CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5477 | CVE-2002-1090 | Candidate | Buffer overflow in read_smtp_response of protocol.c in libesmtp before 0.8.11 allows a remote SMTP server to (1) execute arbitrary code via a certain response or (2) cause a denial of service via long server responses. | Proposed (20030317) | ACCEPT(3) Baker, Cole, Cox | NOOP(2) Christey, Wall | Christey> REDHAT:RHSA-2003:109 | URL:http://www.redhat.com/support/errata/RHSA-2003-109.html | Christey> CONECTIVA:CLA-2003:630 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000630 | View |
5851 | CVE-2002-1467 | Candidate | Macromedia Flash Plugin before 6,0,47,0 allows remote attackers to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file). | Proposed (20030317) | ACCEPT(3) Baker, Cole, Wall | NOOP(2) Christey, Cox | Christey> REDHAT:RHSA-2003:026 | View |
4780 | CVE-2002-0388 | Candidate | Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries. | Modified (20090716) | ACCEPT(3) Armstrong, Baker, Cole | MODIFY(2) Cox, Frech | NOOP(3) Christey, Foat, Wall | Christey> REDHAT:RHSA-2002:099 | Cox> ADDREF: RHSA-2002:099 RHSA-2002:100 RHSA-2002:101 | Christey> CONECTIVA:CLA-2002:489 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000489 | BID:4825 | URL:http://www.securityfocus.com/bid/4825 | BID:4826 | URL:http://www.securityfocus.com/bid/4826 | XF:mailman-pipermail-index-css(9173) | URL:http://www.iss.net/security_center/static/9173.php | XF:mailman-admin-login-css(9172) | URL:http://www.iss.net/security_center/static/9172.php | Christey> DEBIAN:DSA-147 | Frech> XF:mailman-pipermail-index-css(9173) | Christey> | It"s not clear whether DEBIAN:DSA-147-2 addresses this issue | in addition to, or instead of, CVE-2002-0855 | View |
5215 | CVE-2002-0825 | Candidate | Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code. | Proposed (20020830) | ACCEPT(4) Baker, Cole, Cox, Foat | NOOP(2) Christey, Wall | Christey> REDHAT:RHSA-2002:084 | Christey> REDHAT:RHSA-2002:084 | Christey> BUGTRAQ:20021013 GLSA: nss_ldap | | Need to determine if the nss_ldap-199 "read buffer overflow" | (basically an incomplete patch to this issue) should get | a different CAN. | Christey> MANDRAKE:MDKSA-2002:075 | Christey> CALDERA:CSSA-2002-058.0 | Christey> XF:nssldap-dns-query-dos(10578) | URL:http://www.iss.net/security_center/static/10578.php | BID:6130 | URL:http://www.securityfocus.com/bid/6130 | Christey> The Red Hat advisory suggests this is a format string issue, | not a buffer overflow. Also may need to mention the | pam_ldap module. | Christey> REDHAT:RHSA-2002:175 | View |
270 | CVE-1999-0271 | Candidate | Progressive Networks Real Video server (pnserver) can be crashed remotely. | Modified (19990925-01) | ACCEPT(3) Baker, Blake, Northcutt | MODIFY(1) Frech | NOOP(1) Prosser | REVIEWING(1) Christey | Christey> Problem confirmed by RealServer vendor (URL listed in Bugtraq | posting), but may be multiple codebases since several | Real Audio servers are affected. | | Also, this may be the same as BUGTRAQ:19991105 RealNetworks RealServer G2 buffer overflow. | See CVE-1999-0896 | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> ADDREF XF:realvideo-telnet-dos | View |
Page 293 of 20943, showing 5 records out of 104715 total, starting on record 1461, ending on 1465