CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2476  CVE-2000-0907  Candidate  EServ 2.92 Build 2982 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via long HELO and MAIL FROM commands.  Proposed (20001129)  ACCEPT(3) Baker, Collins, Mell | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:eserv-remote-dos(5643)  View
2485  CVE-2000-0916  Candidate  FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.  Proposed (20001129)  ACCEPT(2) Cole, Mell | MODIFY(1) Frech | REVIEWING(1) Christey  Frech> XF:tcp-seq-predict(139) | Christey> Abstraction issue: CVE-1999-0077 is for TCP sequence | prediction as a general problem; but here we have a specific | implementation flaw.  View
2487  CVE-2000-0918  Candidate  Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.  Proposed (20001129)  ACCEPT(2) Baker, Mell | NOOP(2) Cole, Wall | REVIEWING(1) Christey  Christey> May be a duplicate of CVE-2000-0373, but the ref"s in that CVE | are vague. I suspect this *isn"t* a duplicate because this is | a format string problem. | Baker> I think it is sufficiently different from 2000-0373.  View
2500  CVE-2000-0931  Candidate  Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.  Proposed (20001129)  ACCEPT(1) Mell | MODIFY(1) Frech | NOOP(2) Cole, Wall  Frech> XF:pegasus-mail-bo(5644)  View
2508  CVE-2000-0939  Candidate  Samba Web Administration Tool (SWAT) in Samba 2.0.7 allows remote attackers to cause a denial of service by repeatedly submitting a nonstandard URL in the GET HTTP request and forcing it to restart.  Proposed (20001129)  ACCEPT(2) Frech, Mell | NOOP(1) Cole | REJECT(1) Renaud  Renaud> SWAT makes this DoS easier to perform, but actually, it is an inetd | problem, not a swat problem.  View

Page 338 of 20943, showing 5 records out of 104715 total, starting on record 1686, ending on 1690

Actions