CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5760  CVE-2002-1376  Candidate  libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and possibly execute arbitrary code.  Modified (20071017)  ACCEPT(2) Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:289 | Green> ACKNOWLEDGED IN THE REDHAT ERRATA  View
5728  CVE-2002-1344  Candidate  Directory traversal vulnerability in wget before 1.8.2-4 allows a remote FTP server to create or overwrite files as the wget user via filenames containing (1) /absolute/path or (2) .. (dot dot) sequences.  Modified (20071129)  ACCEPT(2) Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:256  View
5619  CVE-2002-1235  Candidate  The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and earlier, (2) kadmind in KTH Kerberos 4 (eBones) before 1.2.1, and (3) kadmind in KTH Kerberos 5 (Heimdal) before 0.5.1 when compiled with Kerberos 4 support, does not properly verify the length field of a request, which allows remote attackers to execute arbitrary code via a buffer overflow attack.  Proposed (20030317)  ACCEPT(4) Baker, Cole, Frech, Wall | NOOP(1) Cox  Cox> Addref: REDHAT:RHSA-2002:250  View
5558  CVE-2002-1174  Candidate  Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly processed by the readheaders function, or (2) via long Received: headers, which are not properly parsed by the parse_received function.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:216  View
5559  CVE-2002-1175  Candidate  The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox  Cox> Addref: REDHAT:RHSA-2002:216  View

Page 257 of 20943, showing 5 records out of 104715 total, starting on record 1281, ending on 1285

Actions