CVE List

Id CVE No. Status Description Phase Votes Comments Actions
433  CVE-1999-0434  Candidate  XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:xfree86-xfs-symlink-dos | Christey> Is this the same problem as CVE-1999-0433? CVE-1999-0433 | deals with a symlink attack on one file (/tmp/.X11-unix), | while xfs (this candidate) deals with /tmp/.font-unix | XF:xfree86-xfs-symlink-dos doesn"t exist. | Christey> ADDREF DEBIAN:19990331 symbolic link can be used to make any file world readable | Note: Debian"s advisory says that this is not a problem for Debian.  View
4192  CVE-2001-1389  Candidate  Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, primarily via buffer overflows or improper NULL termination.  Proposed (20020830)  ACCEPT(6) Armstrong, Baker, Cole, Cox, Green, Wall | MODIFY(1) Frech | NOOP(1) Foat  Frech> XF:xinetd-multiple-bo(11150)  View
3209  CVE-2001-0391  Candidate  Xitami 2.5d4 and earlier allows remote attackers to crash the server via an HTTP request to the /aux directory.  Proposed (20010524)  MODIFY(1) Frech | NOOP(4) Christey, Cole, Wall, Ziese | REVIEWING(1) Williams  Frech> XF:xitami-server-dos(6389) | Christey> Consider adding BID:2622  View
1329  CVE-1999-1349  Candidate  NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:xlink-nfsd-dos(8317)  View
3582  CVE-2001-0775  Candidate  Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field.  Modified (20050329)  ACCEPT(3) Armstrong, Baker, Foat | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Frech> XF:xloadimage-faces-bo(6821) | Christey> ADDREF RHSA-2001:088 (per Mark Cox of Red Hat)  View

Page 20892 of 20943, showing 5 records out of 104715 total, starting on record 104456, ending on 104460

Actions