CVE List

Id CVE No. Status Description Phase Votes Comments Actions
639  CVE-1999-0657  Candidate  WinGate is being used.  Proposed (19990804)  ACCEPT(1) Baker | NOOP(1) Wall | REJECT(1) Northcutt    View
644  CVE-1999-0662  Candidate  A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete.  Proposed (19990804)  ACCEPT(4) Baker, Hill, Northcutt, Wall    View
645  CVE-1999-0663  Candidate  A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified.  Proposed (19990804)  ACCEPT(3) Baker, Hill, Wall | RECAST(1) Northcutt  Northcutt> This needs to be worded carefully. | 1. Rootkits evade checksum detection. | 2. The modification could be positive (a patch)  View
798  CVE-1999-0818  Candidate  Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.  Proposed (19991208)  ACCEPT(2) Armstrong, Stracener | MODIFY(4) Cole, Dik, Frech, Prosser | NOOP(1) Baker | REVIEWING(1) Christey  Cole> This can cause code to be executed. | Frech> XF:sol-kcms-conf-netpath-bo | Dik> the bug has nothing to do with kcms_configure; it"s a bug | in libnsl.so. All set-uid executables that trigger this code path are | vulnerable. Sun bug 4295834; fixed in Solaris 8. | Prosser> Okay, I am confused. Based on Casper"s comments and checking | on the Sun patch site, I found the 4295834 bug(4295834 NETPATH security | problem in libnsl) fixed in SunOS 5.4, Patch 101974-37(x86) 101973 (sparc). | Multiple libnsl vulnerabilities was first reported in an 98 Sun Bulletin | #00172 for 5.4 up through 2.6. Was this NETPATH a problem that resurfaced | in 7 (looks like in 5.4 as well) and was fixed in 8? | Christey> Need to dig up my offline email on this. | Christey> May be a duplicate of CVE-1999-0321, whose sole reference | (XF:sun-kcms-configure-bo) no longer exists. Also examine | BID:452 and | BUGTRAQ:19981223 Merry Christmas to Sun! (Was: L0pht NFR N-Code | Modules Updated) | | which are the same as XF:sol-kcms-conf-p-bo(3652), which could | be the new name for XF:sun-kcms-configure-bo.  View
801  CVE-1999-0821  Candidate  FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.  Proposed (19991208)  ACCEPT(2) Armstrong, Stracener | MODIFY(1) Frech | NOOP(2) Baker, Christey | REJECT(1) Cole | REVIEWING(1) Prosser  Cole> I would combine this with the previous. To me the general | vulnerabilities are similar it is just the end result that changes. | Frech> XF:freebsd-seyon-setgid | Christey> ADDREF? CALDERA:CSSA-1999-037.0  View

Page 20549 of 20943, showing 5 records out of 104715 total, starting on record 102741, ending on 102745

Actions