26 results (0.006 seconds)

CVSS: 10.0EPSS: 70%CPEs: 22EXPL: 0

05 Sep 2002 — Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure. Desbordamiento de búfer en el servidor de bases de datos RPC ToolTalk (rpc.ttdbserverd) de Common Desktop Environment (CDE) permite a atacantes remotos ejecutar código arbitrario mediante un argumento al procedimiento T_TT_CREATE_FILE. • http://marc.info/?l=bugtraq&m=102917002523536&w=2 •

CVSS: 7.2EPSS: 0%CPEs: 47EXPL: 0

23 Jul 2002 — CDE ToolTalk database server (ttdbserver) allows local users to overwrite arbitrary files via a symlink attack on the transaction log file used by the _TT_TRANSACTION RPC procedure. El servidor de bases de datos CDE ToolTalk (ttdbserver) permite a usuarios locales sobreescribir ficheros arbitrarios mediante un ataque en enlaces simbólicos (symlink attack) en el fichero de registro (log) de transacciones usado por el procedimiento RPC _TT_TRANSACTION • ftp://ftp.caldera.com/pub/updates/OpenUNIX/CSSA-2002-SCO.28/CSSA-2002-SCO.28.txt •

CVSS: 9.8EPSS: 23%CPEs: 46EXPL: 0

12 Jul 2002 — CDE ToolTalk database server (ttdbserver) allows remote attackers to overwrite arbitrary memory locations with a zero, and possibly gain privileges, via a file descriptor argument in an AUTH_UNIX procedure call, which is used as a table index by the _TT_ISCLOSE procedure. El sevidor de bases de datos CDE ToolTalk (ttdbserver) permite a atacantes remotos sobrescribir posiciones arbitrarias de memoria con ceros, y posiblemente ganar privilegios, mediante un arguemnte de descriptor de fichero en una llamada al... • ftp://ftp.caldera.com/pub/updates/OpenUNIX/CSSA-2002-SCO.28/CSSA-2002-SCO.28.txt •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

15 Mar 2002 — CDE dtlogin in Caldera UnixWare 7.1.0, and possibly other operating systems, allows local users to gain privileges via a symlink attack on /var/dt/Xerrors since /var/dt is world-writable. CDE dtlogin en Caldera UnixWare 7.1.0, y posiblemente en otros sistemas operativos, permiten a usuarios locales capturar privilegios vía un ataque de symlink sobre /var/dt/Xerrors cuando se establezca que /var/dt no tenga restricciones de escritura. • http://marc.info/?l=bugtraq&m=101060400802428&w=2 •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

31 Dec 2001 — Buffer overflow in xlock in UnixWare 7.1.0 and 7.1.1 and Open Unix 8.0.0 allows local users to execute arbitrary code. • ftp://stage.caldera.com/pub/security/openunix/CSSA-2001-SCO.34/CSSA-2001-SCO.34.txt •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

31 Dec 2001 — Unknown vulnerability in CDE in Caldera OpenUnix 7.1.0, 7.1.1, and 8.0 allows an xterm session to gain privileges when the session is reused. • http://archives.neohapsis.com/archives/linux/caldera/2001-q4/0017.html •

CVSS: 7.8EPSS: 0%CPEs: 3EXPL: 0

22 Nov 2001 — Buffer overflow in pppattach and other linked PPP utilities in Caldera Open Unix 8.0 and UnixWare 7.1.0 and 7.1.1 allows local users to gain privileges. • ftp://stage.caldera.com/pub/security/openunix/CSSA-2001-SCO.32 •

CVSS: 10.0EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — A vulnerability in the Sendmail configuration file sendmail.cf as installed in SCO UnixWare 7.1.0 and earlier allows an attacker to gain root privileges. • ftp://ftp.sco.com/SSE/security_bulletins/SB-99.10a •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — Vulnerability in the passthru driver in SCO UnixWare 7.1.0 allows an attacker to cause a denial of service. • ftp://ftp.sco.com/SSE/security_bulletins/SB-99.13a •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages. • ftp://ftp.sco.com/SSE/security_bulletins/SB-99.09b •