CVE List
| Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
|---|---|---|---|---|---|---|---|
| 3749 | CVE-2001-0943 | Candidate | dbsnmp in Oracle 8.0.5 and 8.1.5, under certain conditions, trusts the PATH environment variable to find and execute the (1) chown or (2) chgrp commands, which allows local users to execute arbitrary code by modifying the PATH to point to Trojan Horse programs. | Modified (20050702) | ACCEPT(6) Armstrong, Baker, Cole, Foat, Green, Wall | MODIFY(1) Frech | Frech> XF:oracle-dbsnmp-path-gain-privileges(7644) | View |
| 3322 | CVE-2001-0505 | Candidate | Multiple memory leaks in Microsoft Services for Unix 2.0 allow remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed requests to (1) the Telnet service, or (2) the NFS service. | Modified (20050509) | ACCEPT(6) Armstrong, Baker, Cole, Foat, Oliver, Wall | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:sfu-telnet-dos(6883) | XF:sfu-nfs-dos(6882) | Christey> BID:3090 | URL:http://www.securityfocus.com/bid/3090 | BID:3089 | URL:http://www.securityfocus.com/bid/3089 | View |
| 3522 | CVE-2001-0714 | Candidate | Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to cause a denial of service (data loss) by (1) setting a high initial message hop count option (-h), which causes Sendmail to drop queue entries, (2) via the -qR option, or (3) via the -qS option. | Modified (20050704) | ACCEPT(6) Armstrong, Baker, Cole, Foat, Prosser, Wall | MODIFY(1) Frech | NOOP(1) Christey | Frech> XF:sendmail-queue-dos(7190) | Christey> ADDREF SGI:20011101-01-I | Christey> CALDERA:CSSA-2001-034.0 | URL:http://www.calderasystems.com/support/security/advisories/CSSA-2001-034.0.txt | BID:3378 | URL:http://www.securityfocus.com/bid/3378 | CIAC:M-020 | URL:http://ciac.llnl.gov/ciac/bulletins/m-020.shtml | View |
| 3779 | CVE-2001-0974 | Candidate | Format string vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | Modified (20020416-01) | ACCEPT(6) Armstrong, Baker, Cole, Frech, Green, Wall | NOOP(1) Foat | View | |
| 3780 | CVE-2001-0975 | Candidate | Buffer overflow vulnerabilities in Oracle Internet Directory Server (LDAP) 2.1.1.x and 3.0.1 allow remote attackers to execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | Modified (20020416-01) | ACCEPT(6) Armstrong, Baker, Cole, Frech, Green, Wall | NOOP(1) Foat | View |
Page 1085 of 20943, showing 5 records out of 104715 total, starting on record 5421, ending on 5425