An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5.
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail t…
Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.
Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.
Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.1 allows local users to gain root privileges via a long LANG environmental variable.
linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access via a symlink attack.
Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter.
wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program…
ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the authentication keys.
ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program.
RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.
Buffer overflow in INN inews program.
Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.
pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental variable.
Red Hat pump DHCP client allows remote attackers to gain root access in some configurations.
The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attacke…
Buffer overflows in Red Hat net-tools package.
The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to co…
Buffer overflow in Dosemu Slang library in Linux.
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
A Unix account has a default, null, blank, or missing password.
Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable.
sort creates temporary files and follows symbolic links, which allows local users to modify arbitrary files that are writable by the user running sor…
Buffer overflow in University of Washington's implementation of IMAP and POP servers.
Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.
ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.
Buffer overflow in NLS (Natural Language Service).