Show filters
99 Total Results
Displaying 31-40 of 99
Sort by:
Attacker Value
Unknown
CVE-2009-1573
Disclosure Date: May 06, 2009 (last updated October 04, 2023)
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
0
Attacker Value
Unknown
CVE-2009-1295
Disclosure Date: April 30, 2009 (last updated October 04, 2023)
Apport before 0.108.4 on Ubuntu 8.04 LTS, before 0.119.2 on Ubuntu 8.10, and before 1.0-0ubuntu5.2 on Ubuntu 9.04 does not properly remove files from the application's crash-report directory, which allows local users to delete arbitrary files via unspecified vectors.
0
Attacker Value
Unknown
CVE-2009-0578
Disclosure Date: March 05, 2009 (last updated October 04, 2023)
GNOME NetworkManager before 0.7.0.99 does not properly verify privileges for dbus (1) modify and (2) delete requests, which allows local users to change or remove the network connections of arbitrary users via unspecified vectors related to org.freedesktop.NetworkManagerUserSettings and at_console.
0
Attacker Value
Unknown
CVE-2009-0365
Disclosure Date: March 05, 2009 (last updated October 04, 2023)
nm-applet.conf in GNOME NetworkManager before 0.7.0.99 contains an incorrect deny setting, which allows local users to discover (1) network connection passwords and (2) pre-shared keys via calls to the GetSecrets method in the dbus request handler.
0
Attacker Value
Unknown
CVE-2008-4395
Disclosure Date: November 06, 2008 (last updated October 04, 2023)
Multiple buffer overflows in the ndiswrapper module 1.53 for the Linux kernel 2.6 allow remote attackers to execute arbitrary code by sending packets over a local wireless network that specify long ESSIDs.
0
Attacker Value
Unknown
CVE-2008-4306
Disclosure Date: November 04, 2008 (last updated October 04, 2023)
Buffer overflow in enscript before 1.6.4 has unknown impact and attack vectors, possibly related to the font escape sequence.
0
Attacker Value
Unknown
CVE-2008-2285
Disclosure Date: May 18, 2008 (last updated October 04, 2023)
The ssh-vulnkey tool on Ubuntu Linux 7.04, 7.10, and 8.04 LTS does not recognize authorized_keys lines that contain options, which makes it easier for remote attackers to exploit CVE-2008-0166 by guessing a key that was not identified by this tool.
0
Attacker Value
Unknown
CVE-2006-7229
Disclosure Date: November 15, 2007 (last updated October 04, 2023)
The skge driver 1.5 in Linux kernel 2.6.15 on Ubuntu does not properly use the spin_lock and spin_unlock functions, which allows remote attackers to cause a denial of service (machine crash) via a flood of network traffic.
0
Attacker Value
Unknown
CVE-2007-5365
Disclosure Date: October 11, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementations based on ISC dhcp-2, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a DHCP request specifying a maximum message size smaller than the minimum IP MTU.
0
Attacker Value
Unknown
CVE-2007-4601
Disclosure Date: August 30, 2007 (last updated October 04, 2023)
A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote attackers to bypass intended access restrictions when a service uses libwrap but does not specify server connection information.
0