quickly software vulnerabilities
vulnerabilities.aspcode.net
Searching quickly software vulnerabilities
When the Microsoft SMTP service attempts to sen
repeatedly
|
redeliver
|
Microsoft
|
receives
|
attempts
|
service
|
causing
|
message
|
quickly
|
server
|
denial
|
error
|
send
|
SMTP
|
code
|
4xx
|
When the Microsoft SMTP service attempts to send a message to a server and receives a 4xx error code, it quickly and repeatedly attempts to redeliver the message, causing a denial of service.
Lucent/ORiNOCO WaveLAN cards generate predictab
Initialization
|
Lucent/ORiNOCO
|
predictable
|
generate
|
WaveLAN
|
Vector
|
cards
|
Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.
Starfish Truesync Desktop 2.0b as used on the R
Truesync
|
Starfish
|
Desktop
|
used
|
REX
|
20b
|
Starfish Truesync Desktop 2.0b as used on the REX 5000 PDA uses a small keyspace for device keys and does not impose a delay when an incorrect key is entered, which allows attackers to more quickly guess the key via a brute force attack.
3Com OfficeConnect Remote 812 ADSL Router, firm
OfficeConnect
|
Remote
|
3Com
|
3Com OfficeConnect Remote 812 ADSL Router, firmware 1.1.9 and 1.1.7, allows remote attackers to bypass port access restrictions by connecting to an approved port and quickly connecting to the desired port, which is allowed by the router.
The encryption algorithms for enable and passwd
techniques
|
algorithms
|
encryption
|
passwords
|
Firewall
|
executed
|
attacker
|
commands
|
limited
|
decrypt
|
quickly
|
easier
|
passwd
|
enable
|
rounds
|
number
|
using
|
force
|
brute
|
Cisco
|
which
|
make
|
due
|
can
|
PIX
|
The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords using brute force techniques.
The dtscreen Sun Solaris 8 CDE screensaver cras
screensaver
|
repeatedly
|
dtscreen
|
"Return"
|
pressed
|
session
|
current
|
quickly
|
crashes
|
"Shift"
|
Solaris
|
allows
|
access
|
users
|
local
|
which
|
keys
|
Sun
|
CDE
|
The dtscreen Sun Solaris 8 CDE screensaver crashes when the "Shift" and "Return" keys are pressed repeatedly and quickly, which allows local users to access the current session.
saned in sane-backends 1.0.7 and earlier does n
sane-backends
|
saned
|
saned in sane-backends 1.0.7 and earlier does not quickly handle connection drops, which allows remote attackers to cause a denial of service (segmentation fault) when invalid memory is accessed.
Sun Ray Server Software (SRSS) 1.3 and 2.0 for
Software
|
Server
|
Sun
|
Ray
|
Sun Ray Server Software (SRSS) 1.3 and 2.0 for Solaris 2.6, 7 and 8 does not properly detect a smartcard removal when the card is quickly removed, reinserted, and removed again, which could cause a user session to stay logged in and allow local users to gain unauthorized access.
Multiple race conditions in the terminal layer
conditions
|
terminal
|
Multiple
|
before
|
Linux
|
layer
|
race
|
26x
|
24x
|
Multiple race conditions in the terminal layer in Linux 2.4.x, and 2.6.x before 2.6.9, allow (1) local users to obtain portions of kernel data via a TIOCSETD ioctl call to a terminal interface that is being accessed by another thread, or (2) remote attackers to cause a denial of service (panic) by switching from console to PPP line discipline, then quickly sending data that is received during the switch.
Agnitum Outpost Pro Firewall 2.1 allows remote
attackers
|
Firewall
|
service
|
Agnitum
|
Outpost
|
denial
|
allows
|
remote
|
cause
|
Pro
|
Agnitum Outpost Pro Firewall 2.1 allows remote attackers to cause a denial of service (CPU consumption) via a flood of small, invalid packets, which can not be processed quickly enough by Outpost Pro.
The local and remote desktop login screens in M
Microsoft
|
screens
|
Windows
|
desktop
|
before
|
remote
|
login
|
local
|
SP2
|
The local and remote desktop login screens in Microsoft Windows XP before SP2 and 2003 allow remote attackers to cause a denial of service (CPU and memory consumption) by repeatedly using the WinKey+"U" key combination, which causes multiple copies of Windows Utility Manager to be loaded more quickly than they can be closed when the copies detect that another instance is running.
The administration protocol for Kerio WinRoute
administration
|
WinRoute
|
Firewall
|
protocol
|
Kerio
|
The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and MailServer up to 6.0.8 allows remote attackers to quickly obtain passwords that are 5 characters or less via brute force methods.
Memory leak in Windows Management Instrumentati
Instrumentation
|
Management
|
Windows
|
Memory
|
leak
|
Memory leak in Windows Management Instrumentation (WMI) service allows attackers to cause a denial of service (memory consumption and crash) by creating security contexts more quickly than they can be cleared from the RPC cache.
Cisco CallManager (CCM) 3.2 and earlier, 3.3 be
CallManager
|
Cisco
|
Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 does not quickly time out Realtime Information Server Data Collection (RISDC) sockets, which results in a "resource leak" that allows remote attackers to cause a denial of service (memory and connection consumption) in RisDC.exe.
memberd in Mac OS X 10.4 up to 10.4.2, in certa
memberd
|
Mac
|
memberd in Mac OS X 10.4 up to 10.4.2, in certain situations, does not quickly synchronize access control checks with changes in group membership, which could allow users to access files and other resources after they have been removed from a group.
Linux SCTP (lksctp) before 2.6.17 allows remote
Linux
|
SCTP
|
Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a receiver application that cannot process the messages quickly enough, which leads to "spillover of the receive buffer."
The VirusScan On-Access Scan component in McAfe
Enterprise
|
component
|
VirusScan
|
On-Access
|
McAfee
|
Scan
|
The VirusScan On-Access Scan component in McAfee VirusScan Enterprise 7.1.0 and Scan Engine 4.4.00 allows local privileged users to bypass security restrictions and disable the On-Access Scan option by opening the program via the task bar and quickly clicking the Disable button, possibly due to an interface-related race condition.
Intego VirusBarrier X4 allows context-dependent
context-dependent
|
VirusBarrier
|
protection
|
processing
|
filesystem
|
injecting
|
attackers
|
prevents
|
infected
|
quickly
|
allows
|
bypass
|
Intego
|
which
|
files
|
virus
|
many
|
into
|
all
|
Intego VirusBarrier X4 allows context-dependent attackers to bypass virus protection by quickly injecting many infected files into the filesystem, which prevents VirusBarrier from processing all the files.
Software vulnerabilities results 1 to 19 of 19
Page:
1