CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1146 | CVE-1999-1166 | Candidate | Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory. | Proposed (20010912) | MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall | Frech> (Task 2253) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:linux-segment-limit-privileges(11202) | View |
1013 | CVE-1999-1033 | Candidate | Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang. | Proposed (20010912) | ACCEPT(2) Cole, Wall | MODIFY(1) Frech | NOOP(1) Foat | Frech> (Task 2241) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:outlook-pop3-dot-dos(8926) | View |
992 | CVE-1999-1012 | Candidate | SMTP component of Lotus Domino 4.6.1 on AS/400, and possibly other operating systems, allows a remote attacker to crash the mail server via a long string. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(2) Foat, Wall | Frech> (Task 1770) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:lotus-domino-smtp-dos(8790) | View |
1334 | CVE-1999-1354 | Candidate | E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FCCLIENT.LOG when logging is enabled. | Proposed (20010912) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Christey, Foat, Wall | Frech> (Task 1766) | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:firstclass-plaintext-account(9874) | Christey> The following reference is for the FCCLIENT.LOG piece: | ADDREF NTBUGTRAQ:19990911 Re: SoftArc"s FirstClass E-mail Client | URL:http://archives.neohapsis.com/archives/ntbugtraq/1999-q3/0189.html | View |
2967 | CVE-2001-0146 | Candidate | IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL"s. | Modified (20050509) | ACCEPT(4) Baker, Cole, Lawler, Ziese | NOOP(1) Christey | RECAST(1) Frech | Frech> (SF-EXEC) | XF:iis-malformed-url-dos(6171) | XF:exchange-malformed-url-dos(6172) | Not only is this two applications, but it is fixed by two patches. | Quoting Microsoft: | Because the flaw occurs in two different code modules, one of which installs | as part of IIS 5.0 and both of which install as part of Exchange 2000, it is | important for Exchange 2000 administrators to install both the IIS and | Exchange patches below. | Also, in the description, avoid using an apostrophe on "URLs" when it is | simply plural and not possessive (aka the "grocer"s apostrophe"). | Christey> Consider adding BID:2440 | Christey> Consider adding BID:2441 | View |
Page 243 of 20943, showing 5 records out of 104715 total, starting on record 1211, ending on 1215