CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
891 | CVE-1999-0911 | Candidate | Buffer overflow in ProFTPD, wu-ftpd, and beroftpd allows remote attackers to gain root access via a series of MKD and CWD commands that create nested directories. | Modified (20050309) | ACCEPT(5) Baker, Blake, Cole, Prosser, Stracener | MODIFY(1) Frech | REVIEWING(1) Christey | Frech> XF:proftpd-long-dir-bo(3399) | Christey> Not absolutely sure if this isn"t the same as Palmetto | (CVE-1999-0368), which describes a similar type of overflow. | | NETBSD:NetBSD-SA1999-003 may refer to CVE-1999-0368: | ADDREF URL:ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA1999-003.txt.asc | Christey> ADDREF CIAC:J-068 | Include version numbers; too many wu-ftp/etc. problems | were published in summer/fall 1999 | View |
892 | CVE-1999-0912 | Entry | FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files. | View | |||
893 | CVE-1999-0913 | Candidate | dfire.cgi script in Dragon-Fire IDS allows remote users to execute commands via shell metacharacters. | Proposed (19991214) | ACCEPT(2) Blake, Stracener | MODIFY(1) Frech | NOOP(4) Armstrong, Baker, Cole, LeBlanc | REVIEWING(1) Christey | Christey> Some voters should use ABSTAIN. | Frech> XF:dragon-fire-ids-metachar(3834) | CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | View |
894 | CVE-1999-0914 | Entry | Buffer overflow in the FTP client in the Debian GNU/Linux netstd package. | View | |||
895 | CVE-1999-0915 | Entry | URL Live! web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. | View |
Page 179 of 20943, showing 5 records out of 104715 total, starting on record 891, ending on 895