Buffer overflow in the man program in Linux allows local users to gain privileges via the MANPAGER environmental variable.
Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.
An installation of Red Hat uses DES password encryption with crypt() for the initial password, instead of md5.
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail t…
Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.
Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack.
automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell …
Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.1 allows local users to gain root privileges via a long LANG environmental variable.
linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access via a symlink attack.
Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges.
snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read and write sensitive informati…
Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter.
wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program…
ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the authentication keys.
ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program.
PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users…
RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.
Buffer overflow in INN inews program.
Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.
pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental variable.
Red Hat pump DHCP client allows remote attackers to gain root access in some configurations.
The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attacke…
Buffer overflows in Red Hat net-tools package.
The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to co…
Buffer overflow in Dosemu Slang library in Linux.
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
xosview 1.5.1 in Red Hat 5.1 allows local users to gain root access via a long HOME environmental variable.
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.