/
cyberknowledge
/
CVE
ОбзорДокументацияВойти
/
cyberknowledge
/
CVE
Код
Запросы
0
Задачи
Вики
Пакеты
0
Релизы
0
CI/CD
Аналитика
ДокументацияПоддержка
Политика конфиденциальностиПользовательское соглашениеПолитика использования «cookies»Согласие субъекта персональных данных
2026 ©
samples/gentoo_glsa.csv
359 строк62 KB

Zeros312

Rename sample/ to samples/; remove README from samples
30 июн 2026, 21:21
30 июн 2026, 21:2183c96cb
100 строк
200310-04
Apache: buffer overflows and a possible information disclosure
Multiple stack-based buffer overflows in mod_alias and mod_rewrite can allow execution of arbitrary code and cause a denial of service, and a bug in the way mod_cgid handles CGI redirect paths could result in CGI output going to the wrong client.
2003-10-31 00:00:00+03:00
2007-12-30 00:00:00+03:00
Multiple stack-based buffer overflows in mod_alias and mod_rewrite can allow execution of arbitrary code and cause a denial of service, and a bug in the way mod_cgid handles CGI redirect paths could result in CGI output going to the wrong client.
['www-servers/apache']
['32271', 'CAN-2003-0542', 'CAN-2003-0789']
8a71f891bedbc3451749c4d4c1c373555f13a391895dff8984b776da7f972106
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-01
kdebase: KDM vulnerabilities
A bug in KDM can allow privilege escalation with certain configurations of PAM modules.
2003-11-15 00:00:00+03:00
2003-11-15 00:00:00+03:00
A bug in KDM can allow privilege escalation with certain configurations of PAM modules.
['kde-base/kdebase']
['29406', 'CAN-2003-0690', 'CAN-2003-0692', 'KDE Security Advisory']
ce5b28254af6864014ab56d30a4e7c388e2279335c38756c65993e2d0738ec5b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-02
Opera: buffer overflows in 7.11 and 7.20
Buffer overflows exist in Opera 7.11 and 7.20 that can cause Opera to crash, and can potentially overwrite arbitrary bytes on the heap leading to a system compromise.
2003-11-19 00:00:00+03:00
2003-11-19 00:00:00+03:00
Buffer overflows exist in Opera 7.11 and 7.20 that can cause Opera to crash, and can potentially overwrite arbitrary bytes on the heap leading to a system compromise.
['www-client/opera']
['31775', '@stake Security Advisory', 'CAN-2003-0870']
47218002542a908706657369ab4cc2e0d8cffb3021c3cbf01233ad4ad04459d3
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-03
HylaFAX: Remote code exploit in hylafax
A format bug condition allows a remote attacjer to execute arbitrary code as the root user.
2003-11-10 00:00:00+03:00
2003-11-10 00:00:00+03:00
A format bug condition allows a remote attacjer to execute arbitrary code as the root user.
['net-misc/hylafax']
['33368', 'CAN-2003-0886', 'SuSE Security Announcment']
6fc70b6179a17102c9f8cb9515ca509278efe14236c7ddb50f782f09932b73d6
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-04
FreeRADIUS: heap exploit and NULL pointer dereference vulnerability
FreeRADIUS is vulnerable to a heap exploit and a NULL pointer dereference vulnerability.
2003-11-23 00:00:00+03:00
2003-11-23 00:00:00+03:00
FreeRADIUS is vulnerable to a heap exploit and a NULL pointer dereference vulnerability.
['net-dialup/freeradius']
['33989', 'SecurityTracker.com Security Alert']
ca2c5387d374677bb4a3111f50cf4b95633c902ea9786c7fc217936ae5332b6b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-05
Ethereal: security problems in ethereal 0.9.15
Ethereal is vulnerable to heap and buffer overflows in the GTP, ISAKMP, MEGACO, and SOCKS protocol dissectors.
2003-11-22 00:00:00+03:00
2003-11-22 00:00:00+03:00
Ethereal is vulnerable to heap and buffer overflows in the GTP, ISAKMP, MEGACO, and SOCKS protocol dissectors.
['net-analyzer/ethereal']
['32691', 'Ethereal Security Advisory']
da5f6f831573795400ee396a87b9e914d7b6a21ffebc128acde1dc076754e5f6
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-06
glibc: getgrouplist buffer overflow vulnerability
glibc contains a buffer overflow in the getgrouplist function.
2003-11-22 00:00:00+03:00
2003-11-22 00:00:00+03:00
glibc contains a buffer overflow in the getgrouplist function.
['sys-libs/glibc']
['33383', 'CAN-2003-0689']
b98418e047853d049a7c50d75511878be1ad260441bef5b5489031644abcc7bd
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-07
phpSysInfo: arbitrary code execution and directory traversal
phpSysInfo contains two vulnerabilities that can allow arbitrary code execution and local directory traversal.
2003-11-22 00:00:00+03:00
2007-12-30 00:00:00+03:00
phpSysInfo contains two vulnerabilities that can allow arbitrary code execution and local directory traversal.
['www-apps/phpsysinfo']
['26782', 'CAN-2003-0536']
40a329f1f0e3323cb2d53f479f72829fc109c35bdb91957444d5380d5b3bd517
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200311-08
Libnids: remote code execution vulnerability
Libnids contains a bug which could allow remote code execution.
2003-11-22 00:00:00+03:00
2003-11-22 00:00:00+03:00
Libnids contains a bug which could allow remote code execution.
['net-libs/libnids']
['32724', 'CAN-2003-0850']
28bf9255d42a598e5ba93ab78495504062cf811a5dfe6a40134a60715d8f25d8
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200312-03
rsync: exploitable heap overflow
rsync contains a heap overflow vulnerability that can be used to execute arbitrary code.
2003-12-04 00:00:00+03:00
2003-12-04 00:00:00+03:00
rsync contains a heap overflow vulnerability that can be used to execute arbitrary code.
['net-misc/rsync']
['CAN-2003-0962', 'GLSA-200312-01', 'GLSA-200312-02', 'Rsync Security Advisory']
4d0f0b50d1c43df4d2ba88763e700fc67dadde0cf697cf5f196a4737e9ab0d39
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200312-04
CVS: malformed module request vulnerability
A bug in cvs could allow attempts to create files and directories outside a repository.
2003-12-08 00:00:00+03:00
2003-12-08 00:00:00+03:00
A bug in cvs could allow attempts to create files and directories outside a repository.
['dev-util/cvs']
['35371', 'CAN-2003-0977']
d6a0aa8f5d083000b9a0b4c6d17234bf9f4e72a7039dcd74e35fb458ee0c1c2c
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200312-05
GnuPG: ElGamal signing keys compromised and format string vulnerability
A bug in GnuPG allows ElGamal signing keys to be compromised, and a format string bug in the gpgkeys_hkp utility may allow arbitrary code execution.
2003-12-12 00:00:00+03:00
2003-12-12 00:00:00+03:00
A bug in GnuPG allows ElGamal signing keys to be compromised, and a format string bug in the gpgkeys_hkp utility may allow arbitrary code execution.
['app-crypt/gnupg']
['34504', 'CAN-2003-0971', 'GnuPG Announcement', 'S-Quadra Advisory']
6acd5c757ff20bf31cb54b5819bb47c5394256fa0e36fe1a5fd6d36f46d935ef
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200312-06
XChat: malformed dcc send request denial of service
A bug in XChat could allow malformed dcc send requests to cause a denial of service.
2003-12-14 00:00:00+03:00
2003-12-14 00:00:00+03:00
A bug in XChat could allow malformed dcc send requests to cause a denial of service.
['net-irc/xchat']
['35623', 'XChat Announcement']
fb23506e070503c3637a79c835b3f5d2371ae976d4aedf5f59a85d87213c036c
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200312-07
Two buffer overflows in lftp
Two buffer overflow problems are found in lftp that, in case the user visits a malicious ftp server, could lead to malicious code being executed.
