|
272591
|
- |
|
net-snmp
|
net-snmp
|
Integer overflow in the netsnmp_create_subtree_cache function in agent/snmp_agent.c in net-snmp 5.4 before 5.4.2.1, 5.3 before 5.3.2.3, and 5.2 before 5.2.5.1 allows remote attackers to cause a denia…
|
CWE-20
Improper Input Validation
|
CVE-2008-4309
|
2023-11-7 11:02 |
2008-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272592
|
- |
|
videolan
|
vlc_media_player
|
Multiple integer overflows in ty.c in the TY demux plugin (aka the TiVo demuxer) in VideoLAN VLC media player, probably 0.9.4, might allow remote attackers to execute arbitrary code via a crafted .ty…
|
CWE-189
Numeric Errors
|
CVE-2008-4686
|
2023-11-7 11:02 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272593
|
- |
|
videolan
|
vlc_media_player
|
Stack-based buffer overflow in the parse_master function in the Ty demux plugin (modules/demux/ty.c) in VLC Media Player 0.9.0 through 0.9.4 allows remote attackers to execute arbitrary code via a Ti…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4654
|
2023-11-7 11:02 |
2008-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272594
|
- |
|
linux
|
linux_kernel
|
The Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.27 does not properly handle a protocol violation in which a parameter has an invalid length, which allows…
|
CWE-20 NVD-CWE-noinfo
Improper Input Validation
|
CVE-2008-4618
|
2023-11-7 11:02 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272595
|
- |
|
linux
|
linux_kernel
|
The do_splice_from function in fs/splice.c in the Linux kernel before 2.6.27 does not reject file descriptors that have the O_APPEND flag set, which allows local users to bypass append mode and make …
|
CWE-264 NVD-CWE-noinfo
Permissions, Privileges, and Access Controls
|
CVE-2008-4554
|
2023-11-7 11:02 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272596
|
- |
|
phorum
|
phorum
|
Cross-site scripting (XSS) vulnerability in BBcode API module in Phorum 5.2.8 allows remote attackers to inject arbitrary web script or HTML via nested BBcode image tags.
|
CWE-79
Cross-site Scripting
|
CVE-2008-4513
|
2023-11-7 11:02 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272597
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-4409. Reason: This candidate is a duplicate of CVE-2008-4409. Notes: All CVE users should reference CVE-2008-4409 instead of…
|
-
|
CVE-2008-4422
|
2023-11-7 11:02 |
2008-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272598
|
- |
|
linux
|
linux_kernel
|
The sctp_auth_ep_set_hmacs function in net/sctp/auth.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.26.4, when the SCTP-AUTH extension is enabled, …
|
CWE-200
Information Exposure
|
CVE-2008-4445
|
2023-11-7 11:02 |
2008-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272599
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-3699. Reason: This candidate is a duplicate of CVE-2008-3699. Notes: All CVE users should reference CVE-2008-3699 instead of…
|
-
|
CVE-2008-4430
|
2023-11-7 11:02 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272600
|
- |
|
linux
|
linux_kernel
|
The vmi_write_ldt_entry function in arch/x86/kernel/vmi_32.c in the Virtual Machine Interface (VMI) in the Linux kernel 2.6.26.5 invokes write_idt_entry where write_ldt_entry was intended, which allo…
|
CWE-20 NVD-CWE-noinfo
Improper Input Validation
|
CVE-2008-4410
|
2023-11-7 11:02 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|