Show filters
22 Total Results
Displaying 11-20 of 22
Sort by:
Attacker Value
Unknown
CVE-2004-0081
Disclosure Date: November 23, 2004 (last updated February 22, 2025)
OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool.
0
Attacker Value
Unknown
CVE-2004-0421
Disclosure Date: August 18, 2004 (last updated February 22, 2025)
The Portable Network Graphics library (libpng) 1.0.15 and earlier allows attackers to cause a denial of service (crash) via a malformed PNG image file that triggers an error that causes an out-of-bounds read when creating the error message.
0
Attacker Value
Unknown
CVE-2003-0962
Disclosure Date: December 15, 2003 (last updated February 22, 2025)
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
0
Attacker Value
Unknown
CVE-2002-0638
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does not properly lock a temporary file when modifying /etc/passwd, which may allow local users to gain privileges via a complex race condition that uses an open file descriptor in utility programs such as chfn and chsh.
0
Attacker Value
Unknown
CVE-2002-0083
Disclosure Date: March 15, 2002 (last updated February 22, 2025)
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
0
Attacker Value
Unknown
CVE-2002-0002
Disclosure Date: January 31, 2002 (last updated February 22, 2025)
Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows remote malicious servers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2001-0736
Disclosure Date: October 18, 2001 (last updated February 22, 2025)
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
0
Attacker Value
Unknown
CVE-2001-0739
Disclosure Date: October 18, 2001 (last updated February 22, 2025)
Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.
0
Attacker Value
Unknown
CVE-2001-1030
Disclosure Date: July 18, 2001 (last updated February 22, 2025)
Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.
0
Attacker Value
Unknown
CVE-2001-1240
Disclosure Date: July 11, 2001 (last updated February 22, 2025)
The default configuration of sudo in Engarde Secure Linux 1.0.1 allows any user in the admin group to run certain commands that could be leveraged to gain full root access.
0