CVE-2001-1244 – HP-UX 11 / Linux Kernel 2.4 / Windows 2000/NT 4.0 / IRIX 6.5 - Small TCP MSS Denial of Service
https://notcve.org/view.php?id=CVE-2001-1244
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process. • https://www.exploit-db.com/exploits/20997 http://www.securityfocus.com/archive/1/195457 http://www.securityfocus.com/bid/2997 https://exchange.xforce.ibmcloud.com/vulnerabilities/6824 •
CVE-2001-0238
https://notcve.org/view.php?id=CVE-2001-0238
Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests. • http://www.ciac.org/ciac/bulletins/l-074.shtml https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-022 https://exchange.xforce.ibmcloud.com/vulnerabilities/6405 •
CVE-2001-0373
https://notcve.org/view.php?id=CVE-2001-0373
The default configuration of the Dr. Watson program in Windows NT and Windows 2000 generates user.dmp crash dump files with world-readable permissions, which could allow a local user to gain access to sensitive information. • http://archives.neohapsis.com/archives/bugtraq/2001-03/0336.html http://www.osvdb.org/5683 http://www.securityfocus.com/bid/2501 https://exchange.xforce.ibmcloud.com/vulnerabilities/6275 •
CVE-2001-0016
https://notcve.org/view.php?id=CVE-2001-0016
NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access. • http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html http://www.securityfocus.com/bid/2348 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-008 https://exchange.xforce.ibmcloud.com/vulnerabilities/6076 •
CVE-2001-0017
https://notcve.org/view.php?id=CVE-2001-0017
Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability. • http://www.securityfocus.com/bid/2368 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-009 https://exchange.xforce.ibmcloud.com/vulnerabilities/6103 •