CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4603 | CVE-2002-0211 | Entry | Race condition in the installation script for Tarantella Enterprise 3 3.01 through 3.20 creates a world-writeable temporary "gunzip" program before executing it, which could allow local users to execute arbitrary commands by modifying the program before it is executed. | View | |||
6907 | CVE-2003-0078 | Entry | ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and MAC verification errors, possibly leading to extraction of the original plaintext, aka the "Vaudenay timing attack." | View | |||
8443 | CVE-2004-0015 | Entry | vbox3 0.1.8 and earlier does not properly drop privileges before executing a user-provided TCL script, which allows local users to gain privileges. | View | |||
1788 | CVE-2000-0210 | Entry | The lit program in Sun Flex License Manager (FlexLM) follows symlinks, which allows local users to modify arbitrary files. | View | |||
2044 | CVE-2000-0466 | Entry | AIX cdmount allows local users to gain root privileges via shell metacharacters. | View |
Page 602 of 20943, showing 5 records out of 104715 total, starting on record 3006, ending on 3010