CVE List

Id CVE No. Status Description Phase Votes Comments Actions
821  CVE-1999-0841  Candidate  Buffer overflow in CDE mailtool allows local users to gain root privileges via a long MIME Content-Type.  Modified (20071022)  ACCEPT(5) Armstrong, Baker, Cole, Dik, Stracener | MODIFY(1) Frech | REVIEWING(1) Prosser  Frech> XF:cde-mailtool-bo | Dik> bug 4163471 | (Root access is only possible when mail is send to root and he | uses dtmail to read it)  View
822  CVE-1999-0842  Entry  Symantec Mail-Gear 1.0 web interface server allows remote users to read arbitrary files via a .. (dot dot) attack.        View
823  CVE-1999-0843  Candidate  Denial of service in Cisco routers running NAT via a PORT command from an FTP client to a Telnet port.  Proposed (19991208)  ACCEPT(3) Balinsky, Cole, Stracener | MODIFY(1) Frech | NOOP(2) Armstrong, Baker | REVIEWING(3) Christey, Prosser, Ziese  Frech> XF:cisco-nat-dos | Christey> Mike Prosser"s REVIEWING vote expires July 17, 2000 | Ziese> After reviewing | http://www.cisco.com/warp/public/707/iostelnetopt-pub.shtml | I can not confirm this exists unless it"s restructred to | describe a problem against IOS per se; not NAT per se. I am | reviewing this and it may take some time. | CHANGE> [Christey changed vote from NOOP to REVIEWING] | Christey> Not sure if Kevin"s suggested reference really describes this | one. However, a followup email by Jim Duncan of Cisco does | acknowledge the problem as discussed in the Bugtraq post: | http://marc.theaimsgroup.com/?l=vuln-dev&m=94385601831585&w=2 | The original post is: | http://marc.theaimsgroup.com/?l=bugtraq&m=94184947504814&w=2 | | It could be that the researcher believed that the problem was | NAT, but in fact it wasn"t. | | I need to follow up with Ziese/Balinsky on this one.  View
824  CVE-1999-0844  Candidate  Denial of service in MDaemon WorldClient and WebConfig services via a long URL.  Proposed (19991208)  ACCEPT(2) Baker, Stracener | MODIFY(2) Cole, Frech | NOOP(1) Armstrong | RECAST(1) Christey | REVIEWING(1) Prosser  Cole> 823 and 820 are two different vulnerabilities and should be | separated out. They are both buffer overflows but accomplish it in a | different fashion and the end exploit is different. | Frech> (RECAST?) | XF:mdaemon-worldclient-dos | XF:mdaemon-webconfig-dos | Recast request: This is really two services exhibiting the same problem. | Christey> as suggested by others. | | Also see confirmation at: | http://mdaemon.deerfield.com/helpdesk/hotfix.cfm  View
825  CVE-1999-0845  Candidate  Buffer overflow in SCO su program allows local users to gain root access via a long username.  Proposed (19991208)  ACCEPT(4) Armstrong, Cole, Prosser, Stracener | MODIFY(1) Frech | RECAST(1) Baker | REVIEWING(1) Christey  Christey> DUPE CVE-1999-0317? | Frech> XF:sco-su-username-bo | Christey> ADDREF BID:826 | CONFIRM:ftp://ftp.sco.com/SSE/sse039.tar.Z  View

Page 165 of 20943, showing 5 records out of 104715 total, starting on record 821, ending on 825

Actions