2003-12-13 00:00:00+03:00
2003-12-07 00:00:00+03:00
Two buffer overflow problems are found in lftp that, in case the user visits a malicious ftp server, could lead to malicious code being executed.
['net-ftp/lftp']
['35866', 'Initial report by Ulf Harnhammar']
ad5d7f798b18866b2d28de5d5582b34430b974b279bc2fd7672837e86d8b5fde
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200312-08
CVS: possible root compromise when using CVS pserver
A possible root compromise exists for CVS pservers.
2003-12-28 00:00:00+03:00
2003-12-28 00:00:00+03:00
A possible root compromise exists for CVS pservers.
['dev-util/cvs']
['36142']
d992e78dc0e57b3d4199bbccfd185a4c19a37360f874cc80fd2f166ddf9763ca
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
202008-10
Chromium, Google Chrome: Heap buffer overflow
A vulnerablity has been found in Chromium and Google Chrome that could allow a remote attacker to execute arbitrary code.
2020-08-25 00:00:00+03:00
2020-08-25 00:00:00+03:00
A vulnerablity has been found in Chromium and Google Chrome that could allow a remote attacker to execute arbitrary code.
['www-client/chromium', 'www-client/google-chrome']
['737942', 'CVE-2020-6556', 'Upstream advisory']
78c2a82eceb0e57130da365a9714d5b9f96ae533428f1d24bdc57b60b0af6014
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200401-01
Linux kernel do_mremap() local privilege escalation vulnerability
A critical security vulnerability has been found in recent Linux kernels which allows for local privelege escalation.
2004-01-08 00:00:00+03:00
2004-01-08 00:00:00+03:00
A critical security vulnerability has been found in recent Linux kernels which allows for local privelege escalation.
['sys-kernel/aa-sources', 'sys-kernel/alpha-sources', 'sys-kernel/arm-sources', 'sys-kernel/ck-sources', 'sys-kernel/compaq-sources', 'sys-kernel/development-sources', 'sys-kernel/gaming-sources', 'sys-kernel/gentoo-dev-sources', 'sys-kernel/gentoo-sources', 'sys-kernel/grsec-sources', 'sys-kernel/gs-sources', 'sys-kernel/hardened-sources', 'sys-kernel/hppa-sources', 'sys-kernel/ia64-sources', 'sys-kernel/mips-prepatch-sources', 'sys-kernel/mips-sources', 'sys-kernel/mm-sources', 'sys-kernel/openmosix-sources', 'sys-kernel/pac-sources', 'sys-kernel/pfeifer-sources', 'sys-kernel/planet-ccrma-sources', 'sys-kernel/ppc-development-sources', 'sys-kernel/ppc-sources', 'sys-kernel/ppc-sources-benh', 'sys-kernel/ppc-sources-crypto', 'sys-kernel/selinux-sources', 'sys-kernel/sparc-dev-sources', 'sys-kernel/sparc-sources', 'sys-kernel/usermode-sources', 'sys-kernel/vanilla-prepatch-sources', 'sys-kernel/vanilla-sources', 'sys-kernel/win4lin-sources', 'sys-kernel/wolk-sources', 'sys-kernel/xfs-sources']
['37292', 'Vulnerability']
3a16a1306520d1b43113f773cfb6deb68c0c5e57657de04d4f51b1c7f138a30b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200401-02
Honeyd remote detection vulnerability via a probe packet
Identification of Honeyd installations allows an adversary to launch attacks specifically against Honeyd. No remote root exploit is currently known.
2004-01-21 00:00:00+03:00
2004-01-21 00:00:00+03:00
Identification of Honeyd installations allows an adversary to launch attacks specifically against Honeyd. No remote root exploit is currently known.
['net-analyzer/honeyd']
['38934', 'Honeyd Security Advisory 2004-001']
6167d5fed7d71dc69961db91b1972a1e2736c727af85992ac3af0fc168a3d65d
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200401-03
Apache mod_python Denial of Service vulnerability
Apache's mod_python module could crash the httpd process if a specific, malformed query string was sent.
2004-01-27 00:00:00+03:00
2007-12-30 00:00:00+03:00
Apache's mod_python module could crash the httpd process if a specific, malformed query string was sent.
['www-apache/mod_python']
['39154', 'Mod_python 2.7.10 release announcement']
510a05667e18e37b171e3096129c86c40e0faaedae51970bf1f34a5662b1be63
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200401-04
GAIM 0.75 Remote overflows
Various overflows in the handling of AIM DirectIM packets was revealed in GAIM that could lead to a remote compromise of the IM client.
2004-01-26 00:00:00+03:00
2004-01-26 00:00:00+03:00
Various overflows in the handling of AIM DirectIM packets was revealed in GAIM that could lead to a remote compromise of the IM client.
['net-im/gaim']
['39470', 'Security advisory from Stefan Esser']
0ed57d0da6fdb55b4b206c15c156211ade870413d20f992ce68b95a6190c0b48
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-01
PHP setting leaks from .htaccess files on virtual hosts
If the server configuration "php.ini" file has "register_globals = on" and a request is made to one virtual host (which has "php_admin_flag register_globals off") and the next request is sent to the another virtual host (which does not have the setting) global variables may leak and may be used to exploit the site.
2004-02-07 00:00:00+03:00
2004-02-07 00:00:00+03:00
If the server configuration "php.ini" file has "register_globals = on" and a request is made to one virtual host (which has "php_admin_flag register_globals off") and the next request is sent to the another virtual host (which does not have the setting) global variables may leak and may be used to exploit the site.
['dev-php/mod_php']
['39952', 'Corresponding PHP bug']
25aa4950785cc42c74193d5181bcda5e19de256cd3b8808590b272d19d0fdd81
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-02
XFree86 Font Information File Buffer Overflow
Exploitation of a buffer overflow in the XFree86 Project Inc.'s XFree86 X Window System allows local attackers to gain root privileges.
2004-02-11 00:00:00+03:00
2004-02-11 00:00:00+03:00
Exploitation of a buffer overflow in the XFree86 Project Inc.'s XFree86 X Window System allows local attackers to gain root privileges.
['x11-base/xfree']
['CVE: CAN-2004-0083', 'Vulnerability:\n XFree86 Font Information File Buffer Overflow']
4edc8b02fe7d1efd96cab013a6bc3a33764f0b291821834ef97c04b88645f22a
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-03
Monkeyd Denial of Service vulnerability
A bug in get_real_string() function allows for a Denial of Service attack to be launched against the webserver.
2004-02-11 00:00:00+03:00
2004-02-11 00:00:00+03:00
A bug in get_real_string() function allows for a Denial of Service attack to be launched against the webserver.
['www-servers/monkeyd']
['41156', 'CVS Patch']
7cb75eeb0e1b671dbb18970cc6486f80a80cd33550ec1f2b964c79d62c80203b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-04
Gallery 1.4.1 and below remote exploit vulnerability
The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can allow a remote exploit of your webserver.
2004-02-11 00:00:00+03:00
2004-02-11 00:00:00+03:00
The Gallery developers have discovered a potentially serious security flaw in Gallery 1.3.1, 1.3.2, 1.3.3, 1.4 and 1.4.1 which can allow a remote exploit of your webserver.
['www-apps/gallery']
['39638']
a6e874e2712823fd4199b2141ab4221fee351a4f4b987d6246ca60f69167bed7
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-05
phpMyAdmin < 2.5.6-rc1: possible attack against export.php
A vulnerability in phpMyAdmin which was not properly verifying user generated input could lead to a directory traversal attack.
2004-02-17 00:00:00+03:00
2004-02-17 00:00:00+03:00
A vulnerability in phpMyAdmin which was not properly verifying user generated input could lead to a directory traversal attack.
