CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1858  CVE-2000-0280  Candidate  Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of service via a long Location URL.  Proposed (20000426)  ACCEPT(3) Cole, Levy, Wall | MODIFY(1) Frech | NOOP(1) Baker  Frech> XF:realserver-ramgen-dos  View
1859  CVE-2000-0281  Candidate  Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service via a long message.  Proposed (20000426)  NOOP(2) Cole, Wall | REJECT(3) Baker, Frech, Levy  Frech> Does not meet CVE candidate requirements. The problem was remedied on the | server end, and no fault exists at the client. Based on | http://archives.neohapsis.com/archives/bugtraq/2000-03/0299.html: | Approximately one hour after receiving the post from BugTraq, | Napster"s servers were patched to prevent this from occurring. | Users of the Napster Win32 client software are NOT vulnerable. | Baker> Agree with Andre  View
1862  CVE-2000-0284  Candidate  Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.  Proposed (20000426)  ACCEPT(3) Baker, Cole, Levy | MODIFY(1) Frech | NOOP(2) Christey, Wall  Christey> ADDREF FREEBSD:FreeBSD-SA-00:14 | URL:http://www.securityfocus.com/templates/advisory.html?id=2179 | Frech> XF:imap-mailserver-bo  View
1864  CVE-2000-0286  Candidate  X fontserver xfs allows local users to cause a denial of service via malformed input to the server.  Proposed (20000426)  MODIFY(1) Frech | NOOP(3) Baker, Cole, Wall | REJECT(2) Christey, Levy  Frech> XF:redhat-fontserver-dos | POTENTIAL DUPE: CVE-2000-0263: The X font server xfs in Red Hat Linux 6.x | allows an attacker to cause a denial of service via a malformed request. | Christey> As Andre observed, this is a duplicate of CVE-2000-0263.  View
1866  CVE-2000-0288  Candidate  Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable.  Proposed (20000426)  MODIFY(1) Frech | NOOP(2) Cole, Wall | REJECT(1) Baker | REVIEWING(2) Christey, Levy  Frech> XF:http-cgi-infonautics-getdoc | Christey> CD:EX-ONLINE-SVC applies here. This may be a vulnerability in | an online service (the search engines used by Infonautics) | which poses no risk to anyone but the company itself.  View

Page 369 of 20943, showing 5 records out of 104715 total, starting on record 1841, ending on 1845

Actions