Show filters
15 Total Results
Displaying 1-10 of 15
Sort by:
Attacker Value
Unknown

CVE-2001-1456

Disclosure Date: September 04, 2001 (last updated February 22, 2025)
Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message.
0
Attacker Value
Unknown

CVE-2001-0170

Disclosure Date: March 26, 2001 (last updated February 22, 2025)
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
0
Attacker Value
Unknown

CVE-2000-1134

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
0
Attacker Value
Unknown

CVE-2000-0963

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.
0
Attacker Value
Unknown

CVE-2000-0844

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown

CVE-1999-0687

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
0
Attacker Value
Unknown

CVE-1999-0691

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
0
Attacker Value
Unknown

CVE-1999-0011

Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
0
Attacker Value
Unknown

CVE-1999-0010

Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
0
Attacker Value
Unknown

CVE-1999-0017

Disclosure Date: December 10, 1997 (last updated February 22, 2025)
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
0