CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1822  CVE-2000-0244  Candidate  The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.  Proposed (20000412)  ACCEPT(2) Levy, Magdych | MODIFY(1) Frech | NOOP(2) Baker, Cole  Frech> XF:citrix-encryption  View
1828  CVE-2000-0250  Candidate  The crypt function in QNX uses weak encryption, which allows local users to decrypt passwords.  Proposed (20000426)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:qnx-weak-encryption(4866)  View
1837  CVE-2000-0259  Candidate  The default permissions for the CryptographyOffload registry key used by the OffloadModExpo in Windows NT 4.0 allows local users to obtain compromise the cryptographic keys of other users.  Proposed (20000426)  ACCEPT(4) Baker, Cole, Levy, Wall | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:winnt-cryptkeys-compromise | Christey> Include "CryptoAPI" to facilitate search. | MSKB:Q259496 | URL:http://www.microsoft.com/technet/support/kb.asp?ID=259496  View
1844  CVE-2000-0266  Candidate  Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a malicious applet that interacts with the Java JSObject to modify the DOM properties to set the IFRAME to an arbitrary Javascript URL.  Proposed (20000426)  ACCEPT(5) Baker, Cole, LeBlanc, Levy, Wall | MODIFY(1) Frech | REVIEWING(1) Christey  Frech> XF:ie-java-crossframe-security | Christey> May be a duplicate of CVE-2000-0465 according to my | communications with Microsoft people. CVE-2000-0028 may | also be a variant. | LeBlanc> MS00-039  View
1847  CVE-2000-0269  Candidate  Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess.  Proposed (20000426)  ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Christey> ADDREF XF:emacs-local-eavesdrop | Verify BID for this - is it 1125, 1126, or 1127? | Also, ADDREF CALDERA:CSSA-2000-011.1 ?? | URL:ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-011.1.txt | Frech> XF:emacs-local-eavesdrop | Christey> ADDREF MANDRAKE:MDKSA-2000:088 ? | Also http://www.securityfocus.com/bid/2164, but is that a | duplicate of BID:1125?  View

Page 20574 of 20943, showing 5 records out of 104715 total, starting on record 102866, ending on 102870

Actions