['dev-db/phpmyadmin']
['40268', 'CVS Patch']
ae0cff51cdc6c9fe80fbf430d63a917b066ecfa5b2a388bac164896781851c99
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-06
Updated kernel packages fix the AMD64 ptrace vulnerability
A vulnerability has been discovered by in the ptrace emulation code for AMD64 platforms when eflags are processed, allowing a local user to obtain elevated priveleges.
2004-02-17 00:00:00+03:00
2004-02-17 00:00:00+03:00
A vulnerability has been discovered by in the ptrace emulation code for AMD64 platforms when eflags are processed, allowing a local user to obtain elevated priveleges.
['sys-kernel/ck-sources', 'sys-kernel/development-sources', 'sys-kernel/gentoo-dev-sources', 'sys-kernel/gentoo-sources', 'sys-kernel/gentoo-test-sources', 'sys-kernel/gs-sources', 'sys-kernel/vanilla-prepatch-sources', 'sys-kernel/vanilla-sources']
ec9ceafd0e1af21454e00979874e2d1f0b18b5575c1e246fd857fa95818cf9c0
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200402-07
Clam Antivirus DoS vulnerability
Oliver Eikemeier has reported a vulnerability in Clam AV, which can be exploited by a malformed uuencoded message causing a denial of service for programs that rely on the clamav daemon, such as SMTP daemons.
2004-02-17 00:00:00+03:00
2004-02-17 00:00:00+03:00
Oliver Eikemeier has reported a vulnerability in Clam AV, which can be exploited by a malformed uuencoded message causing a denial of service for programs that rely on the clamav daemon, such as SMTP daemons.
['app-antivirus/clamav']
['41248']
e254c6bfc90ba16035b752d12555792aa3372f41a19c7aa8370f2fddbaab1246
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-01
Libxml2 URI Parsing Buffer Overflow Vulnerabilities
A buffer overflow has been discovered in libxml2 versions prior to 2.6.6 which may be exploited by an attacker allowing the execution of arbitrary code.
2004-03-05 00:00:00+03:00
2004-03-05 00:00:00+03:00
A buffer overflow has been discovered in libxml2 versions prior to 2.6.6 which may be exploited by an attacker allowing the execution of arbitrary code.
['dev-libs/libxml2']
['42735', 'CVE 2004-0110']
8864ae2fa5da4cbbeae95a6d6b8d6838c91f4c7f8a3e9d16cdae135b478dec69
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-02
Linux kernel do_mremap local privilege escalation vulnerability
A critical security vulnerability has been found in recent Linux kernels by Paul Starzetz of iSEC Security Research which allows for local privilege escalations.
2004-03-05 00:00:00+03:00
2006-05-22 00:00:00+04:00
A critical security vulnerability has been found in recent Linux kernels by Paul Starzetz of iSEC Security Research which allows for local privilege escalations.
['sys-kernel/aa-sources', 'sys-kernel/alpha-sources', 'sys-kernel/ck-sources', 'sys-kernel/compaq-sources', 'sys-kernel/development-sources', 'sys-kernel/gaming-sources', 'sys-kernel/gentoo-dev-sources', 'sys-kernel/gentoo-sources', 'sys-kernel/grsec-sources', 'sys-kernel/gs-sources', 'sys-kernel/hardened-sources', 'sys-kernel/hppa-dev-sources', 'sys-kernel/hppa-sources', 'sys-kernel/ia64-sources', 'sys-kernel/mips-prepatch-sources', 'sys-kernel/mips-sources', 'sys-kernel/mm-sources', 'sys-kernel/openmosix-sources', 'sys-kernel/pac-sources', 'sys-kernel/planet-ccrma-sources', 'sys-kernel/ppc-development-sources', 'sys-kernel/ppc-sources', 'sys-kernel/ppc-sources-benh', 'sys-kernel/ppc-sources-crypto', 'sys-kernel/ppc-sources-dev', 'sys-kernel/selinux-sources', 'sys-kernel/sparc-dev-sources', 'sys-kernel/sparc-sources', 'sys-kernel/usermode-sources', 'sys-kernel/vanilla-prepatch-sources', 'sys-kernel/vanilla-sources', 'sys-kernel/win4lin-sources', 'sys-kernel/wolk-sources', 'sys-kernel/xfs-sources']
['42024', 'Advisory released by iSEC', 'CVE-2004-0077']
ba6db9d1b97b415b2f3324b916e851e1e4f2c4c587936ee771f3869e50113b9b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-03
Multiple OpenSSL Vulnerabilities
Three vulnerabilities have been found in OpenSSL via a commercial test suite for the TLS protocol developed by Codenomicon Ltd.
2004-03-17 00:00:00+03:00
2006-05-22 00:00:00+04:00
Three vulnerabilities have been found in OpenSSL via a commercial test suite for the TLS protocol developed by Codenomicon Ltd.
['dev-libs/openssl']
['44941', 'CVE-2004-0079', 'CVE-2004-0081', 'CVE-2004-0112']
71f055e658db48ef18b5e794bcb30e20d9683045e6eef2c5514cca8094f76efe
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-04
Multiple security vulnerabilities in Apache 2
A memory leak in mod_ssl allows a remote denial of service attack against an SSL-enabled server via plain HTTP requests. Another flaw was found when arbitrary client-supplied strings can be written to the error log, allowing the exploit of certain terminal emulators. A third flaw exists with the mod_disk_cache module.
2004-03-22 00:00:00+03:00
2007-12-30 00:00:00+03:00
A memory leak in mod_ssl allows a remote denial of service attack against an SSL-enabled server via plain HTTP requests. Another flaw was found when arbitrary client-supplied strings can be written to the error log, allowing the exploit of certain terminal emulators. A third flaw exists with the mod_disk_cache module.
['www-servers/apache']
['45206', 'Apache HTTP Server 2.0.49 Announcement', 'Apache mod_disk_cache authentication storage weakness vulnerability', 'CVE-2004-0113']
02b609b603b33533243fdac2ca09d2e2ce1cdf26ec50dc27e6f130bfcbc5eba4
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-05
UUDeview MIME Buffer Overflow
A specially-crafted MIME file (.mim, .uue, .uu, .b64, .bhx, .hqx, and .xxe extensions) may cause UUDeview to crash or execute arbitrary code.
2004-03-26 00:00:00+03:00
2004-03-26 00:00:00+03:00
A specially-crafted MIME file (.mim, .uue, .uu, .b64, .bhx, .hqx, and .xxe extensions) may cause UUDeview to crash or execute arbitrary code.
['app-text/uudeview']
['44859', 'SecurityFocus advisory', 'iDEFENSE advisory']
564f58a84fcd2118ff706cf29999f9cb6c3da0a031c2dc0ea2ff654d323eb756
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-06
Multiple remote buffer overflow vulnerabilities in Courier
Remote buffer overflow vulnerabilities have been found in Courier-IMAP and Courier MTA. These exploits may allow the execution of abritrary code, allowing unauthorized access to a vulnerable system.
2004-03-26 00:00:00+03:00
2004-03-26 00:00:00+03:00
Remote buffer overflow vulnerabilities have been found in Courier-IMAP and Courier MTA. These exploits may allow the execution of abritrary code, allowing unauthorized access to a vulnerable system.
['mail-mta/courier', 'net-mail/courier-imap']
['45584', 'CAN-2004-0224', 'Courier Multiple Remote Buffer Overflow Vulnerabilities']
46061fac3cbfabe737bdce19d24ae0e69794e24c2000596857454d20428bd3f9
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-07
Multiple remote overflows and vulnerabilities in Ethereal
Mulitple overflows and vulnerabilities exist in Ethereal which may allow an attacker to crash the program or run arbitrary code.
2004-03-28 00:00:00+03:00
2004-03-28 00:00:00+03:00
Mulitple overflows and vulnerabilities exist in Ethereal which may allow an attacker to crash the program or run arbitrary code.
