CVE-2002-1372
- EPSS 8.92%
- Published 26.12.2002 05:00:00
- Last modified 03.04.2025 01:03:51
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check the return values of various file and socket operations, which could allow a remote attacker to cause a denial of service (resource exhaustion) by causing file descripto...
- EPSS 6.04%
- Published 04.11.2002 05:00:00
- Last modified 03.04.2025 01:03:51
Memory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist.
- EPSS 32.92%
- Published 04.11.2002 05:00:00
- Last modified 03.04.2025 01:03:51
The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and earlier, (2) kadmind in KTH Kerberos 4 (eBones) before 1.2.1, and (3) kadmind in KTH Kerberos 5 (Heimdal) before...
CVE-2002-0839
- EPSS 0.14%
- Published 11.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
The shared memory scoreboard in the HTTP daemon for Apache 1.3.x before 1.3.27 allows any user running as the Apache UID to send a SIGUSR1 signal to any process as root, resulting in a denial of service (process kill) or possibly other behaviors that...
- EPSS 0.95%
- Published 04.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
in.uucpd UUCP server in Debian GNU/Linux 2.2, and possibly other operating systems, does not properly terminate long strings, which allows remote attackers to cause a denial of service, possibly due to a buffer overflow.
CVE-2002-0875
- EPSS 1.07%
- Published 05.09.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Vulnerability in FAM 2.6.8, 2.6.6, and other versions allows unprivileged users to obtain the names of files whose access is restricted to the root group.
CVE-2002-0392
- EPSS 59.3%
- Published 03.07.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Apache 1.3 through 1.3.24, and Apache 2.0 through 2.0.36, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a chunk-encoded HTTP request that causes Apache to use an incorrect size.
CVE-2002-0401
- EPSS 5.82%
- Published 18.06.2002 04:00:00
- Last modified 03.04.2025 01:03:51
SMB dissector in Ethereal 0.9.3 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via malformed packets that cause Ethereal to dereference a NULL pointer.
CVE-2002-0184
- EPSS 0.21%
- Published 16.05.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Sudo before 1.6.6 contains an off-by-one error that can result in a heap-based buffer overflow that may allow local users to gain root privileges via special characters in the -p (prompt) argument, which are not properly expanded.
CVE-2002-0062
- EPSS 0.2%
- Published 08.03.2002 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "routines for moving the physical cursor and scrolling."