CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4791  CVE-2002-0399  Candidate  Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1) "/.." or (2) "./.." string, which removes the leading slash but leaves the "..", a variant of CVE-2001-1267.  Modified (20100521)  ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | NOOP(1) Christey  Christey> MANDRAKE:MDKSA-2002:066 | Cox> Addref: RHSA-2002:138  View
4792  CVE-2002-0400  Entry  ISC BIND 9 before 9.2.1 allows remote attackers to cause a denial of service (shutdown) via a malformed DNS packet that triggers an error condition that is not properly handled when the rdataset parameter to the dns_message_findtype() function in message.c is not NULL, aka DoS_findtype.        View
4793  CVE-2002-0401  Entry  SMB dissector in Ethereal 0.9.3 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via malformed packets that cause Ethereal to dereference a NULL pointer.        View
4794  CVE-2002-0402  Entry  Buffer overflow in X11 dissector in Ethereal 0.9.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code while Ethereal is parsing keysyms.        View
4795  CVE-2002-0403  Entry  DNS dissector in Ethereal before 0.9.3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed packet that causes Ethereal to enter an infinite loop.        View

Page 959 of 20943, showing 5 records out of 104715 total, starting on record 4791, ending on 4795

Actions