CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1146  CVE-1999-1166  Candidate  Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> (Task 2253) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:linux-segment-limit-privileges(11202)  View
1013  CVE-1999-1033  Candidate  Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang.  Proposed (20010912)  ACCEPT(2) Cole, Wall | MODIFY(1) Frech | NOOP(1) Foat  Frech> (Task 2241) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:outlook-pop3-dot-dos(8926)  View
992  CVE-1999-1012  Candidate  SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash the mail server via a long string.  Proposed (20010912)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> (Task 1770) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:lotus-domino-smtp-dos(8790)  View
1334  CVE-1999-1354  Candidate  E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled.  Proposed (20010912)  ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall  Frech> (Task 1766) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:firstclass-plaintext-account(9874) | Christey> The following reference is for the FCCLIENT.LOG piece: | ADDREF NTBUGTRAQ:19990911 Re: SoftArc"s FirstClass E-mail Client | URL:http://archives.neohapsis.com/archives/ntbugtraq/1999-q3/0189.html  View
2967  CVE-2001-0146  Candidate  IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL"s.  Modified (20050509)  ACCEPT(4) Baker, Cole, Lawler, Ziese | NOOP(1) Christey | RECAST(1) Frech  Frech> (SF-EXEC) | XF:iis-malformed-url-dos(6171) | XF:exchange-malformed-url-dos(6172) | Not only is this two applications, but it is fixed by two patches. | Quoting Microsoft: | Because the flaw occurs in two different code modules, one of which installs | as part of IIS 5.0 and both of which install as part of Exchange 2000, it is | important for Exchange 2000 administrators to install both the IIS and | Exchange patches below. | Also, in the description, avoid using an apostrophe on "URLs" when it is | simply plural and not possessive (aka the "grocer"s apostrophe"). | Christey> Consider adding BID:2440 | Christey> Consider adding BID:2441  View

Page 243 of 20943, showing 5 records out of 104715 total, starting on record 1211, ending on 1215

Actions