local
low complexity
viewglob
2.1
2005-05-16 CVE-2005-1617 Information Disclosure vulnerability in Webcam Lite
Willings WebCam and WebCam Lite 2.8 and earlier stores the password in memory in plaintext, which allows local users to gain sensitive information.
local
low complexity
willings
2.1
2005-05-13 CVE-2005-1578 Local Security vulnerability in Guidance Software Encase 4.18A
EnCase Forensic Edition 4.18a does not support Device Configuration Overlays (DCO), which allows attackers to hide information without detection.
local
low complexity
guidance-software
2.1
2005-05-12 CVE-2005-1576 Remote Security vulnerability in Mozilla Firefox 0.10.1/1.0
The file download dialog in Mozilla Firefox 0.10.1 and 1.0 for Windows uses the Content-Type HTTP header to determine the file type, but saves the original file extension when "Save to Disk" is selected, which allows remote attackers to hide the real file types of downloaded files.
network
high complexity
mozilla
2.6
2005-05-12 CVE-2005-0973 Unspecified vulnerability in Apple mac OS X
Unknown vulnerability in the setsockopt system call in Mac OS X 10.3.9 and earlier allows local users to cause a denial of service (memory exhaustion) via crafted arguments.
local
low complexity
apple
2.1
2005-05-11 CVE-2005-1518 Unspecified vulnerability in SUN Solaris and Sunos
Unknown vulnerability in Solaris 7 through 9, when using Federated Naming Services (FNS), autofs, and FNS X.500 configuration, allows local users to cause a denial of service (automountd crash) when "accessing" /xfn/_x500.
local
low complexity
sun
2.1
2005-05-11 CVE-2005-1490 Local Security vulnerability in Mail Server
Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2, when the mailbox.dat file does not exist, allows remote authenticated users to determine if a file exists via the folder parameter to attachment.html.
local
low complexity
icewarp merak
2.1