CVE List

Id CVE No. Status Description Phase Votes Comments Actions
33387  CVE-2008-3270  Candidate  yum-rhn-plugin in Red Hat Enterprise Linux (RHEL) 5 does not verify the SSL certificate for a file download from a Red Hat Network (RHN) server, which makes it easier for remote man-in-the-middle attackers to cause a denial of service (loss of updates) or force the download and installation of official Red Hat packages that were not requested.  Assigned (20080724)  None (candidate not yet proposed)    View
7079  CVE-2003-0251  Candidate  ypserv NIS server before 2.7 allows remote attackers to cause a denial of service via a TCP client request that does not respond to the server, which causes ypserv to block.  Assigned (20030506)  None (candidate not yet proposed)    View
882  CVE-1999-0902  Entry  ypserv allows local administrators to modify password tables.        View
881  CVE-1999-0901  Entry  ypserv allows a local user to modify the GECOS and login shells of other users.        View
297  CVE-1999-0298  Candidate  ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.  Modified (20000524-01)  ACCEPT(4) Cole, Dik, Levy, Northcutt | MODIFY(1) Frech | NOOP(3) Baker, Christey, Shostack  Christey> ADDREF BID:1441 | URL:http://www.securityfocus.com/bid/1441 | Dik> If you run with "-ypset", then you"re always insecure. | With ypsetme, only root on the local host | can run ypset in Solaris 2.x+. | Probably true for SunOS 4, hence my vote. | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> ADDREF XF:ypbind-ypset-root | CHANGE> [Dik changed vote from REVIEWING to ACCEPT] | Dik> This vulnerability does exist in SunOS 4.x in non default configurations. | In Solaris 2.x, the vulnerability only applies to files named "cache_binding" | and not all files ending in .2 | Both releases are not vulnerable in the default configuration (both | disabllow ypset by default which prevents this problem from occurring)  View

Page 39 of 20943, showing 5 records out of 104715 total, starting on record 191, ending on 195

Actions