Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ltp MEDIUM 6.9
CVE-2008-5145

ltpmenu in ltp 20060918 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/runltp.mainmenu.##### temporary file.

Mitigation only
Fix from $1,600 2008-11-18
Os Prober MEDIUM 6.2
CVE-2008-5135

os-prober in os-prober 1.17 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/mounted-map or (2) /tmp/raided-map t…

Mitigation only
Fix from $1,600 2008-11-18
Initramfs Tools MEDIUM 5.5
CVE-2008-4996

init in initramfs-tools 0.92f allows local users to overwrite arbitrary files via a symlink attack on the /tmp/initramfs.debug temporary file. NOTE:…

No fix yet
Fix from $1,600 2008-11-07
Newsgate MEDIUM 6.9
CVE-2008-4975

mkmailpost in newsgate 1.6 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/mmp##### temporary file.

No fix yet
Fix from $1,600 2008-11-06
Myspell MEDIUM 6.9
CVE-2008-4973

i2myspell in myspell 3.1 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/i2my#####.1 and (2) /tmp/i2my#####.2 tempor…

No fix yet
Fix from $1,600 2008-11-06
Dpkg Cross MEDIUM 6.9
CVE-2008-4950

gccross in dpkg-cross 2.3.0 allows local users to overwrite arbitrary files via a symlink attack on the tmp/gccross2.log temporary file. NOTE: the v…

No fix yet
Fix from $1,600 2008-11-05
Feta HIGH 7.2
CVE-2008-4440

The to-upgrade plugin in feta 1.4.16 allows local users to overwrite arbitrary files via a symlink on the (1) /tmp/feta.install.$USER and (2) /tmp/fe…

Mitigation only
Fix from $1,950 2008-10-03
Xsabre HIGH 7.2
CVE-2008-4406

A certain Debian patch to the run scripts for sabre (aka xsabre) 0.2.4b allows local users to delete or overwrite arbitrary files via a symlink attac…

Mitigation only
Fix from $1,950 2008-10-03
Honeyd Common MEDIUM 6.9
CVE-2008-3928

test.sh in Honeyd 1.5c might allow local users to overwrite arbitrary files via a symlink attack on a temporary file.

Mitigation only
Fix from $1,600 2008-09-04
Citadel Server MEDIUM 6.9
CVE-2008-3930

migrate_aliases.sh in Citadel Server 7.37 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.

Mitigation only
Fix from $1,600 2008-09-04
Aptlinex HIGH 7.2
CVE-2008-1901

aptlinex before 0.91 allows local users to overwrite arbitrary files via a symlink attack on the gambas-apt.lock temporary file.

Mitigation only
Fix from $1,950 2008-04-22
Aptlinex MEDIUM 5.0
CVE-2008-1902

The GUI for aptlinex before 0.91 does not sufficiently warn the user of potentially dangerous actions, which allows remote attackers to remove or mod…

Mitigation only
Fix from $1,600 2008-04-22
Debian Linux HIGH 7.2
CVE-2007-5729

The NE2000 emulator in QEMU 0.8.2 allows local users to execute arbitrary code by writing Ethernet frames with a size larger than the MTU to the EN0_…

Mitigation only
Fix from $1,950 2007-10-30
Debian Linux HIGH 7.2
CVE-2007-5730

Heap-based buffer overflow in QEMU 0.8.2, as used in Xen and possibly other products, allows local users to execute arbitrary code via crafted data i…

Mitigation only
Fix from $1,950 2007-10-30
Debian Linux HIGH 7.8
CVE-2007-2833

Emacs 21 allows user-assisted attackers to cause a denial of service (crash) via certain crafted images, as demonstrated via a GIF image in vm mode, …

Mitigation only
Fix from $1,950 2007-06-21
Apache MEDIUM 6.6
CVE-2006-7098

The Debian GNU/Linux 033_-F_NO_SETSID patch for the Apache HTTP Server 1.3.34-4 does not properly disassociate httpd from a controlling tty when http…

Mitigation only
Fix from $1,600 2007-03-03
Debian Linux HIGH 7.3
CVE-2005-3302

Eval injection vulnerability in bvh_import.py in Blender 2.36 allows attackers to execute arbitrary Python code via a hierarchy element in a .bvh fil…

No fix yet
Fix from $1,950 2005-10-24
Ppxp HIGH 7.2
CVE-2005-0392

ppxp does not drop root privileges before opening log files, which allows local users to execute arbitrary commands.

Mitigation only
Fix from $1,950 2005-05-19
Debian Linux HIGH 10.0
CVE-2004-0981EPSS 6%

Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to execute arbitrary code via a certain image file.

Mitigation only
Fix from $1,950 2005-02-09
Debian Linux MEDIUM 5.0
CVE-2003-0362

Buffer overflow in gPS before 0.10.2 may allow local users to cause a denial of service (SIGSEGV) in rgpsp via long command lines.

Mitigation only
Fix from $1,600 2003-06-09
Debian Linux HIGH 7.5
CVE-2001-0755

Buffer overflow in ftp daemon (ftpd) 6.2 in Debian GNU/Linux allows attackers to cause a denial of service and possibly execute arbitrary code via a …

Mitigation only
Fix from $1,950 2001-10-18
Debian Linux MEDIUM 5.0
CVE-2000-0888EPSS 8%

named in BIND 8.2 through 8.2.2-P6 allows remote attackers to cause a denial of service by sending an SRV record to the server, aka the "srv bug."

Mitigation only
Fix from $1,600 2000-12-19
Debian Linux HIGH 7.2
CVE-2000-0867

Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by tr…

Mitigation only
Fix from $1,950 2000-11-14
Debian Linux HIGH 10.0
CVE-2000-0584EPSS 6%

Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group nam…

Mitigation only
Fix from $1,950 2000-07-02
Debian Linux HIGH 7.2
CVE-2000-0606

Buffer overflow in kon program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via a long -StartupMessage pa…

Mitigation only
Fix from $1,950 2000-06-21
Debian Linux HIGH 7.2
CVE-2000-0607

Buffer overflow in fld program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via an input file containing …

Mitigation only
Fix from $1,950 2000-06-21
Debian Linux HIGH 7.2
CVE-2000-0229

gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root.

Mitigation only
Fix from $1,950 2000-03-22
Debian Linux HIGH 7.2
CVE-2000-0112

The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot from a floppy disk during th…

Mitigation only
Fix from $1,950 2000-02-02
Debian Linux HIGH 7.2
CVE-2000-0107

Linux apcd program allows local attackers to modify arbitrary files via a symlink attack.

Mitigation only
Fix from $1,950 2000-02-01
Debian Linux HIGH 7.5
CVE-1999-0978

htdig allows remote attackers to execute commands via filenames with shell metacharacters.

Mitigation only
Fix from $1,950 1999-12-09