Логотип exploitDog
source:"ubuntu"
Консоль
Логотип exploitDog

exploitDog

source:"ubuntu"

Количество 59 541

Количество 59 541

ubuntu логотип

CVE-2002-2443

больше 12 лет назад

schpw.c in the kpasswd service in kadmind in MIT Kerberos 5 (aka krb5) before 1.11.3 does not properly validate UDP packets before sending responses, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged packet that triggers a communication loop, as demonstrated by krb_pingpong.nasl, a related issue to CVE-1999-0103.

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2002-2439

почти 6 лет назад

operator new[] sometimes returns pointers to heap blocks which are too small. When a new array is allocated, the C++ run-time has to calculate its size. The product may exceed the maximum value which can be stored in a machine register. This error is ignored, and the truncated value is used for the heap allocation. This may lead to heap overflows and therefore security bugs. (See http://cert.uni-stuttgart.de/advisories/calloc.php for further references.)

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2002-2438

больше 4 лет назад

firewalls might let some TCP flags combinations pass (e.g. all with RST flag set) and the OS (e.g. Linux) stack would in turn accept a TCP session it might not have accepted otherwise.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2002-1581

почти 21 год назад

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2002-1341

больше 22 лет назад

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2002-1165

почти 23 года назад

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2002-1157

почти 23 года назад

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2002-0843

почти 23 года назад

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2002-0840

почти 23 года назад

CVSS2: 6.8
EPSS: Высокий
ubuntu логотип

CVE-2002-0839

почти 23 года назад

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2002-0662

почти 23 года назад

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2002-0435

около 23 лет назад

Race condition in the recursive (1) directory deletion and (2) directory move in GNU File Utilities (fileutils) 4.1 and earlier allows local users to delete directories as the user running fileutils by moving a low-level directory to a higher level as it is being deleted, which causes fileutils to chdir to a ".." directory that is higher than expected, possibly up to the root file system.

CVSS2: 1.2
EPSS: Низкий
ubuntu логотип

CVE-2002-0399

почти 23 года назад

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2002-0389

около 23 лет назад

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2002-0379

около 23 лет назад

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2001-1593

больше 11 лет назад

Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user(). A local attacker could use this flaw to perform a symbolic link attack to modify an arbitrary file accessible to the user running a2ps.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2001-1535

больше 23 лет назад

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2001-1413

больше 20 лет назад

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2001-0775

почти 24 года назад

CVSS2: 7.5
EPSS: Средний
ubuntu логотип

CVE-2000-1254

больше 9 лет назад

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2002-2443

schpw.c in the kpasswd service in kadmind in MIT Kerberos 5 (aka krb5) before 1.11.3 does not properly validate UDP packets before sending responses, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged packet that triggers a communication loop, as demonstrated by krb_pingpong.nasl, a related issue to CVE-1999-0103.

CVSS2: 5
24%
Средний
больше 12 лет назад
ubuntu логотип
CVE-2002-2439

operator new[] sometimes returns pointers to heap blocks which are too small. When a new array is allocated, the C++ run-time has to calculate its size. The product may exceed the maximum value which can be stored in a machine register. This error is ignored, and the truncated value is used for the heap allocation. This may lead to heap overflows and therefore security bugs. (See http://cert.uni-stuttgart.de/advisories/calloc.php for further references.)

CVSS3: 7.8
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2002-2438

firewalls might let some TCP flags combinations pass (e.g. all with RST flag set) and the OS (e.g. Linux) stack would in turn accept a TCP session it might not have accepted otherwise.

CVSS3: 7.5
5%
Низкий
больше 4 лет назад
ubuntu логотип
CVSS2: 5
10%
Низкий
почти 21 год назад
ubuntu логотип
CVSS2: 6.8
3%
Низкий
больше 22 лет назад
ubuntu логотип
CVSS2: 4.6
3%
Низкий
почти 23 года назад
ubuntu логотип
CVSS2: 7.5
3%
Низкий
почти 23 года назад
ubuntu логотип
CVSS2: 7.5
3%
Низкий
почти 23 года назад
ubuntu логотип
CVSS2: 6.8
89%
Высокий
почти 23 года назад
ubuntu логотип
CVSS2: 7.2
0%
Низкий
почти 23 года назад
ubuntu логотип
CVSS2: 2.1
0%
Низкий
почти 23 года назад
ubuntu логотип
CVE-2002-0435

Race condition in the recursive (1) directory deletion and (2) directory move in GNU File Utilities (fileutils) 4.1 and earlier allows local users to delete directories as the user running fileutils by moving a low-level directory to a higher level as it is being deleted, which causes fileutils to chdir to a ".." directory that is higher than expected, possibly up to the root file system.

CVSS2: 1.2
0%
Низкий
около 23 лет назад
ubuntu логотип
CVSS2: 5
1%
Низкий
почти 23 года назад
ubuntu логотип
CVSS2: 2.1
0%
Низкий
около 23 лет назад
ubuntu логотип
CVSS2: 7.5
30%
Средний
около 23 лет назад
ubuntu логотип
CVE-2001-1593

Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user(). A local attacker could use this flaw to perform a symbolic link attack to modify an arbitrary file accessible to the user running a2ps.

CVSS2: 2.1
0%
Низкий
больше 11 лет назад
ubuntu логотип
CVSS2: 4.6
0%
Низкий
больше 23 лет назад
ubuntu логотип
CVSS2: 7.5
13%
Средний
больше 20 лет назад
ubuntu логотип
CVSS2: 7.5
26%
Средний
почти 24 года назад
ubuntu логотип
CVSS3: 7.5
1%
Низкий
больше 9 лет назад

Уязвимостей на страницу