CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5860 | CVE-2002-1476 | Entry | Buffer overflow in setlocale in libc on NetBSD 1.4.x through 1.6, and possibly other operating systems, when called with the LC_ALL category, allows local attackers to execute arbitrary code via a user-controlled locale string that has more than 6 elements, which exceeds the boundaries of the new_categories category array, as exploitable through programs such as xterm and zsh. | View | |||
5859 | CVE-2002-1475 | Candidate | Unknown vulnerability in the ARP component for HP Tru64 UNIX 4.0f, 4.0g, and 5.0a allows remote attackers to "take over packets destined for another host" and cause a denial of service. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | NOOP(1) Cox | View | |
5858 | CVE-2002-1474 | Candidate | Unknown vulnerability or vulnerabilities in TCP/IP component for HP Tru64 UNIX 4.0f, 4.0g, and 5.0a allows remote attackers to cause a denial of service. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | NOOP(1) Cox | View | |
5857 | CVE-2002-1473 | Candidate | Multiple buffer overflows in lp subsystem for HP-UX 10.20 through 11.11 (11i) allow local users to cause a denial of service and possibly execute arbitrary code. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | NOOP(1) Cox | REVIEWING(1) Christey | Christey> In 2003, the "disable" command was reported to have a | vuln. that was fixed by the HP advisory in this candidate: | | BUGTRAQ:20030213 HPUX disable buffer overflow vulnerability | URL:http://www.securityfocus.com/archive/1/311791 | | BUGTRAQ:20030214 HPUX disable buffer overflow vulnerability | URL:http://www.securityfocus.com/archive/1/311915 | | Should CVE-2002-1473 be updated to include this later-reported | issue? Or should it gets its own ID? | View |
5856 | CVE-2002-1472 | Entry | Untrusted search path vulnerability in libX11.so in xfree86, when used in setuid or setgid programs, allows local users to gain root privileges via a modified LD_PRELOAD environment variable that points to a malicious module. | View |
Page 19772 of 20943, showing 5 records out of 104715 total, starting on record 98856, ending on 98860