Логотип exploitDog
source:"redhat"
Консоль
Логотип exploitDog

exploitDog

source:"redhat"

Количество 41 119

Количество 41 119

redhat логотип

CVE-2000-1208

больше 25 лет назад

Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from the checkremote() call.

EPSS: Низкий
redhat логотип

CVE-2000-1207

больше 25 лет назад

userhelper in the usermode package on Red Hat Linux executes non-setuid programs as root, which does not activate the security measures in glibc and allows the programs to be exploited via format string vulnerabilities in glibc via the LANG or LC_ALL environment variables (CVE-2000-0844).

EPSS: Низкий
redhat логотип

CVE-2000-1191

почти 26 лет назад

htsearch program in htDig 3.2 beta, 3.1.6, 3.1.5, and earlier allows remote attackers to determine the physical path of the server by requesting a non-existent configuration file using the config parameter, which generates an error message that includes the full path.

EPSS: Низкий
redhat логотип

CVE-2000-1190

больше 25 лет назад

imwheel-solo in imwheel package allows local users to modify arbitrary files via a symlink attack from the .imwheelrc file.

EPSS: Низкий
redhat логотип

CVE-2000-1189

около 25 лет назад

Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges.

EPSS: Низкий
redhat логотип

CVE-2000-1187

около 25 лет назад

Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a form field.

EPSS: Низкий
redhat логотип

CVE-2000-1178

около 25 лет назад

Joe text editor follows symbolic links when creating a rescue copy called DEADJOE during an abnormal exit, which allows local users to overwrite the files of other users whose joe session crashes.

EPSS: Низкий
redhat логотип

CVE-2000-1174

около 25 лет назад

Multiple buffer overflows in AFS ACL parser for Ethereal 0.8.13 and earlier allows remote attackers to execute arbitrary commands via a packet with a long username.

EPSS: Низкий
redhat логотип

CVE-2000-1169

около 25 лет назад

OpenSSH SSH client before 2.3.0 does not properly disable X11 or agent forwarding, which could allow a malicious SSH server to gain access to the X11 display and sniff X11 events, or gain access to the ssh-agent.

EPSS: Низкий
redhat логотип

CVE-2000-1162

около 25 лет назад

ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.

EPSS: Низкий
redhat логотип

CVE-2000-1137

около 25 лет назад

GNU ed before 0.2-18.1 allows local users to overwrite the files of other users via a symlink attack.

EPSS: Низкий
redhat логотип

CVE-2000-1134

больше 25 лет назад

Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.

EPSS: Низкий
redhat логотип

CVE-2000-1095

около 25 лет назад

modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters.

EPSS: Низкий
redhat логотип

CVE-2000-1045

больше 25 лет назад

nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests.

EPSS: Низкий
redhat логотип

CVE-2000-1040

больше 25 лет назад

Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service.

EPSS: Низкий
redhat логотип

CVE-2000-0974

больше 25 лет назад

GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection.

EPSS: Низкий
redhat логотип

CVE-2000-0973

больше 25 лет назад

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

EPSS: Средний
redhat логотип

CVE-2000-0967

больше 25 лет назад

PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.

EPSS: Средний
redhat логотип

CVE-2000-0963

больше 25 лет назад

Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.

EPSS: Низкий
redhat логотип

CVE-2000-0956

больше 25 лет назад

cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could allow the users to bypass specified access restrictions.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2000-1208

Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from the checkremote() call.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-1207

userhelper in the usermode package on Red Hat Linux executes non-setuid programs as root, which does not activate the security measures in glibc and allows the programs to be exploited via format string vulnerabilities in glibc via the LANG or LC_ALL environment variables (CVE-2000-0844).

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-1191

htsearch program in htDig 3.2 beta, 3.1.6, 3.1.5, and earlier allows remote attackers to determine the physical path of the server by requesting a non-existent configuration file using the config parameter, which generates an error message that includes the full path.

1%
Низкий
почти 26 лет назад
redhat логотип
CVE-2000-1190

imwheel-solo in imwheel package allows local users to modify arbitrary files via a symlink attack from the .imwheelrc file.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-1189

Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1187

Buffer overflow in the HTML parser for Netscape 4.75 and earlier allows remote attackers to execute arbitrary commands via a long password value in a form field.

1%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1178

Joe text editor follows symbolic links when creating a rescue copy called DEADJOE during an abnormal exit, which allows local users to overwrite the files of other users whose joe session crashes.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1174

Multiple buffer overflows in AFS ACL parser for Ethereal 0.8.13 and earlier allows remote attackers to execute arbitrary commands via a packet with a long username.

10%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1169

OpenSSH SSH client before 2.3.0 does not properly disable X11 or agent forwarding, which could allow a malicious SSH server to gain access to the X11 display and sniff X11 events, or gain access to the ssh-agent.

2%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1162

ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1137

GNU ed before 0.2-18.1 allows local users to overwrite the files of other users via a symlink attack.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1134

Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-1095

modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters.

0%
Низкий
около 25 лет назад
redhat логотип
CVE-2000-1045

nss_ldap earlier than 121, when run with nscd (name service caching daemon), allows remote attackers to cause a denial of service via a flood of LDAP requests.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-1040

Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service.

2%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0974

GnuPG (gpg) 1.0.3 does not properly check all signatures of a file containing multiple documents, which allows an attacker to modify contents of all documents but the first without detection.

2%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0973

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

28%
Средний
больше 25 лет назад
redhat логотип
CVE-2000-0967

PHP 3 and 4 do not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands by triggering error messages that are improperly written to the error logs.

27%
Средний
больше 25 лет назад
redhat логотип
CVE-2000-0963

Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.

0%
Низкий
больше 25 лет назад
redhat логотип
CVE-2000-0956

cyrus-sasl before 1.5.24 in Red Hat Linux 7.0 does not properly verify the authorization for a local user, which could allow the users to bypass specified access restrictions.

0%
Низкий
больше 25 лет назад

Уязвимостей на страницу