CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5274  CVE-2002-0884  Candidate  Multiple format string vulnerabilities in in.rarpd (ARP server) on Solaris, Caldera UnixWare and Open UNIX, and possibly other operating systems, allows remote attackers to execute arbitrary code via format strings that are not properly handled in the functions (1) syserr and (2) error.  Proposed (20020830)  ACCEPT(5) Alderson, Armstrong, Baker, Cole, Frech | MODIFY(1) Jones | NOOP(3) Christey, Cox, Foat  Jones> Suggest description: "...allows remote attackers to execute | arbitrary code via the functions (1) syserr and | (2) error." | Christey> Correction: this is a RARP (Reverse Address Resolution | Protocol) server. | | A colleague of mine with access to Solaris source has noted | that the affected syslog calls can not be fed user-supplied | data, at least for Solaris; if so, then this is not a vulnerability. | Baker> I think you leave the description as it specifies how the attacker is able to execute arbitrary commands.  View
5276  CVE-2002-0886  Candidate  Cisco DSL CPE devices running CBOS 2.4.4 and earlier allows remote attackers to cause a denial of service (hang or memory consumption) via (1) a large packet to the DHCP port, (2) a large packet to the Telnet port, or (3) a flood of large packets to the CPE, which causes the TCP/IP stack to consume large amounts of memory.  Modified (20050601)  ACCEPT(5) Alderson, Armstrong, Baker, Cole, Frech | NOOP(2) Cox, Foat | RECAST(1) Jones  Jones> A single large packet DoS to a listening service (which sounds | like a buffer overflow) seems like a different vulnerability than multiple | large packets (which is admittedly resource consumption). Suggest SPLIT | into two items, prolems 1 and 2 in A, and problem 3 in B.  View
4956  CVE-2002-0565  Candidate  Oracle 9iAS 1.0.2.x compiles JSP files in the _pages directory with world-readable permissions under the web root, which allows remote attackers to obtain sensitive information derived from the JSP code, including usernames and passwords, via a direct HTTP request to _pages.  Proposed (20020611)  ACCEPT(5) Alderson, Baker, Cole, Frech, Wall | NOOP(2) Cox, Foat    View
4957  CVE-2002-0566  Candidate  PL/SQL module 3.0.9.8.2 in Oracle 9i Application Server 1.0.2.x allows remote attackers to cause a denial of service (crash) via an HTTP Authorization header without an authentication type.  Proposed (20020611)  ACCEPT(5) Alderson, Baker, Cole, Frech, Wall | NOOP(2) Cox, Foat    View
4180  CVE-2001-1376  Candidate  Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.  Proposed (20020611)  ACCEPT(5) Alderson, Cole, Cox, Frech, Green | NOOP(2) Foat, Wall    View

Page 1051 of 20943, showing 5 records out of 104715 total, starting on record 5251, ending on 5255

Actions