CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1858 | CVE-2000-0280 | Candidate | Buffer overflow in the RealNetworks RealPlayer client versions 6 and 7 allows remote attackers to cause a denial of service via a long Location URL. | Proposed (20000426) | ACCEPT(3) Cole, Levy, Wall | MODIFY(1) Frech | NOOP(1) Baker | Frech> XF:realserver-ramgen-dos | View |
1859 | CVE-2000-0281 | Candidate | Buffer overflow in the Napster client beta 5 allows remote attackers to cause a denial of service via a long message. | Proposed (20000426) | NOOP(2) Cole, Wall | REJECT(3) Baker, Frech, Levy | Frech> Does not meet CVE candidate requirements. The problem was remedied on the | server end, and no fault exists at the client. Based on | http://archives.neohapsis.com/archives/bugtraq/2000-03/0299.html: | Approximately one hour after receiving the post from BugTraq, | Napster"s servers were patched to prevent this from occurring. | Users of the Napster Win32 client software are NOT vulnerable. | Baker> Agree with Andre | View |
1862 | CVE-2000-0284 | Candidate | Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands. | Proposed (20000426) | ACCEPT(3) Baker, Cole, Levy | MODIFY(1) Frech | NOOP(2) Christey, Wall | Christey> ADDREF FREEBSD:FreeBSD-SA-00:14 | URL:http://www.securityfocus.com/templates/advisory.html?id=2179 | Frech> XF:imap-mailserver-bo | View |
1864 | CVE-2000-0286 | Candidate | X fontserver xfs allows local users to cause a denial of service via malformed input to the server. | Proposed (20000426) | MODIFY(1) Frech | NOOP(3) Baker, Cole, Wall | REJECT(2) Christey, Levy | Frech> XF:redhat-fontserver-dos | POTENTIAL DUPE: CVE-2000-0263: The X font server xfs in Red Hat Linux 6.x | allows an attacker to cause a denial of service via a malformed request. | Christey> As Andre observed, this is a duplicate of CVE-2000-0263. | View |
1866 | CVE-2000-0288 | Candidate | Infonautics getdoc.cgi allows remote attackers to bypass the payment phase for accessing documents via a modified form variable. | Proposed (20000426) | MODIFY(1) Frech | NOOP(2) Cole, Wall | REJECT(1) Baker | REVIEWING(2) Christey, Levy | Frech> XF:http-cgi-infonautics-getdoc | Christey> CD:EX-ONLINE-SVC applies here. This may be a vulnerability in | an online service (the search engines used by Infonautics) | which poses no risk to anyone but the company itself. | View |
Page 369 of 20943, showing 5 records out of 104715 total, starting on record 1841, ending on 1845