['net-analyzer/ethereal']
['45543', 'CAN-2004-0176', 'CAN-2004-0365', 'CAN-2004-0367', 'Multiple security problems in Ethereal 0.10.2']
1c6c418825333cd64fd7a329bf9e568d27e308f508d7e10b217b0740152673b1
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-08
oftpd DoS vulnerability
A remotely-exploitable overflow exists in oftpd, allowing an attacker to crash the oftpd daemon.
2004-03-29 00:00:00+04:00
2006-05-22 00:00:00+04:00
A remotely-exploitable overflow exists in oftpd, allowing an attacker to crash the oftpd daemon.
['net-ftp/oftpd']
['45738', 'CVE-2004-0376', 'http://www.time-travellers\n .org/oftpd/', 'osftpd DoS Vulnerability']
0b4967c57b96dd7a5fa5b0153bc44c8ee18c2d80102bb4312a0fea9eca53e312
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-09
Buffer overflow in Midnight Commander
A remotely-exploitable buffer overflow in Midnight Commander allows arbitrary code to be run on a user's computer
2004-03-29 00:00:00+04:00
2004-03-29 00:00:00+04:00
A remotely-exploitable buffer overflow in Midnight Commander allows arbitrary code to be run on a user's computer
['app-misc/mc']
['45957', 'CAN-2003-1023']
e834d43a7da10f8e22012ab59600c0abaea4cb0433e82ef844e8309bddfe2b29
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-10
Fetchmail 6.2.5 fixes a remote DoS
Fetchmail versions 6.2.4 and earlier can be crashed by sending a specially-crafted email to a fetchmail user.
2004-03-30 00:00:00+04:00
2004-03-30 00:00:00+04:00
Fetchmail versions 6.2.4 and earlier can be crashed by sending a specially-crafted email to a fetchmail user.
['net-mail/fetchmail']
['37717', 'CVE Candidate (CAN-2003-0792)', 'ISS X-Force Listing']
cd1d6710936ba366f3aa81697defcdb3c963212d39f837c9a62d1b7d5074d8c8
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
202008-11
Chromium, Google Chrome: Multiple vulnerabilities
Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code.
2020-08-26 00:00:00+03:00
2020-08-26 00:00:00+03:00
Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code.
['www-client/chromium', 'www-client/google-chrome']
['738998', 'CVE-2020-6559', 'CVE-2020-6560', 'CVE-2020-6561', 'CVE-2020-6562', 'CVE-2020-6563', 'CVE-2020-6564', 'CVE-2020-6565', 'CVE-2020-6566', 'CVE-2020-6567', 'CVE-2020-6568', 'CVE-2020-6569', 'CVE-2020-6570', 'CVE-2020-6571', 'Upstream advisory']
baec5b9148ca099bf973d1de2cbec9e0c8a457ab9c72bd68375a0929a365c084
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-11
Squid ACL [url_regex] bypass vulnerability
Squid versions 2.0 through to 2.5.STABLE4 could allow a remote attacker to bypass Access Control Lists by sending a specially-crafted URL request containing '%00': in such circumstances; the url_regex ACL may not properly detect the malicious URL, allowing the attacker to effectively bypass the ACL.
2004-03-30 00:00:00+04:00
2004-09-02 00:00:00+04:00
Squid versions 2.0 through to 2.5.STABLE4 could allow a remote attacker to bypass Access Control Lists by sending a specially-crafted URL request containing '%00': in such circumstances; the url_regex ACL may not properly detect the malicious URL, allowing the attacker to effectively bypass the ACL.
['net-proxy/squid']
['45273', 'CAN-2004-0189', 'Squid 2.5.STABLE5 Release Announcement']
0d113348bfd33523b9d948dbe0c80a844ac9358cc12c434483f85b5af3e90b9d
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-12
OpenLDAP DoS Vulnerability
A failed password operation can cause the OpenLDAP slapd server, if it is using the back-ldbm backend, to free memory that was never allocated.
2004-03-31 00:00:00+04:00
2006-05-22 00:00:00+04:00
A failed password operation can cause the OpenLDAP slapd server, if it is using the back-ldbm backend, to free memory that was never allocated.
['net-nds/openldap']
['26728', 'CVE-2003-1201', 'OpenLDAP ITS Bug and Patch']
3227d0e6b7b861e34ccffb40e9aa3ea00b56606fe3d4d0201338bff2a526292c
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-13
Remote buffer overflow in MPlayer
MPlayer contains a remotely exploitable buffer overflow in the HTTP parser that may allow attackers to run arbitrary code on a user's computer.
2004-03-31 00:00:00+04:00
2006-10-11 00:00:00+04:00
MPlayer contains a remotely exploitable buffer overflow in the HTTP parser that may allow attackers to run arbitrary code on a user's computer.
['media-video/mplayer']
['46246', 'CVE-2004-0386', 'MPlayerHQ News', 'http://mplayerhq.hu']
144a5a4181657855d4bd8e806c9a4577c79913c161905dc850b70104e4ceb27c
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200403-14
Multiple Security Vulnerabilities in Monit
A denial of service and a buffer overflow vulnerability have been found in Monit.
2004-03-31 00:00:00+04:00
2006-05-22 00:00:00+04:00
A denial of service and a buffer overflow vulnerability have been found in Monit.
['app-admin/monit']
['43967', 'CVE-2003-1083', 'CVE-2003-1084', 'Monit HTTP Content-Length Parameter Denial of Service Vulnerability', 'Monit Overly Long HTTP Request Buffer Overrun Vulnerability']
caaedf4531291bfcf72fd8532fcdb3750e38076218acccea5f17d3a799cdf80b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-01
Insecure sandbox temporary lockfile vulnerabilities in Portage
A flaw has been found in the temporary file handling algorithms for the sandboxing code used within Portage. Lockfiles created during normal Portage operation of portage could be manipulated by local users resulting in the truncation of hard linked files; causing a Denial of Service attack on the system.
2004-04-04 00:00:00+04:00
2004-04-04 00:00:00+04:00
A flaw has been found in the temporary file handling algorithms for the sandboxing code used within Portage. Lockfiles created during normal Portage operation of portage could be manipulated by local users resulting in the truncation of hard linked files; causing a Denial of Service attack on the system.
['sys-apps/portage']
['21923']
aaf3aa7a0ad58e5698f19d40103a24c86ec2154d3695913d744bd58b0d86be50
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-02
KDE Personal Information Management Suite Remote Buffer Overflow Vulnerability
KDE-PIM may be vulnerable to a remote buffer overflow attack that may allow unauthorized access to an affected system.
2004-04-06 00:00:00+04:00
2004-04-06 00:00:00+04:00
KDE-PIM may be vulnerable to a remote buffer overflow attack that may allow unauthorized access to an affected system.
['kde-base/kde']
['38256', 'CAN-2003-0988']
a8d43f4ca08a506b17e2fd92225e2fe1044d9bebc81b8843044a1f3036845d75
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-03
Tcpdump Vulnerabilities in ISAKMP Parsing
There are multiple vulnerabilities in tcpdump and libpcap related to parsing of ISAKMP packets.
2004-03-31 00:00:00+04:00
2004-03-31 00:00:00+04:00
There are multiple vulnerabilities in tcpdump and libpcap related to parsing of ISAKMP packets.
