CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
24180 | CVE-2007-0823 | Candidate | xterm on Slackware Linux 10.2 stores information that had been displayed for a different user account using the same xterm process, which might allow local users to bypass file permissions and read other users" files, or obtain other sensitive information, by reading the xterm process memory. NOTE: it could be argued that this is an expected consequence of multiple users sharing the same interactive process, in which case this is not a vulnerability. | Assigned (20070207) | None (candidate not yet proposed) | View | |
2054 | CVE-2000-0476 | Candidate | xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized. | Proposed (20000712) | ACCEPT(2) Levy, Ozancin | MODIFY(1) Frech | NOOP(2) LeBlanc, Wall | Frech> XF:xterm-control-characters-dos(4987) | View |
26154 | CVE-2007-2797 | Candidate | xterm, including 192-7.el4 in Red Hat Enterprise Linux and 208-3.1 in Debian GNU/Linux, sets the wrong group ownership of tty devices, which allows local users to write data to other users" terminals. | Assigned (20070521) | None (candidate not yet proposed) | View | |
18647 | CVE-2006-2543 | Candidate | Xtreme Topsites 1.1 allows remote attackers to trigger MySQL errors and possibly conduct SQL injection attacks via unspecified vectors in join.php. | Assigned (20060522) | None (candidate not yet proposed) | View | |
4823 | CVE-2002-0431 | Entry | XTux allows remote attackers to cause a denial of service (CPU consumption) via random inputs in the initial connection. | View |
Page 20891 of 20943, showing 5 records out of 104715 total, starting on record 104451, ending on 104455