CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2123 | CVE-2000-0546 | Candidate | Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the set_tgtkey function. | Proposed (20000712) | ACCEPT(2) Levy, Ozancin | MODIFY(2) Cox, Frech | NOOP(3) Christey, LeBlanc, Wall | Christey> ADDREF XF:kerberos-lastrealm-bo | Frech> XF:kerberos-lastrealm-bo(4656) | I question whether BID-1338 is appropriate here. | Cox> ADDREF REDHAT:RHSA-2000:031 | View |
1848 | CVE-2000-0270 | Candidate | The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack. | Proposed (20000426) | ACCEPT(1) Baker | MODIFY(2) Frech, Levy | NOOP(3) Christey, Cole, Wall | Christey> ADDREF XF:emacs-tempfile-creation | Verify BID for this - is it 1125, 1126, or 1127? | Also, ADDREF CALDERA:CSSA-2000-011.1 ?? | URL:ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-011.1.txt | Frech> XF:emacs-tempfile-creation | Levy> Change BID reference to BID 1126 | View |
1847 | CVE-2000-0269 | Candidate | Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess. | Proposed (20000426) | ACCEPT(2) Baker, Levy | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | Christey> ADDREF XF:emacs-local-eavesdrop | Verify BID for this - is it 1125, 1126, or 1127? | Also, ADDREF CALDERA:CSSA-2000-011.1 ?? | URL:ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-2000-011.1.txt | Frech> XF:emacs-local-eavesdrop | Christey> ADDREF MANDRAKE:MDKSA-2000:088 ? | Also http://www.securityfocus.com/bid/2164, but is that a | duplicate of BID:1125? | View |
2131 | CVE-2000-0554 | Candidate | Ceilidh allows remote attackers to obtain the real path of the Ceilidh directory via the translated_path hidden form field. | Proposed (20000712) | ACCEPT(2) Cole, Levy | MODIFY(1) Frech | NOOP(4) Christey, LeBlanc, Ozancin, Wall | Christey> ADDREF XF:ceilidh-path-disclosure | Frech> XF:ceilidh-path-disclosure(4620) | View |
2289 | CVE-2000-0713 | Candidate | Buffer overflow in Adobe Acrobat 4.05, Reader, Business Tools, and Fill In products that handle PDF files allows attackers to execute arbitrary commands via a long /Registry or /Ordering specifier. | Proposed (20000921) | ACCEPT(4) Baker, Cole, Levy, Wall | NOOP(1) Christey | Christey> ADDREF XF:adobe-pdf-bo(5002) | View |
Page 333 of 20943, showing 5 records out of 104715 total, starting on record 1661, ending on 1665