Page 7 of 113 results (0.007 seconds)

CVSS: 9.1EPSS: 0%CPEs: 14EXPL: 0

06 Dec 2001 — Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000432 •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

22 Nov 2001 — Vulnerabilities in CGI scripts in susehelp in SuSE 7.2 and 7.3 allow remote attackers to execute arbitrary commands by not opening files securely. • http://www.novell.com/linux/security/advisories/2001_041_susehelp_txt.html •

CVSS: 5.5EPSS: 0%CPEs: 2EXPL: 0

21 Nov 2001 — Linux kernel before 2.4.11pre3 in multiple Linux distributions allows local users to cause a denial of service (crash) by starting the core vmlinux kernel, possibly related to poor error checking during ELF loading. • http://marc.info/?l=bugtraq&m=100638584813349&w=2 •

CVSS: 9.8EPSS: 25%CPEs: 9EXPL: 1

18 Oct 2001 — Buffer overflow in Linux xinetd 2.1.8.9pre11-1 and earlier may allow remote attackers to execute arbitrary code via a long ident response, which is not properly handled by the svc_logprint function. • https://www.exploit-db.com/exploits/20908 •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 2

20 Sep 2001 — Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option. • https://www.exploit-db.com/exploits/20843 •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 0

05 Sep 2001 — Vulnerability in screen before 3.9.10, related to a multi-attach error, allows local users to gain root privileges when there is a subdirectory under /tmp/screens/. • http://www.novell.com/linux/security/advisories/2001_030_screen_txt.html •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 1

14 Aug 2001 — Buffer overflow in dsh in dqs 3.2.7 in SuSE Linux 7.0 and earlier, and possibly other operating systems, allows local users to gain privileges via a long first command line argument. • http://archives.neohapsis.com/archives/bugtraq/2001-05/0193.html •

CVSS: 9.8EPSS: 4%CPEs: 6EXPL: 1

02 Aug 2001 — Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by uploading a keylist.txt file that contains filenames with shell metacharacters, then causing the file to be searched using a .. in the HTTP referer (from the HTTP_REFERER variable) to point to the directory that contains the keylist.txt file. • https://www.exploit-db.com/exploits/21075 •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 1

27 Jul 2001 — kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm cache directory in /tmp. • https://www.exploit-db.com/exploits/20781 •

CVSS: 10.0EPSS: 1%CPEs: 12EXPL: 0

27 Jun 2001 — time server daemon timed allows remote attackers to cause a denial of service via malformed packets. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:28.timed.asc •