| OSVDB ID | Disclosure Date | Title |
|
52912
Description:
(Description Provided by CVE) : The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and earlier and (2) KVM kvm-79 and earlier allows remote attackers to cause a denial of service (infinite loop) via a certain message.
|
2008-12-22
|
QEMU VNC Server vnc.c protocol_client_msg Function Crafted Message Remote DoS
|
|
74752
Description:
(Description Provided by CVE) : The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host.
|
2011-07-25
|
qemu-kvm -runas Option Local Privilege Escalation
|
|
67473
Description:
(Description Provided by CVE) : The subpage MMIO initialization functionality in the subpage_register function in exec.c in QEMU-KVM, as used in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and KVM 83, does not properly select the index for access to the callback array, which allows guest OS users to cause a denial of service (guest OS crash) or possibly gain privileges via unspecified vectors.
|
2010-07-28
|
QEMU-KVM exec.c subpage_register Function MMIO Initialization Callback Array Access Guest OS DoS
|
|
67475
Description:
(Description Provided by CVE) : QEMU-KVM, as used in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and KVM 83, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.
|
2010-02-26
|
QEMU-KVM Hypervisor Guest QXL Driver Pointer Validation Weakness Guest OS DoS
|
|
67477
Description:
(Description Provided by CVE) : libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.
|
2010-02-26
|
QEMU-KVM Hypervisor libspice Guest QXL Driver Pointer Validation Weakness Guest OS DoS
|
|
67476
Description:
(Description Provided by CVE) : libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly restrict the addresses upon which memory-management actions are performed, which allows guest OS users to cause a denial of service (guest OS crash) or possibly gain privileges via unspecified vectors.
|
2010-02-26
|
QEMU-KVM Hypervisor libspice Memory Management Address Restriction Bypass Guest OS DoS
|
|
40496
Description:
(Description Provided by CVE) : The DataLoader::doStart function in dataloader.cpp in QGit 1.5.6 and other versions up to 2pre1 allows local users to overwrite arbitrary files and execute arbitrary code via a symlink attack on temporary files with predictable filenames.
|
2007-08-30
|
QGit dataloader.cpp DataLoader::doStart() Symlink Arbitrary File Overwrite
|
|
71031
Description:
Qi Bo CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the member/list.php script not properly sanitizing user-supplied input to the 'aidDB[]' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-02-18
|
Qi Bo CMS member/list.php aidDB[] Parameter SQL Injection
|
|
71810
Description:
QianBo Enterprise Web Site Management System contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'Keyword' parameters upon submission to the 'Search.Asp' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-04-14
|
QianBo Enterprise Web Site Management System Search.Asp Keyword Parameter XSS
|
|
79750
Description:
The QianXun YingShi application for Android contains an unspecified flaw that may allow a remote attacker to have an unspecified impact. No further details have been provided.
|
2012-03-01
|
QianXun YingShi (com.qianxun.yingshi) Application for Android Unspecified Issue
|
|
51755
Description:
(Description Provided by CVE) : QIP 2005 build 8082 allows remote attackers to cause a denial of service (CPU consumption and application hang) via a crafted Rich Text Format (RTF) ICQ message, as demonstrated by an {\rtf\pict\&&} message. NOTE: the vulnerability may be in Sergey Tkachenko TRichView. If so, then this should not be treated as a vulnerability in QIP.
|
2009-02-04
|
QIP Crafted RTF Format ICQ Message Handling DoS
|
|
78588
Description:
QIWI Wallet Application for Android contains a flaw related that may allow a remote attacker to access and manipulate a user's financial data.
|
2011-12-14
|
QIWI Wallet (ru.mw) Application for Android Unspecified User Financial Data Manipulation
|
|
25786
Description:
(Description Provided by CVE) : SQL injection vulnerability in member.asp in qjForum allows remote attackers to execute arbitrary SQL commands via the uName parameter.
|
2006-05-25
|
qjForum member.asp uName Parameter SQL Injection
|
|
43533
Description:
(Description Provided by CVE) : QK SMTP Server 3 allows remote attackers to cause a denial of service (daemon crash) via a long (1) HELO, (2) MAIL FROM, or (3) RCPT TO command; or (4) a long string in the message sent after the DATA command; possibly a related issue to CVE-2006-5551.
|
2007-12-12
|
QK SMTP Server Multiple Command Remote DoS
|
|
29991
Description:
(Description Provided by CVE) : Stack-based buffer overflow in QK SMTP 3.01 and earlier might allow remote attackers to execute arbitrary code via a long argument to the RCPT TO command.
