Skip to main content

Severity archive

Low severity CVEs

Low

17,964 low severity CVEs — 43,431 Critical, 125,012 High, 163,480 Medium, 17,964 Low, 2,018 Unrated across the current result set.

CVE-2004-1016

Published Jan 10, 2005

The scm_send function in the scm layer for Linux kernel 2.4.x up to 2.4.28, and 2.6.x up to 2.6.9, allows local users to cause a denial of service (system hang) via crafted auxili…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1058

Published Jan 10, 2005

Race condition in Linux kernel 2.6 allows local users to read the environment variables of another process that is still spawning via /proc/.../cmdline.

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1066

Published Jan 10, 2005

The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 through 5.3, and (2) linprocfs on FreeBSD 5.x through 5.3, do not properly validate a process argument vector, which allows lo…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1069

Published Jan 10, 2005

Race condition in SELinux 2.6.x through 2.6.9 allows local users to cause a denial of service (kernel crash) via SOCK_SEQPACKET unix domain sockets, which are not properly handled…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1107

Published Jan 10, 2005

dispatch-conf in Portage 2.0.51-r2 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1108

Published Jan 10, 2005

qpkg in Gentoolkit 0.2.0_pre10 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary directory.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1110

Published Jan 10, 2005

The mtink status monitor before 1.0.5 for Epson printers allows local users to overwrite arbitrary files via a symlink attack on the epson temporary file.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1190

Published Jan 10, 2005

SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1191

Published Jan 10, 2005

Race condition in SuSE Linux 8.1 through 9.2, when run on SMP systems that have more than 4GB of memory, could allow local users to read unauthorized memory from "foreign memory p…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1204

Published Jan 10, 2005

FluxBox 0.9.10 and earlier versions allows local users to cause a denial of service (application crash) by calling Xman with a long -title value, possibly triggering a buffer over…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1268

Published Jan 10, 2005

lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1270

Published Jan 10, 2005

lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file i…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1276

Published Jan 10, 2005

IglooFTP 0.6.1, when recursively uploading a directory, allows local users to overwrite the files that are being uploaded by creating temporary files with names generated by the t…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1295

Published Jan 10, 2005

The slip_down function in slip.c for the uml_net program in uml-utilities 20030903, when uml_net is installed setuid root, does not verify whether the calling user has sufficient…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0325

Published Dec 31, 2004

TYPSoft FTP Server 1.10 allows remote authenticated users to cause a denial of service (CPU consumption) via "//../" arguments to (1) mkd, (2) xmkd, (3) dele, (4) size, (5) retr,…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0462

Published Dec 31, 2004

The built-in web servers for multiple networking devices do not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to send those co…

CVSS 2.1 · Low

CVE-2004-0491

Published Dec 31, 2004

The linux-2.4.21-mlock.patch in Red Hat Enterprise Linux 3 does not properly maintain the mlock page count when one process unlocks pages that belong to another process, which all…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0813

Published Dec 31, 2004

Unknown vulnerability in the SG_IO functionality in ide-cd allows local users to bypass read-only access and perform unauthorized write and erase operations.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 17,126-17,150 of 17,964 CVEsPage 686 of 719