CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2750  CVE-2000-1183  Candidate  Buffer overflow in socks5 server on Linux allows attackers to execute arbitrary commands via a long connection request.  Proposed (20001219)  MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Wall  CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:linux-socks5-connection-bo(8376)  View
3598  CVE-2001-0791  Candidate  Trend Micro InterScan VirusWall for Windows NT allows remote attackers to make configuration changes by directly calling certain CGI programs, which do not restrict access.  Proposed (20011012)  MODIFY(1) Frech | NOOP(3) Armstrong, Cole, Foat | REVIEWING(1) Wall  Frech> XF:interscan-viruswall-change-configuration(6641)  View
CVE-1999-0001  Candidate  ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.  Modified (20051217)  MODIFY(1) Frech | NOOP(2) Northcutt, Wall | REVIEWING(1) Christey  Christey> A Bugtraq posting indicates that the bug has to do with | "short packets with certain options set," so the description | should be modified accordingly. | | But is this the same as CVE-1999-0052? That one is related | to nestea (CVE-1999-0257) and probably the one described in | BUGTRAQ:19981023 nestea v2 against freebsd 3.0-Release | The patch for nestea is in ip_input.c around line 750. | The patches for CVE-1999-0001 are in lines 388&446. So, | CVE-1999-0001 is different from CVE-1999-0257 and CVE-1999-0052. | The FreeBSD patch for CVE-1999-0052 is in line 750. | So, CVE-1999-0257 and CVE-1999-0052 may be the same, though | CVE-1999-0052 should be RECAST since this bug affects Linux | and other OSes besides FreeBSD. | Frech> XF:teardrop(338) | This assignment was based solely on references to the CERT advisory. | Christey> The description for BID:190, which links to CVE-1999-0052 (a | FreeBSD advisory), notes that the patches provided by FreeBSD in | CERT:CA-1998-13 suggest a connection between CVE-1999-0001 and | CVE-1999-0052. CERT:CA-1998-13 is too vague to be sure without | further analysis.  View
3007  CVE-2001-0186  Candidate  Directory traversal vulnerability in Free Java Web Server 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack.  Proposed (20010309)  MODIFY(1) Frech | NOOP(2) Lawler, Ziese  Lawler> Very little info available. | Frech> XF:free-java-directory-traversal(6064)  View
3020  CVE-2001-0199  Candidate  Directory traversal vulnerability in SEDUM HTTP Server 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the HTTP GET request.  Modified (20050509)  MODIFY(1) Frech | NOOP(2) Lawler, Ziese  Frech> XF:sedum-directory-traversal(6063)  View

Page 19839 of 20943, showing 5 records out of 104715 total, starting on record 99191, ending on 99195

Actions