Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown
CVE-2004-0968
Disclosure Date: February 09, 2005 (last updated October 04, 2023)
The catchsegv script in glibc 2.3.2 and earlier allows local users to overwrite files via a symlink attack on temporary files.
0
Attacker Value
Unknown
CVE-2004-1453
Disclosure Date: December 31, 2004 (last updated October 04, 2023)
GNU glibc 2.3.4 before 2.3.4.20040619, 2.3.3 before 2.3.3.20040420, and 2.3.2 before 2.3.2-r10 does not restrict the use of LD_DEBUG for a setuid program, which allows local users to gain sensitive information, such as the list of symbols used by the program.
0
Attacker Value
Unknown
CVE-2004-1382
Disclosure Date: December 31, 2004 (last updated October 04, 2023)
The glibcbug script in glibc 2.3.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2004-0968.
0
Attacker Value
Unknown
CVE-2002-1265
Disclosure Date: November 12, 2002 (last updated October 03, 2023)
The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from TCP connections, which allows remote attackers to cause a denial of service (hang).
0
Attacker Value
Unknown
CVE-2000-0959
Disclosure Date: December 19, 2000 (last updated October 03, 2023)
glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.
0