CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1103  CVE-1999-1123  Candidate  The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1059621  View
1191  CVE-1999-1211  Candidate  Vulnerability in in.telnetd in SunOS 4.1.1 and earlier allows local users to gain root privileges.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Frech> CONFIRM:Sun Microsystems, Inc. Security Bulletin #00106 at | http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/1 | 06&type=0&nav=sec.sba | Dik> sun bug: 1054669 1049886 1042370 1033809  View
1447  CVE-1999-1467  Candidate  Vulnerability in rcp on SunOS 4.0.x allows remote attackers from trusted hosts to execute arbitrary commands as root, possibly related to the configuration of the nobody user.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1028958  View
1192  CVE-1999-1212  Candidate  Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1054669 1049886 1042370 1033809  View
193  CVE-1999-0193  Candidate  Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.  Proposed (19990714)  ACCEPT(5) Bishop, Cole, Northcutt, Ozancin, Shostack | MODIFY(2) Baker, Blake | NOOP(4) Armstrong, Frech, Landfield, Wall | REVIEWING(2) Christey, Levy  Frech> possibly XF:ascend-kill | I can"t find a reference that lists both routers in the same reference. | Wall> Comment: There is a reference about the zero length TCP option in BugTraq on | Feb 5, 1999 | and it mentions Cisco, but not directly Ascend or 3Com. CIAC Advisory I-038 | mentions | vulnerabilities in Ascend, but does not mention TCP. CIAC Advisory I-052 | mentions | 3Com vulnerabilities, but not TCP. Too confusing withour better references. | Landfield> What are the references for this ? I cannot find a means to check it out. | CHANGE> [Frech changed vote from REVIEWING to NOOP] | Frech> Cannot reconcile to our database without further references. | Blake> I"m with Andre. I only remember and can find reference to the Ascend | issue. Do we have a refernce to the 3Coms? If not, that should be | removed from the description. | Baker> http://xforce.iss.net/static/614.php Misc Defensive Info | http://www.securityfocus.com/archive/1/5682 Misc Offensive Info | http://www.securityfocus.com/archive/1/5647 Misc Defensive Info | http://www.securityfocus.com/archive/1/5640 Misc Defensive Info | CHANGE> [Armstrong changed vote from REVIEWING to NOOP]  View

Page 19870 of 20943, showing 5 records out of 104715 total, starting on record 99346, ending on 99350

Actions