CVE List

Id CVE No. Status Description Phase Votes Comments Actions
526  CVE-1999-0529  Candidate  A router or firewall forwards packets that claim to come from IANA reserved or private addresses, e.g. 10.x.x.x, 127.x.x.x, 217.x.x.x, etc.  Proposed (19990726)  ACCEPT(1) Frech | MODIFY(2) Baker, Meunier | REJECT(1) Northcutt  Northcutt> I have seen ISPs "assign" private addresses within their domain | Meunier> A border router or firewall forwards packets that claim to come from IANA | reserved or private addresses, e.g. 10.x.x.x, 127.x.x.x, 217.x.x.x, | etc, outside of their area of validity. | CHANGE> [Frech changed vote from REVIEWING to ACCEPT] | Baker> I think the description should be modified to say they accept this type of traffic from an interface not residing on private/reserved network.  View
527  CVE-1999-0530  Candidate  A system is operating in "promiscuous" mode which allows it to perform packet sniffing.  Proposed (19990728)  ACCEPT(2) Baker, Northcutt | MODIFY(1) Frech | REJECT(1) Shostack  Frech> XF:etherstatd(264) | XF:sniffer-attack(778) | XF:decod-packet-capture-remote(1072) | XF:netmon-running(1448) | XF:netxray3-probe(1450) | XF:sol-snoop-getquota-bo(3670) (also assigned to CVE-1999-0974) | Baker> Does pose a problem in non-switched environments  View
528  CVE-1999-0531  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "An SMTP service supports EXPN, VRFY, HELP, ESMTP, and/or EHLO."  Modified (20080731)  MODIFY(1) Frech | NOOP(1) Christey | RECAST(1) Shostack | REJECT(1) Northcutt  Shostack> I think expn != vrfy, help, esmtp. | Frech> XF:lotus-domino-esmtp-bo(4499) (also assigned to CVE-2000-0452 and | CVE-2000-1046) | XF:smtp-expn(128) | XF:smtp-vrfy(130) | XF:smtp-helo-bo(886) | XF:smtp-vrfy-bo(887) | XF:smtp-expn-bo(888) | XF:slmail-vrfyexpn-overflow(1721) | XF:smtp-ehlo(323) | | Perhaps add RCPT? If so, add XF:smtp-rcpt(1928) | Christey> XF:smtp-vrfy(130) ?  View
529  CVE-1999-0532  Candidate  A DNS server allows zone transfers.  Proposed (19990726)  MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Northcutt  Northcutt> (With split DNS implementations this is quite appropriate) | Frech> XF:dns-zonexfer  View
530  CVE-1999-0533  Candidate  A DNS server allows inverse queries.  Proposed (19990726)  MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Northcutt  Northcutt> (rule of thumb) | Frech> XF:dns-iquery  View

Page 106 of 20943, showing 5 records out of 104715 total, starting on record 526, ending on 530

Actions