CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1192  CVE-1999-1212  Candidate  Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges.  Proposed (20010912)  ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall  Dik> sun bug: 1054669 1049886 1042370 1033809  View
2271  CVE-2000-0695  Candidate  Buffer overflows in pgxconfig in the Raptor GFX configuration tool allow local users to gain privileges via command line options.  Modified (20010417-01)  ACCEPT(3) Baker, Dik, Levy | NOOP(2) Cole, Wall  Dik> as CVE-2000-0693  View
5218  CVE-2002-0828  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0862. Reason: This is a duplicate of CVE-2002-0862. Notes: All CVE users should reference CVE-2002-0862 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Modified (20050204)  MODIFY(1) Foat | NOOP(3) Armstrong, Cole, Cox | REJECT(3) Baker, Christey, Frech | REVIEWING(1) Wall  Cox> Why isn"t this sharing the same CVE name as CVE-2002-0970? | Christey> BID:5410 | URL:http://www.securityfocus.com/bid/5410 | CHANGE> [Christey changed vote from NOOP to REJECT] | Christey> This is an original report of a larger issue as described in | CVE-2002-0862. This candidate will be REJECTED and | CVE-2002-0862 will be used in its place, since CVE-2002-0862 | comes from a more authoritative source, and is more accurate. | Foat> This vulneraiblity is valid. It was discovered that the scope is much | greater than indicated in the description, since certificate checking is an OS | function in the Windows environment. A complete listing of the vulnerable | platforms is available at | http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bull | etin/ms02-050.asp. | Frech> Remains associated with XF:ssl-ca-certificate-spoofing(9776)  View
4062  CVE-2001-1258  Candidate  Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.  Proposed (20020502)  ACCEPT(4) Cole, Cox, Frech, Green | NOOP(2) Foat, Wall  Cox> VERIFYING. | CHANGE> [Cox changed vote from REVIEWING to ACCEPT]  View
6889  CVE-2003-0060  Candidate  Format string vulnerabilities in the logging routines for MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in Kerberos principal names.  Modified (20040818)  ACCEPT(2) Baker, Green | MODIFY(2) Cox, Frech | NOOP(2) Cole, Wall  Cox> This is actually fixed in krb5 version 1.2.4 not 1.2.5 | Frech> XF:kerberos-kdc-format-string(11189)  View

Page 250 of 20943, showing 5 records out of 104715 total, starting on record 1246, ending on 1250

Actions