LiveActive security incident?Get immediate response
CVE archive

September 2005

Browse CVE records published in September 2005, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 313 matching CVEs · Page 6 of 7.

Unknown · CVSS Not scored

CVE-2005-2800: Memory leak in the seq_file implementation in the SCSI procfs interface (sg.c) in Linux kernel 2.6.13 and e...

Memory leak in the seq_file implementation in the SCSI procfs interface (sg.c) in Linux kernel 2.6.13 and earlier allows local users to cause a denial of service (memory consumption) via certain repeated reads from the /proc/scsi/sg/devices file, which is not properly handled when the next() iterator returns NULL or an error.

Published Sep 6, 2005 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2005-2772: Multiple stack-based buffer overflows in University of Minnesota gopher client 3.0.9 allow remote malicious...

Multiple stack-based buffer overflows in University of Minnesota gopher client 3.0.9 allow remote malicious servers to execute arbitrary code via (1) a long "+VIEWS:" reply, which is not properly handled in the VIfromLine function, and (2) certain arguments when launching third party programs such as a web browser from a web link, which is not properly handled in the FIOgetargv function.

Published Sep 2, 2005 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2005-2766: Symantec AntiVirus Corporate Edition 9.0.1.x and 9.0.4.x, and possibly other versions, when obtaining updat...

Symantec AntiVirus Corporate Edition 9.0.1.x and 9.0.4.x, and possibly other versions, when obtaining updates from an internal LiveUpdate server, stores sensitive information in cleartext in the Log.Liveupdate log file, which allows attackers to obtain the username and password to the internal LiveUpdate server.

Published Sep 2, 2005 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2005-2776: Multiple cross-site scripting (XSS) vulnerabilities in Looking Glass 20040427 allow remote attackers to inj...

Multiple cross-site scripting (XSS) vulnerabilities in Looking Glass 20040427 allow remote attackers to inject arbitrary web script or HTML via the (1) version[fullname], (2) version[homepage], or (3) version[no] parameter to footer.php, or the (4) version[fullname], (5) version[no], (6) version[author], (7) version[email] parameter to header.php.

Published Sep 2, 2005 · Updated Aug 7, 2024