['net-analyzer/tcpdump', 'net-libs/libpcap']
['38206', '46258', 'CVE Advisory', 'Rapid7 Advisory', 'Red Hat Security Advisory']
e15ecaf454a1f604d3a0037de443dcecc32b0908f48e4e91d80142bf9e01b6c0
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-04
Multiple vulnerabilities in sysstat
Multiple vulnerabilities in the way sysstat handles symlinks may allow an attacker to execute arbitrary code or overwrite arbitrary files
2004-04-06 00:00:00+04:00
2004-04-06 00:00:00+04:00
Multiple vulnerabilities in the way sysstat handles symlinks may allow an attacker to execute arbitrary code or overwrite arbitrary files
['app-admin/sysstat']
['45159', 'CVE (1)', 'CVE (2)']
57e556b40f6fee03a6046deb65f7cad9e7412467cfb4916caf1b329695421da0
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-05
ipsec-tools contains an X.509 certificates vulnerability.
ipsec-tools contains a vulnerability that affects connections authenticated with X.509 certificates.
2004-04-07 00:00:00+04:00
2004-04-07 00:00:00+04:00
ipsec-tools contains a vulnerability that affects connections authenticated with X.509 certificates.
['net-firewall/ipsec-tools']
['47013']
8a66ae7fdcb10e84d6829e7d3f296932d600064717aecbe20d11b45892c21285
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-06
Util-linux login may leak sensitive data
The login program included in util-linux could leak sensitive information under certain conditions.
2004-04-07 00:00:00+04:00
2004-04-07 00:00:00+04:00
The login program included in util-linux could leak sensitive information under certain conditions.
['sys-apps/util-linux']
['46422', 'CAN-2004-0080']
23060eb08126d7bccf3446b63743225483b328f02c9a0c377ed7073d5c2763ea
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-07
ClamAV RAR Archive Remote Denial Of Service Vulnerability
ClamAV is vulnerable to a denial of service attack when processing certain RAR archives.
2004-04-07 00:00:00+04:00
2006-05-22 00:00:00+04:00
ClamAV is vulnerable to a denial of service attack when processing certain RAR archives.
['app-antivirus/clamav']
['45357', 'CVE-2004-1909', 'http://www.clamav.net/']
8ab2b58e4de0d354c002842648788e24d9ebbce661800eeb98a859bb574d0b0b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-08
GNU Automake symbolic link vulnerability
Automake may be vulnerable to a symbolic link attack which may allow an attacker to modify data or elevate their privileges.
2004-04-08 00:00:00+04:00
2005-01-31 00:00:00+03:00
Automake may be vulnerable to a symbolic link attack which may allow an attacker to modify data or elevate their privileges.
['sys-devel/automake']
['45646']
a8c9d308ba4f12d4dcd7ca531b90f4faf79cf3db616ceb5652e5af72081d1a91
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-09
Cross-realm trust vulnerability in Heimdal
Heimdal contains cross-realm vulnerability allowing someone with control over a realm to impersonate anyone in the cross-realm trust path.
2004-04-09 00:00:00+04:00
2004-04-09 00:00:00+04:00
Heimdal contains cross-realm vulnerability allowing someone with control over a realm to impersonate anyone in the cross-realm trust path.
['app-crypt/heimdal']
['46590', 'CVE']
02ae10e24896255c66cae11a13bb166a71269da8fb9bb1ca494bd78908b45619
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-10
iproute local Denial of Service vulnerability
The iproute package allows local users to cause a denial of service.
2004-04-09 00:00:00+04:00
2004-04-09 00:00:00+04:00
The iproute package allows local users to cause a denial of service.
['sys-apps/iproute']
['34294', 'CAN-2003-0856']
5efaaf29459067f4be6e745c446d2983d6a9e0c02c04287b3b4ad0e4748060f8
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-11
Multiple Vulnerabilities in pwlib
Multiple vulnerabilities have been found in pwlib that may lead to a remote denial of service or buffer overflow attack.
2004-04-09 00:00:00+04:00
2004-04-09 00:00:00+04:00
Multiple vulnerabilities have been found in pwlib that may lead to a remote denial of service or buffer overflow attack.
['dev-libs/pwlib']
['45846', 'CAN-2004-0097', 'NISCC Vulnerability Advisory 006489/H323']
4af112c16e0cab848d91004c972b0db98ee0ac9ca9f84461d839e8433d11d9c7
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-12
Scorched 3D server chat box format string vulnerability
Scorched 3D is vulnerable to a format string attack in the chat box that leads to Denial of Service on the game server and possibly allows execution of arbitrary code.
2004-04-09 00:00:00+04:00
2004-04-09 00:00:00+04:00
Scorched 3D is vulnerable to a format string attack in the chat box that leads to Denial of Service on the game server and possibly allows execution of arbitrary code.
['games-strategy/scorched3d']
['39302']
5d3e36f4b3f236e168aa59fcb9b87eb7f4d4ce8f20f85feb5cbc979a1a955789
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-13
CVS Server and Client Vulnerabilities
There are two vulnerabilities in CVS; one in the server and one in the client. These vulnerabilities allow the reading and writing of arbitrary files on both client and server.
2004-04-14 00:00:00+04:00
2006-05-22 00:00:00+04:00
There are two vulnerabilities in CVS; one in the server and one in the client. These vulnerabilities allow the reading and writing of arbitrary files on both client and server.
['dev-util/cvs']
['47800', 'CVE-2004-0180', 'CVE-2004-0405', 'CVS commit log']
7cd749f55b93946d299671900549b6263d27545922f4d6e65e73ad6e37830be1
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-14
Multiple format string vulnerabilities in cadaver
There are multiple format string vulnerabilities in the neon library used in cadaver, possibly leading to execution of arbitrary code when connected to a malicious server.
2004-04-19 00:00:00+04:00
2004-04-19 00:00:00+04:00
There are multiple format string vulnerabilities in the neon library used in cadaver, possibly leading to execution of arbitrary code when connected to a malicious server.
['net-misc/cadaver']
['47799', 'CAN-2004-0179', 'http://www.webdav.org/cadaver']
b06d0c349d2f1673b21e58bdbc21215aa2eaad068fa86d93c0c70d95b629523b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-15
XChat 2.0.x SOCKS5 Vulnerability
XChat is vulnerable to a stack overflow that may allow a remote attacker to run arbitrary code.
2004-04-19 00:00:00+04:00
2006-05-22 00:00:00+04:00
XChat is vulnerable to a stack overflow that may allow a remote attacker to run arbitrary code.
['net-irc/xchat']
['46856', 'CVE-2004-0409', 'XChat 2.0.x SOCKS5 Vulnerability']
88cdb90a6b1ec918f05ab1e9e5ecda8335fd6ab362fee1fb29a72e354ba5b6ac
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-16
Multiple new security vulnerabilities in monit
Two new vulnerabilities have been found in the HTTP interface of monit, possibly leading to denial of service or execution of arbitrary code.
2004-04-19 00:00:00+04:00
2004-04-19 00:00:00+04:00
Two new vulnerabilities have been found in the HTTP interface of monit, possibly leading to denial of service or execution of arbitrary code.
['app-admin/monit']
['47631', 'Monit security advisory 20040305']
5164d49a5d9b03de188244f68225debd689dc3f48f16e9bd34a9a8b462508021
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-17
ipsec-tools and iputils contain a remote DoS vulnerability
racoon, which is included in the ipsec-tools and iputils packages in Portage, does not check the length of ISAKMP headers. Attackers may be able to craft an ISAKMP header of sufficient length to consume all available system resoources, causing a Denial of Service.
2004-04-24 00:00:00+04:00
2004-04-24 00:00:00+04:00
racoon, which is included in the ipsec-tools and iputils packages in Portage, does not check the length of ISAKMP headers. Attackers may be able to craft an ISAKMP header of sufficient length to consume all available system resoources, causing a Denial of Service.
['net-firewall/ipsec-tools', 'net-misc/iputils']
['48847', 'CVE', 'http://ipsec-tools.sourceforge.n\n et/']
38311b39de9d82d706683cad6a25cfe4d50df73f78c53720baab4d953a1ff0ba
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-18
Multiple Vulnerabilities in ssmtp
There are multiple format string vulnerabilities in the SSMTP package, which may allow an attacker to run arbitrary code with ssmtp's privileges (potentially root).
