CVE-2003-0088
- EPSS 0.05%
- Veröffentlicht 03.03.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
TruBlueEnvironment for MacOS 10.2.3 and earlier allows local users to overwrite or create arbitrary files and gain root privileges by setting a certain environment variable that is used to write debugging information.
- EPSS 0.5%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The default configuration of Mail.app in Mac OS X 10.0 through 10.0.4 and 10.1 through 10.1.5 sends iDisk authentication credentials in cleartext when connecting to Mac.com, which could allow remote attackers to obtain passwords by sniffing network t...
CVE-2002-1366
- EPSS 0.09%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows local users with lp privileges to create or overwrite arbitrary files via file race conditions, as demonstrated by ice-cream.
- EPSS 3.9%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to add printers without authentication via a certain UDP packet, which can then be used to perform unauthorized activities such as stealing the local root certificate fo...
CVE-2002-1368
- EPSS 26.75%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing negative arguments to be fed into memcpy() calls via HTTP requests with (1) a negativ...
- EPSS 9.97%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
jobs.c in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly use the strncat function call when processing the options string, which allows remote attackers to execute arbitrary code via a buffer overflow attack.
CVE-2002-1371
- EPSS 5.87%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
filters/image-gif.c in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check for zero-length GIF images, which allows remote attackers to execute arbitrary code via modified chunk headers, as demonstrated by nogif.
CVE-2002-1372
- EPSS 8.92%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check the return values of various file and socket operations, which could allow a remote attacker to cause a denial of service (resource exhaustion) by causing file descripto...
- EPSS 16.21%
- Veröffentlicht 26.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple integer overflows in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allow remote attackers to execute arbitrary code via (1) the CUPSd HTTP interface, as demonstrated by vanilla-coke, and (2) the image handling code in CUPS filters...
CVE-2002-1347
- EPSS 9.98%
- Veröffentlicht 18.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple buffer overflows in Cyrus SASL library 2.1.9 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long inputs during user name canonicalization, (2) characters that need to be escaped du...