Show filters
31 Total Results
Displaying 21-30 of 31
Sort by:
Attacker Value
Unknown
CVE-2010-0002
Disclosure Date: January 14, 2010 (last updated October 04, 2023)
The /etc/profile.d/60alias.sh script in the Mandriva bash package for Bash 2.05b, 3.0, 3.2, 3.2.48, and 4.0 enables the --show-control-chars option in LS_OPTIONS, which allows local users to send escape sequences to terminal emulators, or hide the existence of a file, via a crafted filename.
0
Attacker Value
Unknown
CVE-2008-5374
Disclosure Date: December 08, 2008 (last updated October 04, 2023)
bash-doc 3.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/cb#####.? temporary file, related to the (1) aliasconv.sh, (2) aliasconv.bash, and (3) cshtobash scripts.
0
Attacker Value
Unknown
CVE-2007-4446
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
Format string vulnerability in the server in Toribash 2.71 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the NICK command (client nickname) when entering a game.
0
Attacker Value
Unknown
CVE-2007-4447
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
Multiple buffer overflows in the client in Toribash 2.71 and earlier allow remote attackers to (1) execute arbitrary code via a long game command in a replay (.rpl) file and (2) cause a denial of service (application crash) via a long SAY command that omits a required LF character; and allow remote Toribash servers to execute arbitrary code via (3) a long game command and (4) a long SAY command that omits a required LF character.
0
Attacker Value
Unknown
CVE-2007-4452
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
The client in Toribash 2.71 and earlier allows remote attackers to cause a denial of service (disconnection) via a long (1) emote or (2) SPEC command.
0
Attacker Value
Unknown
CVE-2007-4450
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
The server in Toribash 2.71 and earlier does not properly handle long commands, which allows remote attackers to trigger a protocol violation in which data is sent to other clients without a required LF character, as demonstrated by a SAY command. NOTE: the security impact of this violation is not clear, although it probably makes exploitation of CVE-2007-4449 easier.
0
Attacker Value
Unknown
CVE-2007-4448
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
The server in Toribash 2.71 and earlier does not properly handle partially joined clients that are temporarily assigned the ID of -1, which allows remote attackers to cause a denial of service (daemon crash) via a GRIP command with the ID of -1.
0
Attacker Value
Unknown
CVE-2007-4451
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
The server in Toribash 2.71 and earlier on Windows allows remote attackers to cause a denial of service (continuous beep and server hang) via certain commands that contain many 0x07 or other invalid characters.
0
Attacker Value
Unknown
CVE-2007-4449
Disclosure Date: August 21, 2007 (last updated October 04, 2023)
The client in Toribash 2.71 and earlier allows remote attackers to cause a denial of service (application hang) via a command without an LF character, as demonstrated by a SAY command.
0
Attacker Value
Unknown
CVE-1999-0491
Disclosure Date: April 20, 1999 (last updated February 22, 2025)
The prompt parsing in bash allows a local user to execute commands as another user by creating a directory with the name of the command to execute.
0