CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2633  CVE-2000-1064  Candidate  Buffer overflow in the LPD service in HP JetDirect printer card Firmware x.08.20 and earlier allows remote attackers to cause a denial of service.  Proposed (20001129)  ACCEPT(3) Cole, Frech, Mell    View
2566  CVE-2000-0997  Candidate  Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges.  Proposed (20001129)  ACCEPT(3) Cole, Frech, Mell | NOOP(1) Wall    View
2540  CVE-2000-0971  Candidate  Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command.  Proposed (20001129)  ACCEPT(3) Cole, Frech, Mell | NOOP(2) Armstrong, Christey  Christey> Fix typo: "possible" should be "possibly" | Christey> fix typo: "and possible"  View
2556  CVE-2000-0987  Candidate  Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.  Proposed (20001129)  ACCEPT(3) Cole, Frech, Mell | NOOP(2) Armstrong, Christey  Christey> http://archives.neohapsis.com/archives/bugtraq/2000-12/0400.html | appears to be a rediscovery of this problem. | Christey> It looks like Juan Manuel Pascual Escriba saw this issue | in a later version and re-posted, but that later post doesn"t | mention the earlier one. The exploit is almost exactly the | same, but the affected version is 8.1.7. | ADDREF BUGTRAQ:20001221 vulnerability #1 in Oracle Internet Directory 2.1.1.1 in Oracle 8.1.7 | http://archives.neohapsis.com/archives/bugtraq/2000-12/0400.html | ADDREF BUGTRAQ:20010118 Patch for Potential Buffer Overflow Vulnerabilities in Oracle Internet Directory | http://archives.neohapsis.com/archives/bugtraq/2001-01/0325.html  View
1234  CVE-1999-1254  Candidate  Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables.  Proposed (20010912)  ACCEPT(3) Cole, Frech, Wall | MODIFY(1) Meunier | NOOP(2) Christey, Foat  Christey> Need to get feedback from MS on this. | Christey> (prompted from Pascal Meunier) should this be treated | as a general design issue with ICMP? Or is it a specific | implementation flaw that only affects Reliant? | Meunier> The description is too narrow and incorrect. Spoofed ICMP | redirect messages can be used to setup man-in-the-middle attacks | instead of a DoS. There"s no reason that this behavior would be | limited to Windows, as it is specified by the standard. As I said | elsewhere, ICMP messages should not be acted upon without access | controls.  View

Page 975 of 20943, showing 5 records out of 104715 total, starting on record 4871, ending on 4875

Actions