CVE List

Id CVE No. Status Description Phase Votes Comments Actions
426  CVE-1999-0427  Candidate  Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> Change version number to 4.2beta. Second to last paragraph in bugtraq | reference states: "Both the Win 95 and Win NT versions, along with the 4.2 | beta of Eudora are affected." | Christey> This issue seems to have been rediscovered in | BUGTRAQ:20000515 Eudora Pro & Outlook Overflow - too long filenames again | http://marc.theaimsgroup.com/?l=bugtraq&m=95842482413076&w=2 | | Also see | BUGTRAQ:19990320 Eudora Attachment Buffer Overflow | http://marc.theaimsgroup.com/?l=bugtraq&m=92195396912110&w=2 | | Is this a duplicate/subsumed by CVE-1999-0004?  View
430  CVE-1999-0431  Candidate  Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service.  Modified (20000106-01)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:linux-zerolength-fragment | Christey> Consider adding BID:2247  View
433  CVE-1999-0434  Candidate  XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:xfree86-xfs-symlink-dos | Christey> Is this the same problem as CVE-1999-0433? CVE-1999-0433 | deals with a symlink attack on one file (/tmp/.X11-unix), | while xfs (this candidate) deals with /tmp/.font-unix | XF:xfree86-xfs-symlink-dos doesn"t exist. | Christey> ADDREF DEBIAN:19990331 symbolic link can be used to make any file world readable | Note: Debian"s advisory says that this is not a problem for Debian.  View
460  CVE-1999-0462  Candidate  suidperl in Linux Perl does not check the nosuid mount option on file systems, allowing local users to gain root access by placing a setuid script in a mountable file system, e.g. a CD-ROM or floppy disk.  Proposed (19990728)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:perl-suidperl-bo | Christey> XF:perl-suidperl-bo doesn"t exist.  View
478  CVE-1999-0480  Candidate  Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack.  Modified (20000106-01)  ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:midnight-commander-symlink-dos | Christey> XF:midnight-commander-symlink-dos(3505)  View

Page 617 of 20943, showing 5 records out of 104715 total, starting on record 3081, ending on 3085

Actions