CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4186  CVE-2001-1383  Entry  initscript in setserial 2.17-4 and earlier uses predictable temporary file names, which could allow local users to conduct unauthorized operations on files.        View
4187  CVE-2001-1384  Candidate  ptrace in Linux 2.2.x through 2.2.19, and 2.4.x through 2.4.9, allows local users to gain root privileges by running ptrace on a setuid or setgid program that itself calls an unprivileged program, such as newgrp.  Proposed (20020830)  ACCEPT(7) Armstrong, Baker, Cole, Cox, Frech, Green, Wall | NOOP(1) Foat    View
4188  CVE-2001-1385  Entry  The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the "engine = off" option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the source code of PHP scripts.        View
4189  CVE-2001-1386  Entry  WFTPD 3.00 allows remote attackers to read arbitrary files by uploading a (link) file that ends in a ".lnk." extension, which bypasses WFTPD"s check for a ".lnk" extension.        View
4190  CVE-2001-1387  Candidate  iptables-save in iptables before 1.2.4 records the "--reject-with icmp-host-prohibited" rule as "--reject-with tcp-reset," which causes iptables to generate different responses than specified by the administrator, possibly leading to an information leak.  Proposed (20020830)  ACCEPT(6) Armstrong, Baker, Cole, Cox, Green, Wall | MODIFY(1) Frech | NOOP(1) Foat  Frech> XF:iptables-iptablessave-information-leak(11116) | XF:iptables-save-files-option(7489)  View

Page 838 of 20943, showing 5 records out of 104715 total, starting on record 4186, ending on 4190

Actions