|
314821
|
9.8 |
CRITICAL
Network
|
openbsd
|
openssh
|
Integer overflow in sshd in OpenSSH 2.9.9 through 3.3 allows remote attackers to execute arbitrary code during challenge response authentication (ChallengeResponseAuthentication) when OpenSSH is usin…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2002-0639
|
2024-02-9 03:37 |
2002-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314822
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
Integer overflow in the SCTP_SOCKOPT_DEBUG_NAME SCTP socket option in socket.c in the Linux kernel 2.4.25 and earlier allows local users to execute arbitrary code via an optlen value of -1, which cau…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2004-2013
|
2024-02-9 02:59 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314823
|
9.8 |
CRITICAL
Network
|
wuftpd redhat apple sun freebsd netbsd openbsd
|
wu-ftpd wu_ftpd mac_os_x_server mac_os_x solaris freebsd netbsd openbsd
|
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via command…
|
CWE-193
Off-by-one Error
|
CVE-2003-0466
|
2024-02-9 00:50 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314824
|
5.5 |
MEDIUM
Local
|
mandrakesoft
|
mandrake_linux
|
The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-readable permissions, which could allow local users to read other user's files.
|
CWE-276
Incorrect Default Permissions
|
CVE-2002-1713
|
2024-02-9 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314825
|
7.8 |
HIGH
Local
|
microsoft
|
windows_media_player
|
Microsoft Windows Media Player (WMP) 6.3, when installed on Solaris, installs executables with world-writable permissions, which allows local users to delete or modify the executables to gain privile…
|
CWE-276
Incorrect Default Permissions
|
CVE-2002-1844
|
2024-02-9 00:50 |
2002-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314826
|
9.8 |
CRITICAL
Network
|
suse
|
suse_linux
|
The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.
|
CWE-276
Incorrect Default Permissions
|
CVE-1999-0426
|
2024-02-9 00:50 |
1999-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314827
|
7.8 |
HIGH
Local
|
isc
|
bind
|
dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which al…
|
CWE-276
Incorrect Default Permissions
|
CVE-2001-0497
|
2024-02-9 00:49 |
2001-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314828
|
7.5 |
HIGH
Network
|
aol
|
aim
|
The GIF parser in ateimg32.dll in AOL Instant Messenger (AIM) 5.9.3797 and earlier allows remote attackers to cause a denial of service (crash) via a malformed buddy icon that causes an integer under…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2005-1891
|
2024-02-9 00:44 |
2005-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314829
|
9.8 |
CRITICAL
Network
|
barton
|
ngircd
|
Integer underflow in the Lists_MakeMask() function in lists.c in ngIRCd before 0.8.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2005-0199
|
2024-02-9 00:43 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314830
|
7.5 |
HIGH
Network
|
samba canonical
|
ppp ubuntu_linux
|
Integer underflow in pppd in cbcp.c for ppp 2.4.1 allows remote attackers to cause a denial of service (daemon crash) via a CBCP packet with an invalid length value that causes pppd to access an inco…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2004-1002
|
2024-02-9 00:43 |
2005-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|