CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5631  CVE-2002-1247  Candidate  Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox  Cox> Addref: RHSA-2002:221 | Suggest mention of KDE in the description  View
5935  CVE-2002-1551  Candidate  Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Bollinger | NOOP(1) Cox | REVIEWING(1) Christey  Bollinger> IY34670 did not have a complete fix for this vulnerability. | The complete fix is found in IY40519. In addition, nslookup | completely drops privileges very early in the process. This buffer | overflow would not result in privilege increase. | Christey> If this overflow doesn"t cross privilege boundaries, then it"s | not security relevant and should be excluded from CVE.  View
4640  CVE-2002-0248  Candidate  wmtv 0.6.5 and earlier allows local users to modify arbitrary files via a symlink attack on a configuration file.  Proposed (20020502)  ACCEPT(3) Armstrong, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4652  CVE-2002-0260  Candidate  Buffer overflow in InstantServers MiniPortal 1.1.5 and earlier allows remote attackers to execute arbitrary code via a long login name, which is not properly handled by the logging utility.  Proposed (20020502)  ACCEPT(3) Armstrong, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
4653  CVE-2002-0261  Candidate  Directory traversal vulnerability in InstantServers MiniPortal 1.1.5 and earlier allows remote authenticated users to read arbitrary files via a ... (modified dot dot) in the GET command.  Proposed (20020502)  ACCEPT(3) Armstrong, Cole, Frech | NOOP(3) Cox, Foat, Wall    View

Page 20035 of 20943, showing 5 records out of 104715 total, starting on record 100171, ending on 100175

Actions