CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5211  CVE-2002-0821  Candidate  Buffer overflows in Ethereal 0.9.4 and earlier allow remote attackers to cause a denial of service or execute arbitrary code via (1) the BGP dissector, or (2) the WCP dissector.  Proposed (20020830)  ACCEPT(5) Baker, Cole, Cox, Foat, Green | MODIFY(1) Frech | NOOP(2) Christey, Wall  Frech> XF:ethereal-bgp-dissector-bo(9497) | XF:ethereal-wcp-dissector-bo(9498) | Christey> REDHAT:RHSA-2002:036 | URL:http://www.redhat.com/support/errata/RHSA-2002-036.html  View
5212  CVE-2002-0822  Candidate  Ethereal 0.9.4 and earlier allows remote attackers to cause a denial of service and possibly excecute arbitrary code via the (1) SOCKS, (2) RSVP, (3) AFS, or (4) LMP dissectors, which can be caused to core dump.  Modified (20080304)  ACCEPT(5) Baker, Cole, Cox, Foat, Green | MODIFY(1) Frech | NOOP(2) Christey, Wall  Frech> XF:ethereal-socks-dissector-dos(9493) | XF:ethereal-rsvp-dissector-dos(9494) | XF:ethereal-afs-dissector-dos(9495) | XF:ethereal-lmp-dissector-dos(9496) | Christey> REDHAT:RHSA-2002:036 | URL:http://www.redhat.com/support/errata/RHSA-2002-036.html  View
5213  CVE-2002-0823  Entry  Buffer overflow in Winhlp32.exe allows remote attackers to execute arbitrary code via an HTML document that calls the HTML Help ActiveX control (HHCtrl.ocx) with a long pathname in the Item parameter.        View
5214  CVE-2002-0824  Entry  BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specified as a tty device.        View
5215  CVE-2002-0825  Candidate  Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.  Proposed (20020830)  ACCEPT(4) Baker, Cole, Cox, Foat | NOOP(2) Christey, Wall  Christey> REDHAT:RHSA-2002:084 | Christey> REDHAT:RHSA-2002:084 | Christey> BUGTRAQ:20021013 GLSA: nss_ldap | | Need to determine if the nss_ldap-199 "read buffer overflow" | (basically an incomplete patch to this issue) should get | a different CAN. | Christey> MANDRAKE:MDKSA-2002:075 | Christey> CALDERA:CSSA-2002-058.0 | Christey> XF:nssldap-dns-query-dos(10578) | URL:http://www.iss.net/security_center/static/10578.php | BID:6130 | URL:http://www.securityfocus.com/bid/6130 | Christey> The Red Hat advisory suggests this is a format string issue, | not a buffer overflow. Also may need to mention the | pam_ldap module. | Christey> REDHAT:RHSA-2002:175  View

Page 1043 of 20943, showing 5 records out of 104715 total, starting on record 5211, ending on 5215

Actions