CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104  CVE-1999-0104  Candidate  A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.  Modified (20090302)  ACCEPT(2) Frech, Wall | REVIEWING(1) Christey  Wall> Another reference is Microsoft Knowledge Base Q179129. | Christey> Not sure how many separate "instances" of Teardrop there are. | See: CVE-1999-0015, CVE-1999-0104, CVE-1999-0257, CVE-1999-0258 | Christey> See the SCO advisory at: | http://www.securityfocus.com/templates/advisory.html?id=1411 | which may further clarify the issue. | Christey> MSKB:Q179129 | http://support.microsoft.com/support/kb/articles/q179/1/29.asp | Christey> MSKB:Q179129 | http://support.microsoft.com/support/kb/articles/q179/1/29.asp | Note that the hotfix name is teardrop2, but the keywords | included in the KB article specifically name bonk | (CVE-1999-0258) and boink. | Since teardrop2 was fixed in a slightly different version | (at least in a separate patch) than Teardrop, CD:SF-LOC | suggests keeping them separate. | Christey> Add period to the end of the description.  View
4968  CVE-2002-0577  Candidate  Vulnerability in passwd for HP-UX 11.00 and 11.11 allows local users to corrupt the password file and cause a denial of service.  Modified (20090302)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
5741  CVE-2002-1357  Candidate  Multiple SSH2 servers and clients do not properly handle packets or data elements with incorrect length specifiers, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.  Modified (20090302)  ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Cox | REVIEWING(1) Wall  Frech> XF:ssh-transport-length-bo(10868)  View
5742  CVE-2002-1358  Candidate  Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.  Modified (20090302)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Cox | REVIEWING(1) Wall  Frech> XF:ssh-transport-empty-lists-bo(10869)  View
5743  CVE-2002-1359  Candidate  Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code via buffer overflow attacks, as demonstrated by the SSHredder SSH protocol test suite.  Modified (20090302)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Cox | REVIEWING(1) Wall  Frech> XF:ssh-transport-multiple-bo(10870)  View

Page 438 of 20943, showing 5 records out of 104715 total, starting on record 2186, ending on 2190

Actions