Show filters
27 Total Results
Displaying 1-10 of 27
Sort by:
Attacker Value
Unknown

CVE-2005-0109

Disclosure Date: March 05, 2005 (last updated February 22, 2025)
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
0
Attacker Value
Unknown

CVE-2004-1307

Disclosure Date: December 21, 2004 (last updated February 22, 2025)
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2003-0914

Disclosure Date: December 15, 2003 (last updated February 22, 2025)
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.
0
Attacker Value
Unknown

CVE-2002-0679

Disclosure Date: September 05, 2002 (last updated February 22, 2025)
Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.
0
Attacker Value
Unknown

CVE-2002-0678

Disclosure Date: July 23, 2002 (last updated February 22, 2025)
CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure.
0
Attacker Value
Unknown

CVE-2001-1164

Disclosure Date: June 27, 2001 (last updated February 22, 2025)
Buffer overflow in uucp utilities in UnixWare 7 allows local users to execute arbitrary code via long command line arguments to (1) uucp, (2) uux, (3) bnuconvert, (4) uucico, (5) uuxcmd, or (6) uuxqt.
0
Attacker Value
Unknown

CVE-2000-0308

Disclosure Date: March 12, 2001 (last updated February 22, 2025)
Insecure file permissions for Netscape FastTrack Server 2.x, Enterprise Server 2.0, and Proxy Server 2.5 in SCO UnixWare 7.0.x and 2.1.3 allow an attacker to gain root privileges.
0
Attacker Value
Unknown

CVE-2000-1014

Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter.
0
Attacker Value
Unknown

CVE-2000-0842

Disclosure Date: November 14, 2000 (last updated February 22, 2025)
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack.
0
Attacker Value
Unknown

CVE-1999-0979

Disclosure Date: April 11, 2000 (last updated February 22, 2025)
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed.
0