CVEs (229)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be downloaded. |
gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a symlink attack on a temporary file. |
netcfg 2.16-1 in Red Hat Linux 4.2 allows the Ethernet interface to be controlled by users on reboot when an option is set, which allows local users to cause a denial of service by shutting down the interface. |
The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf. |
Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges. |
linuxconf before 1.11.r11-rh3 on Red Hat Linux 5.1 allows local users to overwrite arbitrary files and gain root access via a symlink attack. |
Buffer overflow in linuxconf 1.11r11-rh2 on Red Hat Linux 5.1 allows local users to gain root privileges via a long LANG environmental variable. |
Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter. |
3Millenux Gmbh RedhatUniversity Of Washington3Anonftp LinuxWu FtpdApr 16, 2026 Dec 20, 1999 N/A· v4 N/A· v3 7.5 HIGH· v2 wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress. |
3Debian LinuxRedhat3Debian Linux LinuxLinux KernelApr 16, 2026 Dec 8, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option. |
ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program. |
ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the authentication keys. |
2Caldera Redhat3Linux OpenlinuxOpenlinux EserverApr 16, 2026 Nov 23, 1999 N/A· v4 N/A· v3 2.1 LOW· v2 Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets. |
Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname. |
Pluggable Authentication Modules (PAM) in Red Hat Linux 6.1 does not properly lock access to disabled NIS accounts. |
Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm. |
PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disab...Show more |
RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command. |
3Bsdi FreebsdRedhat3Bsd Os FreebsdLinuxApr 16, 2026 Sep 16, 1999 N/A· v4 N/A· v3 9.3 HIGH· v2 Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others. |
Buffer overflow in INN inews program. |