2004-04-26 00:00:00+04:00
2004-04-26 00:00:00+04:00
There are multiple format string vulnerabilities in the SSMTP package, which may allow an attacker to run arbitrary code with ssmtp's privileges (potentially root).
['mail-mta/ssmtp']
['47918', '48435', 'CVE Reference', 'Debian Advisory', 'Secunia Advisory']
3933cff1f76bec73cd0bb40921e694341bbbbd3986c295ee1721dae4f50faaaa
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-19
Buffer overflows and format string vulnerabilities in LCDproc
Multiple remote vulnerabilities have been found in the LCDd server, allowing execution of arbitrary code with the rights of the LCDd user.
2004-04-27 00:00:00+04:00
2004-04-27 00:00:00+04:00
Multiple remote vulnerabilities have been found in the LCDd server, allowing execution of arbitrary code with the rights of the LCDd user.
['app-misc/lcdproc']
['47340', 'LCDproc advisory']
a1bd5fccc13d72060ba3ed4ab3793a598b87137d42ab2394f099c22e50d96711
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-20
Multiple vulnerabilities in xine
Several vulnerabilities have been found in xine-ui and xine-lib, potentially allowing an attacker to overwrite files with the rights of the user.
2004-04-27 00:00:00+04:00
2006-05-22 00:00:00+04:00
Several vulnerabilities have been found in xine-ui and xine-lib, potentially allowing an attacker to overwrite files with the rights of the user.
['media-libs/xine-lib', 'media-video/xine-ui']
['45448', '48107', '48108', 'CVE-2004-0372', 'CVE-2004-1951', 'Xine Security Advisories', 'xine-bugreport and xine-check vulnerability']
c4eae35c34f31d1f7d3a57f35cf3a4de49b5cc0e49d6a62105ca99cfed7bc658
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200404-21
Multiple Vulnerabilities in Samba
There is a bug in smbfs which may allow local users to gain root via a setuid file on a mounted Samba share. Also, there is a tmpfile symlink vulnerability in the smbprint script distributed with Samba.
2004-04-29 00:00:00+04:00
2004-04-29 00:00:00+04:00
There is a bug in smbfs which may allow local users to gain root via a setuid file on a mounted Samba share. Also, there is a tmpfile symlink vulnerability in the smbprint script distributed with Samba.
['net-fs/samba']
['41800', '45965', 'BugTraq Thread: Samba 3.x + kernel 2.6.x local root vulnerability', 'BugTraq: smbprint Vulnerability']
0de0dc615d192fc6a8566caa03a3341a44a81efe31e04b375ef16b25e7c65aef
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-01
Multiple format string vulnerabilities in neon 0.24.4 and earlier
There are multiple format string vulnerabilities in libneon which may allow a malicious WebDAV server to execute arbitrary code.
2004-05-09 00:00:00+04:00
2004-05-09 00:00:00+04:00
There are multiple format string vulnerabilities in libneon which may allow a malicious WebDAV server to execute arbitrary code.
['net-misc/neon']
['48448', 'CVE']
34fc79eec55547857f077c648b23f575ea7b31243c3d00996b281c5b2f02c465
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
202008-12
Net-SNMP: Multiple vulnerabilities
Multiple vulnerabilities have been found in Net-SNMP, the worst of which could result in privilege escalation.
2020-08-26 00:00:00+03:00
2020-08-26 00:00:00+03:00
Multiple vulnerabilities have been found in Net-SNMP, the worst of which could result in privilege escalation.
['net-analyzer/net-snmp']
['729610', '734994', 'CVE-2019-20892', 'CVE-2020-15861', 'CVE-2020-15862']
fc71ec52c8b421bdab1b19d09065bfd6d5ccddf5b9d5a232c09e5db78492085e
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-02
Multiple vulnerabilities in LHa
Two stack-based buffer overflows and two directory traversal problems have been found in LHa. These vulnerabilities can be used to execute arbitrary code or as a denial of service attack.
2004-05-09 00:00:00+04:00
2006-10-20 00:00:00+04:00
Two stack-based buffer overflows and two directory traversal problems have been found in LHa. These vulnerabilities can be used to execute arbitrary code or as a denial of service attack.
['app-arch/lha']
['49961', 'CAN-2004-0234', 'CAN-2004-0235']
79e0383104d4f45528cc367e4bf33d8d12330061be54c179517fcc36644c88dd
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-03
ClamAV VirusEvent parameter vulnerability
With a specific configuration (using %f in the VirusEvent parameter), Clam AntiVirus is vulnerable to an attack allowing execution of arbitrary commands.
2004-05-11 00:00:00+04:00
2006-05-22 00:00:00+04:00
With a specific configuration (using %f in the VirusEvent parameter), Clam AntiVirus is vulnerable to an attack allowing execution of arbitrary commands.
['app-antivirus/clamav']
['46264', 'CVE-2004-1876', 'http://www.clamav.net/']
b2e3cf78eaff911f283e9559ed60906ae100f58b7594fa9a5171202b1bc0ca4a
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-04
OpenOffice.org vulnerability when using DAV servers
Several format string vulnerabilities are present in the Neon library included in OpenOffice.org, allowing remote execution of arbitrary code when connected to an untrusted WebDAV server.
2004-05-11 00:00:00+04:00
2004-10-27 00:00:00+04:00
Several format string vulnerabilities are present in the Neon library included in OpenOffice.org, allowing remote execution of arbitrary code when connected to an untrusted WebDAV server.
['app-office/openoffice', 'app-office/openoffice-bin', 'app-office/openoffice-ximian', 'app-office/openoffice-ximian-bin']
['47926', 'CAN-2004-0179', 'Neon vulnerabilities (GLSA 200405-01)']
b1c0be17361d13a3218324ea1e4e0d3a66cdf0bf8676ca230c2d9c5402b0bee3
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-05
Utempter symlink vulnerability
Utempter contains a vulnerability that may allow local users to overwrite arbitrary files via a symlink attack.
2004-05-13 00:00:00+04:00
2004-05-13 00:00:00+04:00
Utempter contains a vulnerability that may allow local users to overwrite arbitrary files via a symlink attack.
['sys-apps/utempter']
['49536', 'CAN-2004-0233']
0027cb708646bf56ea55221f394e5d873223d5cd53f48803787d3b1bdba0fcc0
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-06
libpng denial of service vulnerability
A bug in the libpng library can be abused to crash programs making use of that library to decode PNG images.
2004-05-14 00:00:00+04:00
2004-05-14 00:00:00+04:00
A bug in the libpng library can be abused to crash programs making use of that library to decode PNG images.
['media-libs/libpng']
['49887', 'CAN-2004-0421']
859a945c222fa1e4bd6fd8395c3388a9191887db0a485b6128881c219e944bfd
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-07
Exim verify=header_syntax buffer overflow
When the verify=header_syntax option is set, there is a buffer overflow in Exim that allows remote execution of arbitrary code.
2004-05-14 00:00:00+04:00
2004-05-14 00:00:00+04:00
When the verify=header_syntax option is set, there is a buffer overflow in Exim that allows remote execution of arbitrary code.
['mail-mta/exim']
['50217', 'CAN-2004-0400']
887db66d2e4b8a50b836972c060d6a383a0f308f3d3f44c4b9f7265a33e14b29
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-08
Pound format string vulnerability
There is a format string flaw in Pound, allowing remote execution of arbitrary code with the rights of the Pound process.
2004-05-18 00:00:00+04:00
2006-05-22 00:00:00+04:00
There is a format string flaw in Pound, allowing remote execution of arbitrary code with the rights of the Pound process.
