Page 79 of 495 results (0.037 seconds)

CVSS: 7.2EPSS: 0%CPEs: 10EXPL: 0

Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages. • ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2000-032.0.txt http://archives.neohapsis.com/archives/bugtraq/2000-09/0193.html http://frontal2.mandriva.com/security/advisories?name=MDKSA-2000:050 http://marc.info/?l=bugtraq&m=97726239017741&w=2 http://www.novell.com/linux/security/advisories/adv9_draht_syslogd_txt.html http://www.osvdb.org/5824 http://www.redhat.com/support/errata/RHSA-2000-061.html http://www.turbolinux.com/pipermail/tl-security-announce/2000-September/000 •

CVSS: 10.0EPSS: 0%CPEs: 74EXPL: 13

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/20187 https://www.exploit-db.com/exploits/209 https://www.exploit-db.com/exploits/215 https://www.exploit-db.com/exploits/249 https://www.exploit-db.com/exploits/20185 https://www.exploit-db.com/exploits/210 https://www.exploit-db.com/exploits/20188 https://www.exploit-db.com/exploits/20186 https://www.exploit-db.com/exploits/197 https://www.exploit-db.com/exploits/20189 https://www.exploit-db.com/exploits/20190 ftp: • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 2.1EPSS: 0%CPEs: 3EXPL: 2

The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/. • https://www.exploit-db.com/exploits/20217 http://www.redhat.com/support/errata/RHSA-2000-080.html http://www.securityfocus.com/archive/1/81364 http://www.securityfocus.com/bid/1664 https://exchange.xforce.ibmcloud.com/vulnerabilities/5217 •

CVSS: 10.0EPSS: 0%CPEs: 3EXPL: 0

The logrotate script for OpenLDAP before 1.2.11 in Conectiva Linux sends an improper signal to the kernel log daemon (klogd) and kills it. • http://archives.neohapsis.com/archives/bugtraq/2000-07/0379.html https://exchange.xforce.ibmcloud.com/vulnerabilities/5036 •

CVSS: 4.6EPSS: 0%CPEs: 6EXPL: 0

Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges. • http://archives.neohapsis.com/archives/bugtraq/2000-10/0429.html http://marc.info/?l=bugtraq&m=97208562830613&w=2 http://marc.info/?l=bugtraq&m=97249980727834&w=2 http://www.iss.net/security_center/static/5431.php http://www.redhat.com/support/errata/RHSA-2000-087.html http://www.securityfocus.com/bid/1813 •