Show filters
146 Total Results
Displaying 61-70 of 146
Sort by:
Attacker Value
Unknown
CVE-2002-1296
Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Directory traversal vulnerability in priocntl system call in Solaris does allows local users to execute arbitrary code via ".." sequences in the pc_clname field of a pcinfo_t structure, which cause priocntl to load a malicious kernel module.
0
Attacker Value
Unknown
CVE-2002-1345
Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Directory traversal vulnerabilities in multiple FTP clients on UNIX systems allow remote malicious FTP servers to create or overwrite files as the client user via filenames containing /absolute/path or .. (dot dot) sequences.
0
Attacker Value
Unknown
CVE-2002-1317
Disclosure Date: December 11, 2002 (last updated February 22, 2025)
Buffer overflow in Dispatch() routine for XFS font server (fs.auto) on Solaris 2.5.1 through 9 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a certain XFS query.
0
Attacker Value
Unknown
CVE-2002-1587
Disclosure Date: December 04, 2002 (last updated February 22, 2025)
The libthread library (libthread.so.1) for Solaris 2.5.1 through 8 allows local users to cause a denial of service (hang) of an application that uses libthread by causing the application to wait for a certain mutex.
0
Attacker Value
Unknown
CVE-2002-1586
Disclosure Date: December 03, 2002 (last updated February 22, 2025)
Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sd_struiowrq variable in the struioget function to null, which triggers a null dereference.
0
Attacker Value
Unknown
CVE-2002-1199
Disclosure Date: October 28, 2002 (last updated February 22, 2025)
The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
0
Attacker Value
Unknown
CVE-2002-1228
Disclosure Date: October 28, 2002 (last updated February 22, 2025)
Unknown vulnerability in NFS on Solaris 2.5.1 through Solaris 9 allows an NFS client to cause a denial of service by killing the lockd daemon.
0
Attacker Value
Unknown
CVE-2002-0885
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Multiple buffer overflows in in.rarpd (ARP server) on Solaris, and possibly other operating systems including Caldera UnixWare and Open UNIX, allow remote attackers to execute arbitrary code, possibly via the functions (1) syserr and (2) error.
0
Attacker Value
Unknown
CVE-2002-0884
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Multiple format string vulnerabilities in in.rarpd (ARP server) on Solaris, Caldera UnixWare and Open UNIX, and possibly other operating systems, allows remote attackers to execute arbitrary code via format strings that are not properly handled in the functions (1) syserr and (2) error.
0
Attacker Value
Unknown
CVE-2002-0679
Disclosure Date: September 05, 2002 (last updated February 22, 2025)
Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.
0