CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1192 | CVE-1999-1212 | Candidate | Vulnerability in in.rlogind in SunOS 4.0.3 and 4.0.3c allows local users to gain root privileges. | Proposed (20010912) | ACCEPT(5) Cole, Dik, Foat, Frech, Stracener | NOOP(1) Wall | Dik> sun bug: 1054669 1049886 1042370 1033809 | View |
2271 | CVE-2000-0695 | Candidate | Buffer overflows in pgxconfig in the Raptor GFX configuration tool allow local users to gain privileges via command line options. | Modified (20010417-01) | ACCEPT(3) Baker, Dik, Levy | NOOP(2) Cole, Wall | Dik> as CVE-2000-0693 | View |
5218 | CVE-2002-0828 | Candidate | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0862. Reason: This is a duplicate of CVE-2002-0862. Notes: All CVE users should reference CVE-2002-0862 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | Modified (20050204) | MODIFY(1) Foat | NOOP(3) Armstrong, Cole, Cox | REJECT(3) Baker, Christey, Frech | REVIEWING(1) Wall | Cox> Why isn"t this sharing the same CVE name as CVE-2002-0970? | Christey> BID:5410 | URL:http://www.securityfocus.com/bid/5410 | CHANGE> [Christey changed vote from NOOP to REJECT] | Christey> This is an original report of a larger issue as described in | CVE-2002-0862. This candidate will be REJECTED and | CVE-2002-0862 will be used in its place, since CVE-2002-0862 | comes from a more authoritative source, and is more accurate. | Foat> This vulneraiblity is valid. It was discovered that the scope is much | greater than indicated in the description, since certificate checking is an OS | function in the Windows environment. A complete listing of the vulnerable | platforms is available at | http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bull | etin/ms02-050.asp. | Frech> Remains associated with XF:ssl-ca-certificate-spoofing(9776) | View |
4062 | CVE-2001-1258 | Candidate | Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server. | Proposed (20020502) | ACCEPT(4) Cole, Cox, Frech, Green | NOOP(2) Foat, Wall | Cox> VERIFYING. | CHANGE> [Cox changed vote from REVIEWING to ACCEPT] | View |
6889 | CVE-2003-0060 | Candidate | Format string vulnerabilities in the logging routines for MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in Kerberos principal names. | Modified (20040818) | ACCEPT(2) Baker, Green | MODIFY(2) Cox, Frech | NOOP(2) Cole, Wall | Cox> This is actually fixed in krb5 version 1.2.4 not 1.2.5 | Frech> XF:kerberos-kdc-format-string(11189) | View |
Page 250 of 20943, showing 5 records out of 104715 total, starting on record 1246, ending on 1250