CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5477  CVE-2002-1090  Candidate  Buffer overflow in read_smtp_response of protocol.c in libesmtp before 0.8.11 allows a remote SMTP server to (1) execute arbitrary code via a certain response or (2) cause a denial of service via long server responses.  Proposed (20030317)  ACCEPT(3) Baker, Cole, Cox | NOOP(2) Christey, Wall  Christey> REDHAT:RHSA-2003:109 | URL:http://www.redhat.com/support/errata/RHSA-2003-109.html | Christey> CONECTIVA:CLA-2003:630 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000630  View
5851  CVE-2002-1467  Candidate  Macromedia Flash Plugin before 6,0,47,0 allows remote attackers to bypass the same-domain restriction and read arbitrary files via (1) an HTTP redirect, (2) a "file://" base in a web document, or (3) a relative URL from a web archive (mht file).  Proposed (20030317)  ACCEPT(3) Baker, Cole, Wall | NOOP(2) Christey, Cox  Christey> REDHAT:RHSA-2003:026  View
4780  CVE-2002-0388  Candidate  Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries.  Modified (20090716)  ACCEPT(3) Armstrong, Baker, Cole | MODIFY(2) Cox, Frech | NOOP(3) Christey, Foat, Wall  Christey> REDHAT:RHSA-2002:099 | Cox> ADDREF: RHSA-2002:099 RHSA-2002:100 RHSA-2002:101 | Christey> CONECTIVA:CLA-2002:489 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000489 | BID:4825 | URL:http://www.securityfocus.com/bid/4825 | BID:4826 | URL:http://www.securityfocus.com/bid/4826 | XF:mailman-pipermail-index-css(9173) | URL:http://www.iss.net/security_center/static/9173.php | XF:mailman-admin-login-css(9172) | URL:http://www.iss.net/security_center/static/9172.php | Christey> DEBIAN:DSA-147 | Frech> XF:mailman-pipermail-index-css(9173) | Christey> | It"s not clear whether DEBIAN:DSA-147-2 addresses this issue | in addition to, or instead of, CVE-2002-0855  View
5215  CVE-2002-0825  Candidate  Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.  Proposed (20020830)  ACCEPT(4) Baker, Cole, Cox, Foat | NOOP(2) Christey, Wall  Christey> REDHAT:RHSA-2002:084 | Christey> REDHAT:RHSA-2002:084 | Christey> BUGTRAQ:20021013 GLSA: nss_ldap | | Need to determine if the nss_ldap-199 "read buffer overflow" | (basically an incomplete patch to this issue) should get | a different CAN. | Christey> MANDRAKE:MDKSA-2002:075 | Christey> CALDERA:CSSA-2002-058.0 | Christey> XF:nssldap-dns-query-dos(10578) | URL:http://www.iss.net/security_center/static/10578.php | BID:6130 | URL:http://www.securityfocus.com/bid/6130 | Christey> The Red Hat advisory suggests this is a format string issue, | not a buffer overflow. Also may need to mention the | pam_ldap module. | Christey> REDHAT:RHSA-2002:175  View
270  CVE-1999-0271  Candidate  Progressive Networks Real Video server (pnserver) can be crashed remotely.  Modified (19990925-01)  ACCEPT(3) Baker, Blake, Northcutt | MODIFY(1) Frech | NOOP(1) Prosser | REVIEWING(1) Christey  Christey> Problem confirmed by RealServer vendor (URL listed in Bugtraq | posting), but may be multiple codebases since several | Real Audio servers are affected. | | Also, this may be the same as BUGTRAQ:19991105 RealNetworks RealServer G2 buffer overflow. | See CVE-1999-0896 | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> ADDREF XF:realvideo-telnet-dos  View

Page 293 of 20943, showing 5 records out of 104715 total, starting on record 1461, ending on 1465

Actions