Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Linux
(Redhat)Repositories | https://github.com/mjg59/linux |
#Vulnerabilities | 232 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2001-07-19 | CVE-2001-1374 | expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd. | Linux, Expect, Linux | N/A | ||
2001-07-18 | CVE-2001-1030 | Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning. | Openlinux_server, Immunix, Mandrake_linux, Mandrake_linux_corporate_server, Mandrake_single_network_firewall, Linux, Squid_web_proxy, Secure_linux | N/A | ||
2001-05-28 | CVE-2001-1028 | Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges. | Linux | N/A | ||
2001-09-12 | CVE-2001-1013 | Apache on Red Hat Linux with with the UserDir directive enabled generates different error codes when a username exists and there is no public_html directory and when the username does not exist, which could allow remote attackers to determine valid usernames on the server. | Linux | N/A | ||
2001-08-31 | CVE-2001-1002 | The default configuration of the DVI print filter (dvips) in Red Hat Linux 7.0 and earlier does not run dvips in secure mode when dvips is executed by lpd, which could allow remote attackers to gain privileges by printing a DVI file that contains malicious commands. | Linux | N/A | ||
2001-07-16 | CVE-2001-0977 | slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field. | Debian_linux, Mandrake_linux, Mandrake_linux_corporate_server, Mandrake_single_network_firewall, Openldap, Linux | N/A | ||
2001-12-04 | CVE-2001-0946 | apmscript in Apmd in Red Hat 7.2 "Enigma" allows local users to create or change the modification dates of arbitrary files via a symlink attack on the LOW_POWER temporary file, which could be used to cause a denial of service, e.g. by creating /etc/nologin and disabling logins. | Linux | N/A | ||
2001-12-19 | CVE-2001-0889 | Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell metacharacters. | Linux, Exim | N/A | ||
2001-12-21 | CVE-2001-0886 | Buffer overflow in glob function of glibc allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a glob pattern that ends in a brace "{" character. | Debian_linux, Linux | N/A | ||
2001-12-21 | CVE-2001-0872 | OpenSSH 3.0.1 and earlier with UseLogin enabled does not properly cleanse critical environment variables such as LD_PRELOAD, which allows local users to gain root privileges. | Openssh, Linux, Suse_linux | N/A |