CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2476 | CVE-2000-0907 | Candidate | EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands. | Proposed (20001129) | ACCEPT(3) Baker, Collins, Mell | MODIFY(1) Frech | NOOP(2) Cole, Wall | Frech> XF:eserv-remote-dos(5643) | View |
2485 | CVE-2000-0916 | Candidate | FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections. | Proposed (20001129) | ACCEPT(2) Cole, Mell | MODIFY(1) Frech | REVIEWING(1) Christey | Frech> XF:tcp-seq-predict(139) | Christey> Abstraction issue: CVE-1999-0077 is for TCP sequence | prediction as a general problem; but here we have a specific | implementation flaw. | View |
2487 | CVE-2000-0918 | Candidate | Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters. | Proposed (20001129) | ACCEPT(2) Baker, Mell | NOOP(2) Cole, Wall | REVIEWING(1) Christey | Christey> May be a duplicate of CVE-2000-0373, but the ref"s in that CVE | are vague. I suspect this *isn"t* a duplicate because this is | a format string problem. | Baker> I think it is sufficiently different from 2000-0373. | View |
2500 | CVE-2000-0931 | Candidate | Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data. | Proposed (20001129) | ACCEPT(1) Mell | MODIFY(1) Frech | NOOP(2) Cole, Wall | Frech> XF:pegasus-mail-bo(5644) | View |
2508 | CVE-2000-0939 | Candidate | Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows remote attackers to cause a denial of service by repeatedly submitting a nonstandard URL in the GET HTTP request and forcing it to restart. | Proposed (20001129) | ACCEPT(2) Frech, Mell | NOOP(1) Cole | REJECT(1) Renaud | Renaud> SWAT makes this DoS easier to perform, but actually, it is an inetd | problem, not a swat problem. | View |
Page 338 of 20943, showing 5 records out of 104715 total, starting on record 1686, ending on 1690