CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3517 | CVE-2001-0709 | Candidate | Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode. | Proposed (20010829) | ACCEPT(3) Foat, Frech, Ziese | NOOP(3) Armstrong, Bishop, Cole | REVIEWING(1) Wall | CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | CHANGE> [Foat changed vote from NOOP to ACCEPT] | View |
5132 | CVE-2002-0742 | Candidate | Buffer overflow in pioout on AIX 4.3.3. | Proposed (20020726) | ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | Bollinger> This is indeed a separate issue from CVE-2000-1123. Add AIX | 5.1 APAR IY29677 to the References for this candidate. | View |
5137 | CVE-2002-0747 | Candidate | Buffer overflow in lsmcode in AIX 4.3.3. | Proposed (20020726) | ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | Bollinger> This candidate is a buffer overflow; CVE-2001-1061 was a | metacharacter issue. Add AIX 5.1 APAR IY28586 to the References for | this candidate. | View |
5935 | CVE-2002-1551 | Candidate | Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Bollinger | NOOP(1) Cox | REVIEWING(1) Christey | Bollinger> IY34670 did not have a complete fix for this vulnerability. | The complete fix is found in IY40519. In addition, nslookup | completely drops privileges very early in the process. This buffer | overflow would not result in privilege increase. | Christey> If this overflow doesn"t cross privilege boundaries, then it"s | not security relevant and should be excluded from CVE. | View |
5135 | CVE-2002-0745 | Candidate | Buffer overflow in uucp in AIX 4.3.3. | Proposed (20020726) | ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | Bollinger> IY29518 is the AIX 4.3 APAR. AIX 5.1 APAR IY28158 needs to | be added to the References. This candidate only addressed long | arguments to uucp and uux but not the other commands listed in | CVE-2001-1164. | View |
Page 359 of 20943, showing 5 records out of 104715 total, starting on record 1791, ending on 1795