CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
61 | CVE-1999-0061 | Candidate | File creation and deletion, and remote execution, in the BSD line printer daemon (lpd). | Proposed (19990630) | ACCEPT(3) Frech, Hill, Northcutt | RECAST(1) Baker | REVIEWING(1) Christey | Christey> This should be split into three separate problems based on | the SNI advisory. But there"s newer information to further | complicate things. | | What do we do about this one? in 1997 or so, SNI did an | advisory on this problem. In early 2000, it was still | discovered to be present in some Linux systems. So an | SF-DISCOVERY content decision might say that this is a | long enough time between the two, so this should be recorded | separately. But they"re the same codebase... so if we keep | them in the same entry, how do we make sure that this entry | reflects that some new information has been discovered? | | The use of dot notation may help in this regard, to use one | dot for the original problem as discovered in 1997, and | another dot for the resurgence of the problem in 2000. | Baker> We should merge these. | Christey> Perhaps this should be NAI-19 instead of NAI-20? | The original Bugtraq post for the SNI advisory suggests SNI-19: | BUGTRAQ:19971002 SNI-19:BSD lpd vulnerability | URL:SNI-19:BSD lpd vulnerability | | Also add: | BUGTRAQ:19971021 SNI-19: BSD lpd vulnerabilities (UPDATE) | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=87747479514310&w=2 | | However, archives of "NAI-0020" point to the lpd vuln. | | If I recall correctly, some of the NAI advisory numbers got | switched when NAI acquired SNI. | View |
62 | CVE-1999-0062 | Entry | The chpass command in OpenBSD allows a local user to gain root access through file descriptor leakage. | View | |||
63 | CVE-1999-0063 | Entry | Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port. | View | |||
64 | CVE-1999-0064 | Entry | Buffer overflow in AIX lquerylv program gives root access to local users. | View | |||
65 | CVE-1999-0065 | Entry | Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands. | View |
Page 13 of 20943, showing 5 records out of 104715 total, starting on record 61, ending on 65