Show filters
102 Total Results
Displaying 91-100 of 102
Sort by:
Attacker Value
Unknown

CVE-2001-0872

Disclosure Date: December 21, 2001 (last updated February 22, 2025)
OpenSSH 3.0.1 and earlier with UseLogin enabled does not properly cleanse critical environment variables such as LD_PRELOAD, which allows local users to gain root privileges.
0
Attacker Value
Unknown

CVE-2001-0851

Disclosure Date: December 06, 2001 (last updated February 22, 2025)
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
0
Attacker Value
Unknown

CVE-2001-0834

Disclosure Date: December 06, 2001 (last updated February 22, 2025)
htsearch CGI program in htdig (ht://Dig) 3.1.5 and earlier allows remote attackers to use the -c option to specify an alternate configuration file, which could be used to (1) cause a denial of service (CPU consumption) by specifying a large file such as /dev/zero, or (2) read arbitrary files by uploading an alternate configuration file that specifies the target file.
0
Attacker Value
Unknown

CVE-2001-0763

Disclosure Date: October 18, 2001 (last updated February 22, 2025)
Buffer overflow in Linux xinetd 2.1.8.9pre11-1 and earlier may allow remote attackers to execute arbitrary code via a long ident response, which is not properly handled by the svc_logprint function.
0
Attacker Value
Unknown

CVE-2001-0641

Disclosure Date: September 20, 2001 (last updated February 22, 2025)
Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option.
0
Attacker Value
Unknown

CVE-2001-1012

Disclosure Date: September 05, 2001 (last updated February 22, 2025)
Vulnerability in screen before 3.9.10, related to a multi-attach error, allows local users to gain root privileges when there is a subdirectory under /tmp/screens/.
0
Attacker Value
Unknown

CVE-2001-1130

Disclosure Date: August 02, 2001 (last updated February 22, 2025)
Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by uploading a keylist.txt file that contains filenames with shell metacharacters, then causing the file to be searched using a .. in the HTTP referer (from the HTTP_REFERER variable) to point to the directory that contains the keylist.txt file.
0
Attacker Value
Unknown

CVE-2001-0388

Disclosure Date: June 27, 2001 (last updated February 22, 2025)
time server daemon timed allows remote attackers to cause a denial of service via malformed packets.
0
Attacker Value
Unknown

CVE-2001-0458

Disclosure Date: June 27, 2001 (last updated February 22, 2025)
Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.
0
Attacker Value
Unknown

CVE-2001-0178

Disclosure Date: March 26, 2001 (last updated February 22, 2025)
kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.
0