Product:

Suse_linux

(Suse)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 207
Date Id Summary Products Score Patch Annotated
2005-10-05 CVE-2005-3148 StoreBackup before 1.19 does not properly set the uid and guid for symbolic links (1) that are backed up by storeBackup.pl, or (2) recovered by storeBackupRecover.pl, which could cause files to be restored with incorrect ownership. Storebackup, Suse_linux N/A
2005-10-05 CVE-2005-3147 StoreBackup before 1.19 creates the backup root with world-readable permissions, which allows local users to obtain sensitive information. Storebackup, Suse_linux N/A
2005-10-05 CVE-2005-3146 StoreBackup before 1.19 allows local users to perform unauthorized operations on arbitrary files via a symlink attack on temporary files. Storebackup, Suse_linux N/A
2005-09-21 CVE-2005-3013 Buffer overflow in liby2util in Yet another Setup Tool (YaST) for SuSE Linux 9.3 allows local users to execute arbitrary code via a long Loc entry. Suse_linux N/A
2005-06-17 CVE-2005-2023 The send_pinentry_environment function in asshelp.c in gpg2 on SUSE Linux 9.3 does not properly handle certain options, which can prevent pinentry from being found and causes S/MIME signing to fail. Suse_linux N/A
2005-06-09 CVE-2005-1763 Buffer overflow in ptrace in the Linux Kernel for 64-bit architectures allows local users to write bytes into kernel memory. Linux_desktop, Suse_linux N/A
2005-04-14 CVE-2005-1043 exif.c in PHP before 4.3.11 allows remote attackers to cause a denial of service (memory consumption and crash) via an EXIF header with a large IFD nesting level, which causes significant stack recursion. Mac_os_x, Mac_os_x_server, Linux, Peachtree_linux, Php, Propack, Suse_linux N/A
2005-03-27 CVE-2005-0750 The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value. Linux, Linux_kernel, Enterprise_linux, Enterprise_linux_desktop, Fedora_core, Linux, Suse_linux, Ubuntu_linux N/A
2005-03-02 CVE-2005-0639 Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via "buffer management errors" from certain image properties, some of which may be related to integer overflows in PPM files. Alt_linux, Suse_linux, Xli N/A
2005-03-02 CVE-2005-0638 xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command. Alt_linux, Suse_linux, Xli N/A