CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3517  CVE-2001-0709  Candidate  Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode.  Proposed (20010829)  ACCEPT(3) Foat, Frech, Ziese | NOOP(3) Armstrong, Bishop, Cole | REVIEWING(1) Wall  CHANGE> [Armstrong changed vote from REVIEWING to NOOP] | CHANGE> [Foat changed vote from NOOP to ACCEPT]  View
5132  CVE-2002-0742  Candidate  Buffer overflow in pioout on AIX 4.3.3.  Proposed (20020726)  ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall  Bollinger> This is indeed a separate issue from CVE-2000-1123. Add AIX | 5.1 APAR IY29677 to the References for this candidate.  View
5137  CVE-2002-0747  Candidate  Buffer overflow in lsmcode in AIX 4.3.3.  Proposed (20020726)  ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall  Bollinger> This candidate is a buffer overflow; CVE-2001-1061 was a | metacharacter issue. Add AIX 5.1 APAR IY28586 to the References for | this candidate.  View
5935  CVE-2002-1551  Candidate  Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code.  Proposed (20030317)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Bollinger | NOOP(1) Cox | REVIEWING(1) Christey  Bollinger> IY34670 did not have a complete fix for this vulnerability. | The complete fix is found in IY40519. In addition, nslookup | completely drops privileges very early in the process. This buffer | overflow would not result in privilege increase. | Christey> If this overflow doesn"t cross privilege boundaries, then it"s | not security relevant and should be excluded from CVE.  View
5135  CVE-2002-0745  Candidate  Buffer overflow in uucp in AIX 4.3.3.  Proposed (20020726)  ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall  Bollinger> IY29518 is the AIX 4.3 APAR. AIX 5.1 APAR IY28158 needs to | be added to the References. This candidate only addressed long | arguments to uucp and uux but not the other commands listed in | CVE-2001-1164.  View

Page 359 of 20943, showing 5 records out of 104715 total, starting on record 1791, ending on 1795

Actions