CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3633  CVE-2001-0827  Candidate  Cerberus FTP server 1.0 - 1.5 allows remote attackers to cause a denial of service (crash) via a large number of "PASV" requests.  Proposed (20011122)  NOOP(5) Armstrong, Bishop, Cole, Foat, Wall | REJECT(1) Frech  Frech> See XF:cerberus-ftp-bo(6728). May also be a dupe with | BID:2901.  View
921  CVE-1999-0941  Candidate  Mutt mail client allows a remote attacker to execute commands via shell metacharacters.  Proposed (19991222)  ACCEPT(1) Stracener | NOOP(2) Baker, Christey | REJECT(1) Frech | REVIEWING(1) Levy  Frech> References are vague, but seem to be identical to CVE-1999-0940 | (XF:mutt-text-enriched-mime-bo). According to the references, the malformed | messages consist of metacharacters. In addition, -0941"s reference and | -0940"s SuSE reference both refer to fixes in 1.0pre3 release. Will | reconsider vote if other clearer references are forthcoming. | Christey> Modify to mention that the metachar"s are in the Content-Type header. | http://marc.theaimsgroup.com/?l=bugtraq&m=90221104526154&w=2  View
369  CVE-1999-0370  Candidate  In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.  Modified (19991210-01)  ACCEPT(4) Baker, Dik, Northcutt, Prosser | MODIFY(1) Frech | REVIEWING(1) Christey  Frech> Reference: XF:sun-man | Christey> ADDREF CIAC:J-028 | | Is the Linux man symlink problem the same as the one for Sun? | See BUGTRAQ:19990602 /tmp symlink problems in SuSE Linux 6.1 | Also see BID:305 | Dik> sun bug 4154565  View
86  CVE-1999-0086  Candidate  AIX routed allows remote users to modify sensitive files.  Interim (19990630)  ACCEPT(2) Northcutt, Shostack | MODIFY(2) Frech, Prosser | NOOP(1) Baker | REJECT(1) Christey  Frech> Reference: XF:ibm-routed | Prosser> This vulnerability allows debug mode to be turned on which is | the problem. Should this be more specific in the description? This | one also affects SGI OSes, ref SGI Security Advisory 19981004-PX which | is in the SGI cluster, shouldn"t these be cross-referenced as the same | vuln affects multiple OSes. | Christey> This appears to be subsumed by CVE-1999-0215  View
89  CVE-1999-0089  Candidate  Buffer overflow in AIX libDtSvc library can allow local users to gain root access.  Interim (19990630)  ACCEPT(2) Northcutt, Shostack | MODIFY(2) Frech, Prosser | RECAST(1) Baker | REVIEWING(1) Christey  Frech> Reference: XF:ibm-libDtSvc | Prosser> The overflow is in the dtaction utility. Also affects | dtaction in the CDE on versions of SunOS (SUN 164). Probably should be | specific. | Christey> Same Codebase as CVE-1999-0121, so the two entries should be | merged.  View

Page 223 of 20943, showing 5 records out of 104715 total, starting on record 1111, ending on 1115

Actions