CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1805  CVE-2000-0227  Candidate  The Linux 2.2.x kernel does not restrict the number of Unix domain sockets as defined by the wmem_max paremeter, which allows local users to cause a denial of service by requesting a large number of sockets.  Modified (20010910-01)  ACCEPT(8) Armstrong, Baker, Blake, Cole, Collins, Frech, Levy, Ozancin | NOOP(3) Christey, Magdych, Wall  Christey> Fix typo: "paremeter" | Magdych> I remember when this came up... seems like there were some wildly | mixed results for the exploit. | Christey> See http://marc.theaimsgroup.com/?l=bugtraq&m=95421263519558&w=2 | for Elias" summary of the mixed results. It looks like | enough people were able to replicate it that we should | include it. | Christey> Fix typo: "paremeter" | CHANGE> [Magdych changed vote from REVIEWING to NOOP]  View
1804  CVE-2000-0226  Entry  IIS 4.0 allows attackers to cause a denial of service by requesting a large buffer in a POST or PUT command which consumes memory, aka the "Chunked Transfer Encoding Buffer Overflow Vulnerability."        View
1803  CVE-2000-0225  Entry  The Pocsag POC32 program does not properly prevent remote users from accessing its server port, even if the option has been disabled.        View
1802  CVE-2000-0224  Entry  ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink attack.        View
1801  CVE-2000-0223  Entry  Buffer overflow in the wmcdplay CD player program for the WindowMaker desktop allows local users to gain root privileges via a long parameter.        View

Page 20583 of 20943, showing 5 records out of 104715 total, starting on record 102911, ending on 102915

Actions