Skip to main content

CWE archive

CWE-119 CVEs

Programmatic archive

14,044 CVEs tagged with CWE-1194,364 Critical, 6,208 High, 3,088 Medium, 384 Low, 0 Unrated.

CVE-2006-3251

Published Jun 27, 2006

Heap-based buffer overflow in the array_push function in hashcash.c for Hashcash before 1.21 might allow attackers to execute arbitrary code via crafted entries.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3199

Published Jun 23, 2006

Opera 9 allows remote attackers to cause a denial of service (crash) via an A tag with an href attribute with a URL containing a long hostname, which triggers an out-of-bounds ope…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3146

Published Jun 22, 2006

The TOSRFBD.SYS driver for Toshiba Bluetooth Stack 4.00.29 and earlier on Windows allows remote attackers to cause a denial of service (reboot) via a L2CAP echo request that trigg…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3086

Published Jun 19, 2006

Stack-based buffer overflow in the HrShellOpenWithMonikerDisplayName function in Microsoft Hyperlink Object Library (hlink.dll) allows remote attackers to cause a denial of servic…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2006-0025

Published Jun 13, 2006

Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large chunk size.

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2382

Published Jun 13, 2006

Heap-based buffer overflow in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to execute arbitrary code via crafted UTF-8 encoded HTML that resu…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2923

Published Jun 9, 2006

The iax_net_read function in the iaxclient open source library, as used in multiple products including (a) LoudHush 1.3.6, (b) IDE FISK 1.35 and earlier, (c) Kiax 0.8.5 and earlie…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-2898

Published Jun 7, 2006

The IAX2 channel driver (chan_iax2) for Asterisk 1.2.x before 1.2.9 and 1.0.x before 1.0.11 allows remote attackers to cause a denial of service (crash) and execute arbitrary code…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2788

Published Jun 2, 2006

Double free vulnerability in the getRawDER function for nsIX509Cert in Firefox allows remote attackers to cause a denial of service (hang) and possibly execute arbitrary code via…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2781

Published Jun 2, 2006

Double free vulnerability in nsVCard.cpp in Mozilla Thunderbird before 1.5.0.4 and SeaMonkey before 1.0.2 allows remote attackers to cause a denial of service (hang) and possibly…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-2439

Published Jun 1, 2006

Stack-based buffer overflow in ZipCentral 4.01 allows remote user-assisted attackers to execute arbitrary code via a ZIP archive containing a long filename.

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2656

Published May 30, 2006

Stack-based buffer overflow in the tiffsplit command in libtiff 3.8.2 and earlier might might allow attackers to execute arbitrary code via a long filename. NOTE: tiffsplit is no…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-1857

Published May 22, 2006

Buffer overflow in SCTP in Linux kernel before 2.6.16.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malformed HB-ACK ch…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2408

Published May 16, 2006

Multiple buffer overflows in Raydium before SVN revision 310 allow remote attackers to execute arbitrary code via a large packet when logged via (1) the raydium_log function in lo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2399

Published May 16, 2006

Stack-based buffer overflow in the ServerNetworking::incoming_client_data function in servnet.cpp in Outgun 1.0.3 bot 2 and earlier allows remote attackers to cause a denial of se…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2238

Published May 12, 2006

Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted BMP file that triggers the overflow in the ReadBMP functio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-1453

Published May 12, 2006

Stack-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file containing malformed fon…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1454

Published May 12, 2006

Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a crafted QuickDraw PICT image format file with malformed image data.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1460

Published May 12, 2006

Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime movie (.MOV), as demonstrated via a large size for…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1461

Published May 12, 2006

Multiple buffer overflows in Apple QuickTime before 7.1 allow remote attackers to execute arbitrary code via a crafted QuickTime Flash (SWF) file.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1463

Published May 12, 2006

Heap-based buffer overflow in Apple QuickTime before 7.1 allows remote attackers to execute arbitrary code via a H.264 (M4V) video format file with a certain modified size value.

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-2297

Published May 10, 2006

Heap-based buffer overflow in Microsoft Infotech Storage System Library (itss.dll) allows user-assisted attackers to execute arbitrary code via a crafted CHM / ITS file that trigg…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 13,776-13,800 of 14,044 CVEsPage 552 of 562