CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
5690 | CVE-2002-1306 | Candidate | Multiple buffer overflows in LISa on KDE 2.x for 2.1 and later, and KDE 3.x before 3.0.4, allow (1) local and possibly remote attackers to execute arbitrary code via the "lisa" daemon, and (2) remote attackers to execute arbitrary code via a certain "lan://" URL. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Suggest adding "KDE" into description | Addref: RHSA-2002:221 | View |
5549 | CVE-2002-1165 | Candidate | Sendmail Consortium"s Restricted Shell (SMRSH) in Sendmail 8.12.6, 8.11.6-15, and possibly other versions after 8.11 from 5/19/1998, allows attackers to bypass the intended restrictions of smrsh by inserting additional commands after (1) "||" sequences or (2) "/" characters, which are not properly filtered or verified. | Modified (20080207) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: RHSA-2002:259 | View |
5558 | CVE-2002-1174 | Candidate | Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly processed by the readheaders function, or (2) via long Received: headers, which are not properly parsed by the parse_received function. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:216 | View |
5559 | CVE-2002-1175 | Candidate | The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: REDHAT:RHSA-2002:216 | View |
5631 | CVE-2002-1247 | Candidate | Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: RHSA-2002:221 | Suggest mention of KDE in the description | View |
Page 910 of 20943, showing 5 records out of 104715 total, starting on record 4546, ending on 4550