Show filters
39 Total Results
Displaying 11-20 of 39
Sort by:
Attacker Value
Unknown

CVE-2002-0678

Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
0
Attacker Value
Unknown

CVE-2002-0677

Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure.
0
Attacker Value
Unknown

CVE-2001-0554

Disclosure Date: August 14, 2001 (last updated February 22, 2025)
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
0
Attacker Value
Unknown

CVE-2001-1244

Disclosure Date: July 07, 2001 (last updated February 22, 2025)
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
0
Attacker Value
Unknown

CVE-2000-0844

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
0
Attacker Value
Unknown

CVE-1999-0687

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
0
Attacker Value
Unknown

CVE-1999-0691

Disclosure Date: September 13, 1999 (last updated February 22, 2025)
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
0
Attacker Value
Unknown

CVE-2000-0118

Disclosure Date: June 09, 1999 (last updated February 22, 2025)
The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing.
0
Attacker Value
Unknown

CVE-1999-0009

Disclosure Date: April 08, 1998 (last updated February 22, 2025)
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
0
Attacker Value
Unknown

CVE-1999-0513

Disclosure Date: January 05, 1998 (last updated February 22, 2025)
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
0