- EPSS 2.14%
- Veröffentlicht 28.10.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
- EPSS 0.62%
- Veröffentlicht 06.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
- EPSS 0.74%
- Veröffentlicht 06.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allow local or remote users to exploit those functions with a buffer overflow.
CVE-2000-0892
- EPSS 0.49%
- Veröffentlicht 21.07.2001 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL.
CVE-2000-1134
- EPSS 0.18%
- Veröffentlicht 09.01.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via...
- EPSS 86.09%
- Veröffentlicht 19.12.2000 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
- EPSS 0.89%
- Veröffentlicht 14.11.2000 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
CVE-2000-0372
- EPSS 0.05%
- Veröffentlicht 12.07.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges.
CVE-2000-0566
- EPSS 0.08%
- Veröffentlicht 03.07.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
makewhatis in Linux man package allows local users to overwrite files via a symlink attack.
CVE-2000-0530
- EPSS 0.11%
- Veröffentlicht 31.05.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files.