|
2006-10-23
|
QK SMTP Server RCPT TO Command Remote Overflow
|
|
91233
Description:
QlikView contains an integer overflow condition in the .qvw file format parser. The issue is triggered as user-supplied input is not properly validated when an unspecified parameter that is responsible for section length is not properly checked. This may allow a context-dependent attacker to cause a heap overflow, resulting in a denial of service or potentially allowing the execution of arbitrary code.
|
2013-03-13
|
QlikView .qvw File Format Parser Integer Overflow
|
|
24301
Description:
qliteNews contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the loginprocess.php script not properly sanitizing user-supplied input to the 'username' or 'password' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-03-30
|
qliteNews loginprocess.php Multiple Parameter SQL Injection
|
|
24291
Description:
QLnews contains a flaw that may allow a malicious user to execute arbitrary code. The issue is due to the the administrator having permission to add any content to the config.php script. Once modified to contain arbitrary PHP code, an attacker can call the script directly to execute the code.
|
2006-03-30
|
QLnews config.php Arbitrary PHP Code Execution
|
|
24290
Description:
QLnews contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'autorx' and 'newsx' variables upon submission to the news.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-03-30
|
QLnews news.php Multiple Parameter XSS
|
|
16344
Description:
A remote overflow exists in qmail when running on 64 bit platforms with 8GB of virtual memory or more. The 'commands()' function fails to perform proper bounds checking resulting in an integer overflow. With a specially crafted request, a remote attacker can cause the process to crash resulting in a loss of availability.
|
2005-05-06
|
qmail commands.c Signed Index Issue
|
|
56527
Description:
(Description Provided by CVE) : Denial of service in Qmail through long SMTP commands.
|
1997-06-11
|
qmail Long SMTP Command Saturation Remote DoS
|
|
3538
Description:
qmail contains a flaw that may allow a remote denial of service. The issue is triggered when an attacker initiates an exceptionally long SMTP session, and will result in loss of availability for the session.
|
2004-01-15
|
qmail Long SMTP Session DoS
|
|
50546
Description:
(Description Provided by CVE) : Gazatem QMail Mailing List Manager 1.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for qmail.mdb.
|
2008-12-07
|
QMail Mailing List Manager database/qmail.mdb Direct Request Database Disclosure
|
|
5850
Description:
qmail-smtpd contains a flaw that may allow a remote denial of service. The issue is triggered by sending an email with a large number of recipient addresses. Qmail will attempt to process such message, which will consume all memory on the server host, and will result in loss of availability for this computer.
|
1997-06-12
|
qmail RCPT TO Command Remote Overflow DoS
|
|
16343
Description:
A remote overflow exists in qmail when running on 64 bit platforms with 8 GB virtual memory or more. The 'stralloc_readyplus()' function fails to perform proper bounds checking resulting in an integer overflow. With a specially crafted request, a remote attacker can cause the SMTP service to crash resulting in a loss of availability.
|
2005-05-06
|
qmail stralloc_readyplus Function Remote Overflow
|
|
16345
Description:
A remote overflow exists in qmail when running on 64 bit platforms with 4GB of virtual memory or more. The 'substdio_put()' function fails to perform proper bounds checking resulting in an integer overflow. With a specially crafted request, a remote attacker can cause the qmail process to crash resulting in a loss of availability.
|
2005-05-06
|
qmail substdio_put Function Signedness Issue
|
|
23948
Description:
qmailadmin contains a flaw that may allow a local user to execute privileged commands. The issue occured when a user would use the "Modify User" screen to configure their account to forward email to an arbitrary program on the server. The program would run with vpopmail user privileges (usually significantly higher than a regular user) allowing for privileged command execution.
|
2003-07-24
|
qmailadmin Arbitrary Program Mail Forward Privilege Escalation
|
|
2440
Description:
A remote overflow exists in the 'autorespond' utility included in the qmailadmin package. autorespond fails to perform boundary checks when copying environment variables set by the Mail Transfer Agent (MTA). With a specially crafted request, an attacker can cause a buffer overflow resulting in a loss of integrity and availability.
|
2003-08-18
|
qmailadmin autorespond Multiple Variable Remote Overflow
|
|
23705
Description:
A local overflow exists in qmailadmin. The program fails to properly check input reveived from the PATH_INFO environment variable resulting in a buffer overflow. With a specially crafted request, an attacker can cause the execution of arbitrary code resulting in a loss of integrity.
|
2006-02-20
|
qmailadmin qmailadmin.c PATH_INFO Environment Variable Local Overflow
|
|
14533
Description:
A local overflow exists in qmailadmin. The CGI program fails to do proper boundary checking when processing environment variables resulting in a stack overflow. With a specially crafted request, an attacker can run arbitatry code on the server resulting in a loss of integrity.
|
2002-08-05
|
qmailadmin QMAILADMIN_TEMPLATEDIR Environment Variable Local Overflow
|