CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1006 | CVE-1999-1026 | Candidate | aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(1) Foat | Frech> XF:sun-aspppd-tmp-symlink(7173) | View |
2458 | CVE-2000-0889 | Candidate | Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun. | Proposed (20010202) | ACCEPT(3) Baker, Cole, Dik | MODIFY(1) Frech | NOOP(2) Wall, Ziese | REVIEWING(1) Christey | Frech> XF:sun-compromised-certificate(5404) | Christey> Should revoked cert"s be included in CVE? How about the ones | for Microsoft from early 2001? | View |
1376 | CVE-1999-1396 | Candidate | Vulnerability in integer multiplication emulation code on SPARC architectures for SunOS 4.1 through 4.1.2 allows local users to gain root access or cause a denial of service (crash). | Modified (20020218-01) | ACCEPT(4) Cole, Dik, Foat, Stracener | MODIFY(1) Frech | NOOP(1) Wall | Frech> XF:sun-integer-multiplication-access(7150) | Dik> sun bug: 1069072 1071053 | View |
1507 | CVE-1999-1527 | Candidate | Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, which allows arbitrary remote attackers to access the server. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> XF:sun-java-ide-http-access(8333) | View |
212 | CVE-1999-0213 | Candidate | libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind. | Modified (20001009-01) | ACCEPT(6) Blake, Cole, Dik, Hill, Landfield, Ozancin | MODIFY(3) Baker, Frech, Levy | NOOP(4) Armstrong, Bishop, Meunier, Wall | REVIEWING(1) Christey | Frech> XF:sun-libnsl | Dik> Sun bug #4305859 | Baker> http://xforce.iss.net/static/1204.php Misc Defensive Info | http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/172&type=0&nav=sec.sba Vendor Info | http://www-1.ibm.com/services/continuity/recover1.nsf/advisories/A1050E354364BF498525680F0077E414/$file/ERS-OAR-E01-1998_074_1.txt Vendor Info | http://www.securityfocus.com/archive/1/9749 Misc Defensive Info | Christey> I don"t think this is the bug that everyone thinks it is. | This candidate came from CyberCop Scanner 2.4/2.5, which | only reports this as a DoS problem. If SUN:00172 is an | advisory for this, then it may be a duplicate of | CVE-1999-0055. There appears to be overlap with other | references as well. HOWEVER, this particular one deals with a | DoS in rpcbind - which isn"t mentioned in the sources for | CVE-1999-0055. | Levy> BID 148 | View |
Page 20869 of 20943, showing 5 records out of 104715 total, starting on record 104341, ending on 104345