CVE List

Id CVE No. Status Description Phase Votes Comments Actions
396  CVE-1999-0397  Candidate  The demo version of the Quakenbush NT Password Appraiser sends passwords across the network in plaintext.  Proposed (19990728)  ACCEPT(1) Northcutt | MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Wall  Wall> Reject based on beta copy. | Frech> XF:quakenbush-pw-appraiser(1652)  View
405  CVE-1999-0406  Candidate  Digital Unix Networker program nsralist has a buffer overflow which allows local users to obtain root privilege.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech  Frech> In description, change "which" to "that".  View
425  CVE-1999-0426  Candidate  The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.  Proposed (19990728)  MODIFY(1) Frech | NOOP(1) Baker | REJECT(1) Christey  Frech> XF:linux-dev-kmem-spoof | Christey> DUPE CVE-1999-0414 | XF:linux-dev-kmem-spoof does not exist. | Christey> *Now* XF:linux-dev-kmem-spoof(3500) exists...  View
426  CVE-1999-0427  Candidate  Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> Change version number to 4.2beta. Second to last paragraph in bugtraq | reference states: "Both the Win 95 and Win NT versions, along with the 4.2 | beta of Eudora are affected." | Christey> This issue seems to have been rediscovered in | BUGTRAQ:20000515 Eudora Pro & Outlook Overflow - too long filenames again | http://marc.theaimsgroup.com/?l=bugtraq&m=95842482413076&w=2 | | Also see | BUGTRAQ:19990320 Eudora Attachment Buffer Overflow | http://marc.theaimsgroup.com/?l=bugtraq&m=92195396912110&w=2 | | Is this a duplicate/subsumed by CVE-1999-0004?  View
433  CVE-1999-0434  Candidate  XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:xfree86-xfs-symlink-dos | Christey> Is this the same problem as CVE-1999-0433? CVE-1999-0433 | deals with a symlink attack on one file (/tmp/.X11-unix), | while xfs (this candidate) deals with /tmp/.font-unix | XF:xfree86-xfs-symlink-dos doesn"t exist. | Christey> ADDREF DEBIAN:19990331 symbolic link can be used to make any file world readable | Note: Debian"s advisory says that this is not a problem for Debian.  View

Page 20541 of 20943, showing 5 records out of 104715 total, starting on record 102701, ending on 102705

Actions