CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3633 | CVE-2001-0827 | Candidate | Cerberus FTP server 1.0 - 1.5 allows remote attackers to cause a denial of service (crash) via a large number of "PASV" requests. | Proposed (20011122) | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall | REJECT(1) Frech | Frech> See XF:cerberus-ftp-bo(6728). May also be a dupe with | BID:2901. | View |
921 | CVE-1999-0941 | Candidate | Mutt mail client allows a remote attacker to execute commands via shell metacharacters. | Proposed (19991222) | ACCEPT(1) Stracener | NOOP(2) Baker, Christey | REJECT(1) Frech | REVIEWING(1) Levy | Frech> References are vague, but seem to be identical to CVE-1999-0940 | (XF:mutt-text-enriched-mime-bo). According to the references, the malformed | messages consist of metacharacters. In addition, -0941"s reference and | -0940"s SuSE reference both refer to fixes in 1.0pre3 release. Will | reconsider vote if other clearer references are forthcoming. | Christey> Modify to mention that the metachar"s are in the Content-Type header. | http://marc.theaimsgroup.com/?l=bugtraq&m=90221104526154&w=2 | View |
369 | CVE-1999-0370 | Candidate | In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files. | Modified (19991210-01) | ACCEPT(4) Baker, Dik, Northcutt, Prosser | MODIFY(1) Frech | REVIEWING(1) Christey | Frech> Reference: XF:sun-man | Christey> ADDREF CIAC:J-028 | | Is the Linux man symlink problem the same as the one for Sun? | See BUGTRAQ:19990602 /tmp symlink problems in SuSE Linux 6.1 | Also see BID:305 | Dik> sun bug 4154565 | View |
86 | CVE-1999-0086 | Candidate | AIX routed allows remote users to modify sensitive files. | Interim (19990630) | ACCEPT(2) Northcutt, Shostack | MODIFY(2) Frech, Prosser | NOOP(1) Baker | REJECT(1) Christey | Frech> Reference: XF:ibm-routed | Prosser> This vulnerability allows debug mode to be turned on which is | the problem. Should this be more specific in the description? This | one also affects SGI OSes, ref SGI Security Advisory 19981004-PX which | is in the SGI cluster, shouldn"t these be cross-referenced as the same | vuln affects multiple OSes. | Christey> This appears to be subsumed by CVE-1999-0215 | View |
89 | CVE-1999-0089 | Candidate | Buffer overflow in AIX libDtSvc library can allow local users to gain root access. | Interim (19990630) | ACCEPT(2) Northcutt, Shostack | MODIFY(2) Frech, Prosser | RECAST(1) Baker | REVIEWING(1) Christey | Frech> Reference: XF:ibm-libDtSvc | Prosser> The overflow is in the dtaction utility. Also affects | dtaction in the CDE on versions of SunOS (SUN 164). Probably should be | specific. | Christey> Same Codebase as CVE-1999-0121, so the two entries should be | merged. | View |
Page 223 of 20943, showing 5 records out of 104715 total, starting on record 1111, ending on 1115