CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5760 | CVE-2002-1376 | Candidate | libmysqlclient client library in MySQL 3.x to 3.23.54, and 4.x to 4.0.6, does not properly verify length fields for certain responses in the (1) read_rows or (2) read_one_row routines, which allows remote attackers to cause a denial of service and possibly execute arbitrary code. | Modified (20071017) | ACCEPT(2) Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:289 | Green> ACKNOWLEDGED IN THE REDHAT ERRATA | View |
5728 | CVE-2002-1344 | Candidate | Directory traversal vulnerability in wget before 1.8.2-4 allows a remote FTP server to create or overwrite files as the wget user via filenames containing (1) /absolute/path or (2) .. (dot dot) sequences. | Modified (20071129) | ACCEPT(2) Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:256 | View |
5619 | CVE-2002-1235 | Candidate | The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and earlier, (2) kadmind in KTH Kerberos 4 (eBones) before 1.2.1, and (3) kadmind in KTH Kerberos 5 (Heimdal) before 0.5.1 when compiled with Kerberos 4 support, does not properly verify the length field of a request, which allows remote attackers to execute arbitrary code via a buffer overflow attack. | Proposed (20030317) | ACCEPT(4) Baker, Cole, Frech, Wall | NOOP(1) Cox | Cox> Addref: REDHAT:RHSA-2002:250 | View |
5558 | CVE-2002-1174 | Candidate | Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly processed by the readheaders function, or (2) via long Received: headers, which are not properly parsed by the parse_received function. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:216 | View |
5559 | CVE-2002-1175 | Candidate | The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:216 | View |
Page 257 of 20943, showing 5 records out of 104715 total, starting on record 1281, ending on 1285