Known Vulnerabilities for products from Conectiva

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Conectiva".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2012-5938 The installation process in IBM InfoSphere Information Server 8.1, 8.5, 8.7, and 9.1 on UNIX and Linux sets incorrect permiss... 7.2 - HIGH 2013-03-20 2017-08-29
CVE-2009-3048 Opera before 10.00 on Linux, Solaris, and FreeBSD does not properly implement the "INPUT TYPE=file" functionality, which allo... 4.3 - MEDIUM 2009-09-02 2017-09-19
CVE-2007-4137 Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a deni... 7.5 - HIGH 2007-09-18 2023-11-07
CVE-2005-3626 Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to ... 5 - MEDIUM 2005-12-31 2018-10-19
CVE-2005-3625 Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to ... 10 - HIGH 2005-12-31 2018-10-19
CVE-2005-3624 The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor,... 5 - MEDIUM 2005-12-31 2018-10-19
CVE-2005-1043 exif.c in PHP before 4.3.11 allows remote attackers to cause a denial of service (memory consumption and crash) via an EXIF h... 5 - MEDIUM 2005-04-14 2018-10-30
CVE-2005-0754 Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers ... 7.5 - HIGH 2005-04-22 2016-10-18
CVE-2005-0750 The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allo... 7.2 - HIGH 2005-03-27 2017-10-11
CVE-2005-0736 Integer overflow in sys_epoll_wait in eventpoll.c for Linux kernel 2.6 to 2.6.11 allows local users to overwrite kernel memor... 2.1 - LOW 2005-03-09 2023-11-07
CVE-2005-0699 Multiple buffer overflows in the dissect_a11_radius function in the CDMA A11 (3G-A11) dissector (packet-3g-a11.c) for Etherea... 7.5 - HIGH 2005-03-08 2017-10-11
CVE-2005-0373 Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin fo... 7.5 - HIGH 2004-10-07 2017-07-11
CVE-2005-0207 Unknown vulnerability in Linux kernel 2.4.x, 2.5.x, and 2.6.x allows NFS clients to cause a denial of service via O_DIRECT. 2.1 - LOW 2005-05-02 2017-10-11
CVE-2004-1337 The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a process t... 7.2 - HIGH 2004-12-23 2017-07-11
CVE-2004-1307 Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute ar... 7.5 - HIGH 2004-12-21 2018-10-30
CVE-2004-1235 Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc... 6.2 - MEDIUM 2005-04-14 2017-10-11
CVE-2004-1145 Multiple vulnerabilities in Konqueror in KDE 3.3.1 and earlier (1) allow access to restricted Java classes via JavaScript and... 5 - MEDIUM 2004-12-15 2017-10-11
CVE-2004-1142 Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (CPU consumption) via a certain malformed ... 5 - MEDIUM 2004-12-15 2017-10-11
CVE-2004-1139 Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 through 0.10.7 allows remote attackers to cause a denial of s... 5 - MEDIUM 2004-12-15 2017-10-11
CVE-2004-1029 The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does no... 9.3 - HIGH 2005-03-01 2017-10-11

Known software with vulnerabilities from Conectiva

Type Vendor Product Version
ApplicationConectivaEcommerce-
Operating
System
ConectivaLinux-