['www-servers/pound']
['50421', 'CVE-2004-2026', 'Pound announcement']
7e34f1fec9ea63d3b7c38171c33f502ac078035b73b632475b25adf402fb7916
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-09
ProFTPD Access Control List bypass vulnerability
Version 1.2.9 of ProFTPD introduced a vulnerability that causes CIDR-based Access Control Lists (ACLs) to be treated as "AllowAll", thereby allowing remote users full access to files available to the FTP daemon.
2004-05-19 00:00:00+04:00
2004-05-19 00:00:00+04:00
Version 1.2.9 of ProFTPD introduced a vulnerability that causes CIDR-based Access Control Lists (ACLs) to be treated as "AllowAll", thereby allowing remote users full access to files available to the FTP daemon.
['net-ftp/proftpd']
['49496', 'CAN-2004-0432']
5f8d9e8045eb02262e0eb2fcb660ded0abdb03fbd5fd4636d15b62516b3b44da
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-10
Icecast denial of service vulnerability
Icecast is vulnerable to a denial of service attack allowing remote users to crash the application.
2004-05-19 00:00:00+04:00
2006-05-22 00:00:00+04:00
Icecast is vulnerable to a denial of service attack allowing remote users to crash the application.
['net-misc/icecast']
['50935', 'CVE-2004-2027', 'Icecast 2.0.1 announcement']
6a45ab9118097abaed7eaa90c2d74c315b89a8dce8f0b27dccc9c38003928563
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-11
KDE URI Handler Vulnerabilities
Vulnerabilities in KDE URI handlers makes your system vulnerable to various attacks.
2004-05-19 00:00:00+04:00
2004-05-19 00:00:00+04:00
Vulnerabilities in KDE URI handlers makes your system vulnerable to various attacks.
['kde-base/kdelibs']
['51276', 'CAN-2004-0411']
b09539156b85111cfec325a9417cd8f95953b2fd082b218743084559404e886b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-12
CVS heap overflow vulnerability
CVS is subject to a heap overflow vulnerability allowing source repository compromise.
2004-05-20 00:00:00+04:00
2004-05-20 00:00:00+04:00
CVS is subject to a heap overflow vulnerability allowing source repository compromise.
['dev-util/cvs']
['51460', 'CAN-2004-0396', 'E-matters advisory 07/2004']
815cb954cca9b9dd1795fa0bce159838d9161ed34652a8b232756d02f99e5ce2
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-13
neon heap-based buffer overflow
A vulnerability potentially allowing remote execution of arbitrary code has been discovered in the neon library.
2004-05-20 00:00:00+04:00
2004-05-20 00:00:00+04:00
A vulnerability potentially allowing remote execution of arbitrary code has been discovered in the neon library.
['net-misc/neon']
['51490', 'CAN-2004-0398', 'E-matters advisory 06/2004']
acf90921b0148bf3e47cb6f5522249f8f528b7873844cd5075c2e84470ddb559
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-14
Buffer overflow in Subversion
There is a vulnerability in the Subversion date parsing code which may lead to denial of service attacks, or execution of arbitrary code. Both the client and server are vulnerable.
2004-05-20 00:00:00+04:00
2006-05-22 00:00:00+04:00
There is a vulnerability in the Subversion date parsing code which may lead to denial of service attacks, or execution of arbitrary code. Both the client and server are vulnerable.
['dev-util/subversion']
['51462', 'CVE-2004-0397', 'E-Matters Advisory', 'Subversion Announcement']
7d8321c90e198108a23025b5e37711138b0772a10649bd63e8eceab5a8086df4
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-15
cadaver heap-based buffer overflow
There is a heap-based buffer overflow vulnerability in the neon library used in cadaver, possibly leading to execution of arbitrary code when connected to a malicious server.
2004-05-20 00:00:00+04:00
2004-05-20 00:00:00+04:00
There is a heap-based buffer overflow vulnerability in the neon library used in cadaver, possibly leading to execution of arbitrary code when connected to a malicious server.
['net-misc/cadaver']
['51461', 'CAN-2004-0398', 'GLSA 200405-13']
fd0c7c431754f6b2e9de1b8a753de8e3589e840277db3b77e52adaa87705bf82
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-16
Multiple XSS Vulnerabilities in SquirrelMail
SquirrelMail is subject to several XSS and one SQL injection vulnerability.
2004-05-25 00:00:00+04:00
2006-05-27 00:00:00+04:00
SquirrelMail is subject to several XSS and one SQL injection vulnerability.
['mail-client/squirrelmail']
['49675', 'Bugtraq security annoucement', 'CERT description of XSS', 'CVE-2004-0519', 'CVE-2004-0521', 'SquirrelMail 1.4.3_rc1 release annoucement']
7639591f12e3081944336c3faf3d7365ddd4c7d5cefee0b8e8479b0ca0d74117
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-17
Multiple vulnerabilities in metamail
Several format string bugs and buffer overflows were discovered in metamail, potentially allowing execution of arbitrary code remotely.
2004-05-21 00:00:00+04:00
2004-05-21 00:00:00+04:00
Several format string bugs and buffer overflows were discovered in metamail, potentially allowing execution of arbitrary code remotely.
['net-mail/metamail']
['42133', 'CAN-2004-0104', 'CAN-2004-0105']
ee43db78fbb2c8a02eca7a2f2d1f65f2d3dbf38344ed5991645ce3ad1fbe6e15
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-18
Buffer Overflow in Firebird
A buffer overflow via environmental variables in Firebird may allow a local user to manipulate or destroy local databases and trojan the Firebird binaries.
2004-05-23 00:00:00+04:00
2006-05-22 00:00:00+04:00
A buffer overflow via environmental variables in Firebird may allow a local user to manipulate or destroy local databases and trojan the Firebird binaries.
['dev-db/firebird']
['20837', 'Bugtraq Security Announcement', 'CVE-2003-0281', 'Sourceforge BugTracker Announcement']
28c9e3ef7ac35820a122e720eb181cbef36d280caf6927ecf36f1caedacdf450
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-19
Opera telnet URI handler file creation/truncation vulnerability
A vulnerability exists in Opera's telnet URI handler that may allow a remote attacker to overwrite arbitrary files.
2004-05-25 00:00:00+04:00
2007-12-30 00:00:00+03:00
A vulnerability exists in Opera's telnet URI handler that may allow a remote attacker to overwrite arbitrary files.
['www-client/opera']
['50857', 'CVE-2004-0473', 'iDEFENSE Security Advisory 05.12.04']
1ff78513a167497d2372d6978147dccc82247ae8c9efc745d3b2f9c2cba0c747
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-20
Insecure Temporary File Creation In MySQL
Two MySQL utilities create temporary files with hardcoded paths, allowing an attacker to use a symlink to trick MySQL into overwriting important data.
2004-05-25 00:00:00+04:00
2004-05-25 00:00:00+04:00
Two MySQL utilities create temporary files with hardcoded paths, allowing an attacker to use a symlink to trick MySQL into overwriting important data.
['dev-db/mysql']
['46242', 'CAN-2004-0381', 'CAN-2004-0388']
26e2784139ac42e4a8ab1b1ccbb73ee9afe270daf234aa1df4adaf4248a4331b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-21
Midnight Commander: Multiple vulnerabilities
Multiple security issues have been discovered in Midnight Commander including several buffer overflows and string format vulnerabilities.
2004-05-26 00:00:00+04:00
2004-05-26 00:00:00+04:00
Multiple security issues have been discovered in Midnight Commander including several buffer overflows and string format vulnerabilities.
['app-misc/mc']
['49990', 'CAN-2004-0226', 'CAN-2004-0231', 'CAN-2004-0232']
1621cb49282427ed87a3f710b94ca6b877dc2378cb1d27c1cf08a7153c3ffe35
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-22
Apache 1.3: Multiple vulnerabilities
Several security vulnerabilities have been fixed in the latest release of Apache 1.3.
2004-05-26 00:00:00+04:00
2007-12-30 00:00:00+03:00
Several security vulnerabilities have been fixed in the latest release of Apache 1.3.
