Page 298 of 2989 results (0.023 seconds)

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

07 Oct 1999 — Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm. • http://marc.info/?l=bugtraq&m=93942774609925&w=2 •

CVSS: 8.1EPSS: 1%CPEs: 1EXPL: 0

07 Oct 1999 — PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file. • http://marc.info/?l=bugtraq&m=93942774609925&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

28 Sep 1999 — mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges. • http://marc.info/?l=bugtraq&m=93855134409747&w=2 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 1

27 Jul 1999 — IPChains in Linux kernels 2.2.10 and earlier does not reassemble IP fragments before checking the header information, which allows a remote attacker to bypass the filtering rules using several fragments with 0 offsets. • https://www.exploit-db.com/exploits/19301 •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 2

11 Jul 1999 — Linux 2.0.37 does not properly encode the Custom segment limit, which allows local users to gain root privileges by accessing and modifying kernel memory. • https://www.exploit-db.com/exploits/19419 •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

30 Jun 1999 — Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service. • http://marc.info/?l=bugtraq&m=93220073515880&w=2 •

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 1

01 Jun 1999 — Denial of service in Linux 2.2.x kernels via malformed ICMP packets containing unusual types, codes, and IP header lengths. • https://www.exploit-db.com/exploits/19241 •

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 1

01 Mar 1999 — In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection. • https://www.exploit-db.com/exploits/19458 •

CVSS: 7.5EPSS: 0%CPEs: 12EXPL: 1

01 Mar 1999 — Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service. • https://www.exploit-db.com/exploits/20566 •

CVSS: 5.5EPSS: 0%CPEs: 3EXPL: 1

19 Feb 1999 — Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service. • https://www.exploit-db.com/exploits/19250 •