Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2004-08-10 CVE-2004-1713 Unspecified vulnerability in HP Process Resource Manager and Workload Manager
Unknown vulnerability in HP Process Resource Manager (PRM) C.02.01[.01] and earlier, as used by HP-UX Workload Manager (WLM), allows local users to corrupt data files.
local
low complexity
hp
2.1
2004-08-06 CVE-2004-0654 Denial Of Service vulnerability in Sun Solaris Basic Security Module Auditing
Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic).
local
low complexity
sun
2.1
2004-08-06 CVE-2004-0653 Unspecified vulnerability in SUN Solaris 9.0
Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user's passwords by reading log files.
local
low complexity
sun
2.1
2004-08-06 CVE-2004-0587 Denial of Service vulnerability in Linux Kernel HbaApiNode Improper File Permissions
Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service.
local
low complexity
mandrakesoft redhat suse
2.1
2004-08-06 CVE-2004-0554 Local Denial Of Service vulnerability in Linux Kernel Floating Point Exception Handler
Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and frstor instructions, as originally demonstrated using a "crash.c" program.
local
low complexity
avaya gentoo linux redhat suse conectiva
2.1
2004-08-06 CVE-2004-0535 The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. 2.1
2004-08-06 CVE-2004-0137 Denial Of Service vulnerability in SGI IRIX Undisclosed Init
Unknown vulnerability in init for IRIX 6.5.20 through 6.5.24 allows local users to cause a denial of service (system panic) as a result of "page invalidation issues."
local
low complexity
sgi
2.1
2004-08-06 CVE-2004-0136 Local Denial Of Service vulnerability in SGI IRIX Undisclosed MapElf32Exec
The mapelf32exec function call in IRIX 6.5.20 through 6.5.24 allows local users to cause a denial of service (system crash) via a "corrupted binary."
local
low complexity
sgi
2.1
2004-08-04 CVE-2004-1709 Local Security vulnerability in Rainbow Ikey2032 Usb Token
Datakey Rainbow iKey2032 USB token, when using the CIP client package, does not encrypt communications between the token and the driver, which could allow local users to obtain the PINs of other users.
local
low complexity
datakey
2.1
2004-07-27 CVE-2004-0706 Unspecified vulnerability in Mozilla Bugzilla
Bugzilla 2.17.5 through 2.17.7 embeds the password in an image URL, which could allow local users to view the password in the web server log files.
local
low complexity
mozilla
2.1