['www-servers/apache']
['51815', 'CAN-2003-0020', 'CAN-2003-0987', 'CAN-2003-0993', 'CAN-2004-0174']
56d4ddfbdf65c24f3886d420b1e854289de9660bec7b8799f709e198055ec0c3
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-23
Heimdal: Kerberos 4 buffer overflow in kadmin
A possible buffer overflow in the Kerberos 4 component of Heimdal has been discovered.
2004-05-27 00:00:00+04:00
2004-05-27 00:00:00+04:00
A possible buffer overflow in the Kerberos 4 component of Heimdal has been discovered.
['app-crypt/heimdal']
['50208', 'CAN-2004-0434', 'Heimdal 0.6.2 Release Notice']
b19f3f8803a291f023db37820d0abe922822cb8fef480ca216286006cd27060c
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-24
MPlayer, xine-lib: vulnerabilities in RTSP stream handling
Multiple vulnerabilities, including remotely exploitable buffer overflows, have been found in code common to MPlayer and the xine library.
2004-05-28 00:00:00+04:00
2004-05-28 00:00:00+04:00
Multiple vulnerabilities, including remotely exploitable buffer overflows, have been found in code common to MPlayer and the xine library.
['media-libs/xine-lib', 'media-video/mplayer']
['49387', 'CAN-2004-0433', 'Xine security advisory']
d3e79f432e09492210ede8a1102f4e1c6d429de60172c505682a56c9115ed25c
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200405-25
tla: Multiple vulnerabilities in included libneon
tla includes a vulnerable version of the neon library.
2004-05-30 00:00:00+04:00
2004-06-02 00:00:00+04:00
tla includes a vulnerable version of the neon library.
['dev-util/tla']
['51586', 'GLSA 200405-01', 'GLSA 200405-13']
e82410688f6580543b600f5661d297054a0b899c300aa2fd5b272567290e77e6
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-01
Ethereal: Multiple security problems
Multiple vulnerabilities including one buffer overflow exist in Ethereal, which may allow an attacker to run arbitrary code or crash the program.
2004-06-04 00:00:00+04:00
2006-05-22 00:00:00+04:00
Multiple vulnerabilities including one buffer overflow exist in Ethereal, which may allow an attacker to run arbitrary code or crash the program.
['net-analyzer/ethereal']
['51022', 'CVE-2004-0504', 'CVE-2004-0505', 'CVE-2004-0506', 'CVE-2004-0507', 'Ethereal enpa-sa-00014']
4b652b72835df9a48ae9d837043bb911cd151f1b385e8a27bea1f59990c2e663
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-02
tripwire: Format string vulnerability
A vulnerability allowing arbitrary code execution under certain circumstances has been found.
2004-06-04 00:00:00+04:00
2006-05-22 00:00:00+04:00
A vulnerability allowing arbitrary code execution under certain circumstances has been found.
['app-admin/tripwire']
['52945', 'Bugtraq Announcement', 'CVE-2004-0536']
81ff22acae5a02db6bd7de91031cab60e20f4d0b13f940ab176eb0f58373493b
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-03
sitecopy: Multiple vulnerabilities in included libneon
sitecopy includes a vulnerable version of the neon library.
2004-06-05 00:00:00+04:00
2004-08-15 00:00:00+04:00
sitecopy includes a vulnerable version of the neon library.
['net-misc/sitecopy']
['51585', 'GLSA 200405-01', 'GLSA 200405-13']
7509219d60d25bdcf2780799371cc22a0fd737556296adcb397057d766f13785
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-04
Mailman: Member password disclosure vulnerability
Mailman contains a bug allowing 3rd parties to retrieve member passwords.
2004-06-09 00:00:00+04:00
2004-06-09 00:00:00+04:00
Mailman contains a bug allowing 3rd parties to retrieve member passwords.
['net-mail/mailman']
['51671', 'CAN-2004-0412', 'Mailman 2.1.5 Release Announcement']
da2603e5776fdd2d2cd6f544bc0de4eca995fd5a269f143df0d64c229f176909
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-05
Apache: Buffer overflow in mod_ssl
A bug in mod_ssl may allow a remote attacker to execute remote code when Apache is configured a certain way.
2004-06-09 00:00:00+04:00
2007-12-30 00:00:00+03:00
A bug in mod_ssl may allow a remote attacker to execute remote code when Apache is configured a certain way.
['net-www/mod_ssl', 'www-servers/apache']
['51368', 'CAN-2004-0488']
5999548d2b336d73022fcb546df6483102a23d34c92faee84801e08f5d6bc2a5
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-06
CVS: additional DoS and arbitrary code execution vulnerabilities
Several serious new vulnerabilities have been found in CVS, which may allow an attacker to remotely compromise a CVS server.
2004-06-10 00:00:00+04:00
2004-06-10 00:00:00+04:00
Several serious new vulnerabilities have been found in CVS, which may allow an attacker to remotely compromise a CVS server.
['dev-util/cvs']
['53408', 'CAN-2004-0414', 'CAN-2004-0416', 'CAN-2004-0417', 'CAN-2004-0418', 'E-matters Advisory 09/2004']
a34fad19b12c2204bdf287597b954f20f73c220496274ff6cff9443ccfed84f3
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-07
Subversion: Remote heap overflow
Subversion is vulnerable to a remote Denial of Service that may be exploitable to execute arbitrary code on the server running svnserve.
2004-06-10 00:00:00+04:00
2004-06-10 00:00:00+04:00
Subversion is vulnerable to a remote Denial of Service that may be exploitable to execute arbitrary code on the server running svnserve.
['dev-util/subversion']
['CAN-2004-0413']
924d456da2ce7c09babd71f402fdcb5b86132e6c4aeacf72f52085b6a6b3af4e
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-08
Squirrelmail: Another XSS vulnerability
Squirrelmail fails to properly sanitize user input, which could lead to a compromise of webmail accounts.
2004-06-15 00:00:00+04:00
2006-05-22 00:00:00+04:00
Squirrelmail fails to properly sanitize user input, which could lead to a compromise of webmail accounts.
['mail-client/squirrelmail']
['52434', 'CERT description of XSS', 'CVE-2004-0520', 'RS-Labs Advisory']
7741a75a545d70da85802bb183acd38728155e77dcac5331ab4f17789a9ff3bb
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-09
Horde-Chora: Remote code execution
A vulnerability in Chora allows remote code execution and file upload.
2004-06-15 00:00:00+04:00
2007-12-30 00:00:00+03:00
A vulnerability in Chora allows remote code execution and file upload.
['www-apps/horde-chora']
['53800', 'e-matters Advisory']
0c8d4e440e679d64857438e9e5a673986760bbd969b06d79f8ab2850c5355e0d
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-10
Gallery: Privilege escalation vulnerability
There is a vulnerability in the Gallery photo album software which may allow an attacker to gain administrator privileges within Gallery.
2004-06-15 00:00:00+04:00
2006-05-22 00:00:00+04:00
There is a vulnerability in the Gallery photo album software which may allow an attacker to gain administrator privileges within Gallery.
['www-apps/gallery']
['52798', 'CVE-2004-0522', 'Gallery Announcement']
88a719ab2c617b23cfeeace650adf8e95dee1a7d39b3637510b92215901358ed
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00
200406-11
Horde-IMP: Input validation vulnerability
An input validation vulnerability has been discovered in Horde-IMP.
2004-06-16 00:00:00+04:00
2006-05-22 00:00:00+04:00
An input validation vulnerability has been discovered in Horde-IMP.
['www-apps/horde-imp']
['53862', 'Bugtraq Announcement', 'CVE-2004-0584']
188b693446fde60b40110496bdff116bcffc887c63d8bdac620723bb3b82add4
2026-05-30 02:26:30.333124+03:00
2026-06-22 22:13:49.875230+03:00