CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4480 | CVE-2002-0086 | Candidate | Buffer overflow in bindsock in Lotus Domino 5.0.4 and 5.0.7 on Linux allows local users to gain root privileges via a long (1) Notes_ExecDirectory or (2) PATH environment variable. | Modified (20050528) | ACCEPT(3) Cole, Foat, Green | MODIFY(1) Balinsky | NOOP(3) Christey, Wall, Ziese | Christey> Consider adding BID:4317 | Christey> Consider adding BID:4319 | CHANGE> [Balinsky changed vote from ACCEPT to MODIFY] | Balinsky> Should say 5.0.4 through 5.0.9 (not including version 5.0.9a, which includes the fix) | Balinsky> Additional Modification: Should say "Linux and Solaris" | CHANGE> [Foat changed vote from NOOP to ACCEPT] | Christey> CONFIRM:http://www-1.ibm.com/support/manager.wss?rs=463&rt=0&org=sims&doc=92579CFD6F92B39A85256B7D006AC89B | CONFIRM:http://www-1.ibm.com/support/manager.wss?rs=463&rt=0&org=sims&doc=D52DF997ABFFFC8385256B7D0062AD5C | VULNWATCH:20020429 [VulnWatch] eSecurityOnline Security Advisory 4126 - Lotus Domino bindsock Notes_ExecDirectory buffer overflow vulnerability | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0046.html | VULNWATCH:20020429 [VulnWatch] eSecurityOnline Security Advisory 4124 - Lotus Domino bindsock PATH buffer overflow vulnerability | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0044.html | View |
4891 | CVE-2002-0499 | Candidate | The d_path function in Linux kernel 2.2.20 and earlier, and 2.4.18 and earlier, truncates long pathnames without generating an error, which could allow local users to force programs to perform inappropriate operations on the wrong directories. | Proposed (20020611) | ACCEPT(3) Cole, Foat, Frech | NOOP(3) Armstrong, Cox, Wall | REVIEWING(1) Christey | CHANGE> [Cox changed vote from REVIEWING to ACCEPT] | CHANGE> [Cox changed vote from ACCEPT to NOOP] | Christey> Need to investigate this more... is it the responsibility | of the kernel to address this, or the application | programmer? | View |
3333 | CVE-2001-0519 | Candidate | Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangement of HTML tags which includes SCRIPT tags embedded within other SCRIPT tags. | Proposed (20010727) | ACCEPT(3) Cole, Foat, Frech | NOOP(2) Wall, Ziese | REVIEWING(1) Bishop | View | |
3487 | CVE-2001-0679 | Candidate | A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a long HELO command to the server. | Proposed (20010912) | ACCEPT(3) Cole, Foat, Frech | NOOP(1) Wall | REJECT(1) Christey | Christey> Whoops, DUPE CVE-1999-1529. | View |
1540 | CVE-1999-1560 | Candidate | Vulnerability in a script in Texas A&M University (TAMU) Tiger allows local users to execute arbitrary commands as the Tiger user, usually root. | Proposed (20010912) | ACCEPT(3) Cole, Foat, Frech | NOOP(1) Wall | View |
Page 19982 of 20943, showing 5 records out of 104715 total, starting on record 99906, ending on 99910