off by one software vulnerabilities
vulnerabilities.aspcode.net
Searching off by one software vulnerabilities
Off-by-one buffer overflow in Basic Authenticat
Authentication
|
Off-by-one
|
overflow
|
buffer
|
thttpd
|
Basic
|
Labs
|
Acme
|
Off-by-one buffer overflow in Basic Authentication in Acme Labs thttpd 1.95 through 2.20 allows remote attackers to cause a denial of service and possibly execute arbitrary code.
Off-by-one error in alterMIME 0.1.10 and 0.1.11
Off-by-one
|
alterMIME
|
error
|
Off-by-one error in alterMIME 0.1.10 and 0.1.11 allows remote attackers to cause a denial of service (crash) via an x-header that causes snprintf overwrite the FFGET_FILE variable with a (null) byte.
Off-by-one error in the CodeBrws.asp sample scr
CodeBrwsasp
|
containing
|
extensions
|
additional
|
Off-by-one
|
attackers
|
character
|
Microsoft
|
source
|
script
|
sample
|
remote
|
allows
|
files
|
error
|
after
|
aspx
|
such
|
html
|
view
|
code
|
inc
|
IIS
|
one
|
htm
|
asp
|
Off-by-one error in the CodeBrws.asp sample script in Microsoft IIS 5.0 allows remote attackers to view the source code for files with extensions containing with one additional character after .html, .htm, .asp, or .inc, such as .aspx files.
Off-by-one buffer overflow in the sock_gets fun
Off-by-one
|
sockhelpc
|
arbitrary
|
attackers
|
sock_gets
|
overflow
|
ATPhttpd
|
function
|
request
|
execute
|
earlier
|
buffer
|
allows
|
remote
|
long
|
HTTP
|
code
|
GET
|
04b
|
via
|
Off-by-one buffer overflow in the sock_gets function in sockhelp.c for ATPhttpd 0.4b and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
Off-by-one buffer overflow in the context_actio
context_action
|
Off-by-one
|
Logsurfer
|
contextc
|
function
|
overflow
|
buffer
|
Off-by-one buffer overflow in the context_action function in context.c of Logsurfer 1.41 through 1.5a allows remote attackers to cause a denial of service (crash) via a malformed log entry.
Off-by-one error in certain versions of xfstt a
potentially
|
connection
|
Off-by-one
|
attackers
|
sensitive
|
handshake
|
malformed
|
versions
|
server's
|
response
|
request
|
certain
|
client
|
allows
|
memory
|
remote
|
which
|
leaks
|
xfstt
|
error
|
read
|
via
|
Off-by-one error in certain versions of xfstt allows remote attackers to read potentially sensitive memory via a malformed client request in the connection handshake, which leaks the memory in the server's response.
Off-by-one buffer overflow in _xlate_ascii_writ
Off-by-one
|
overflow
|
buffer
|
Off-by-one buffer overflow in _xlate_ascii_write() in ProFTPD 1.2.7 through 1.2.9rc2p allows local users to gain privileges via a 1024 byte RETR command.
Off-by-one error in the POP3_readmsg function i
POP3_readmsg
|
Off-by-one
|
popclient
|
attackers
|
function
|
service
|
denial
|
remote
|
allows
|
cause
|
error
|
30b6
|
Off-by-one error in the POP3_readmsg function in popclient 3.0b6 allows remote attackers to cause a denial of service (application crash) via an e-mail message with a certain line length, which leads to a buffer overflow.
Off-by-one error in the mysasl_canon_user funct
mysasl_canon_user
|
Off-by-one
|
function
|
Server
|
Cyrus
|
error
|
IMAP
|
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.
Off-by-one error in the mtr_curses_keyaction fu
mtr_curses_keyaction
|
Off-by-one
|
function
|
error
|
mtr
|
Off-by-one error in the mtr_curses_keyaction function for mtr 0.55 through 0.65 allows local users to hijack raw sockets, as demonstrated using the "s" keybinding, which leaves a buffer without a NULL terminator.
Off-by-one error in Halo Combat Evolved 1.04 an
Off-by-one
|
Evolved
|
Combat
|
error
|
Halo
|
Off-by-one error in Halo Combat Evolved 1.04 and earlier allows remote attackers to cause a denial of service (server crash) via a long client response.
Off-by-one buffer overflow in ModSecurity (mod_
ModSecurity
|
Off-by-one
|
overflow
|
buffer
|
Off-by-one buffer overflow in ModSecurity (mod_security) 1.7.4 for Apache 2.x, when SecFilterScanPost is enabled, allows remote attackers to execute arbitrary code via crafted POST requests.
The administration interface in Monit 1.4 throu
administration
|
off-by-one
|
attackers
|
interface
|
contains
|
overflow
|
through
|
allows
|
remote
|
Monit
|
cause
|
POST
|
via
|
The administration interface in Monit 1.4 through 4.2 allows remote attackers to cause an off-by-one overflow via a POST that contains 1024 bytes.
Multiple buffer overflows in Cyrus IMAPd before
overflows
|
Multiple
|
before
|
buffer
|
IMAPd
|
Cyrus
|
Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in "cached header handling," (3) a stack-based buffer overflow in fetchnews, or (4) a stack-based buffer overflow in imapd.
Off-by-one buffer overflow in Dnsmasq before 2.
Off-by-one
|
overflow
|
Dnsmasq
|
before
|
buffer
|
Off-by-one buffer overflow in Dnsmasq before 2.21 may allow attackers to execute arbitrary code via the DHCP lease file.
Off-by-one error in Pegasus Mail 4.21a through
Off-by-one
|
arbitrary
|
attackers
|
triggers
|
overflow
|
one-byte
|
message
|
execute
|
through
|
Pegasus
|
header
|
buffer
|
remote
|
allows
|
430PB1
|
which
|
email
|
error
|
Mail
|
421c
|
code
|
421a
|
long
|
via
|
Off-by-one error in Pegasus Mail 4.21a through 4.21c and 4.30PB1 allows remote attackers to execute arbitrary code via a long email message header, which triggers a one-byte buffer overflow.
Off-by-one error in the getfattr function in Fi
Off-by-one
|
getfattr
|
function
|
error
|
Off-by-one error in the getfattr function in File::ExtAttr before 0.03 allows attackers to trigger a buffer overflow via unspecified attack vectors.
Off-by-one error in TIN 1.8.0 and earlier might
Off-by-one
|
error
|
TIN
|
Off-by-one error in TIN 1.8.0 and earlier might allow attackers to execute arbitrary code via unknown vectors that trigger a buffer overflow.
Multiple off-by-one errors in src/text.c in Vil
Vilistextum
|
off-by-one
|
src/textc
|
Multiple
|
before
|
errors
|
Multiple off-by-one errors in src/text.c in Vilistextum before 2.6.9 have unknown impact and attack vectors.
Off-by-one error in the str_ireplace function i
str_ireplace
|
Off-by-one
|
function
|
error
|
PHP
|
Off-by-one error in the str_ireplace function in PHP 5.2.1 might allow context-dependent attackers to cause a denial of service (crash).
Software vulnerabilities results 1 to 20 of 261
Page:
1
2
3
4
5
...
14
►