CVEs (229)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Red Hat Linux 7.1 sets insecure permissions on swap files created during installation, which can allow a local attacker to gain additional privileges by reading sensitive information from the swap file, such as passwords...Show more |
tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-c...Show more |
3Conectiva Don LibesRedhat3Expect LinuxLinuxApr 16, 2026 Jul 19, 2001 N/A· v4 N/A· v3 7.2 HIGH· v2 expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd. |
6Caldera ImmunixMandrakesoft+3 more8Immunix LinuxMandrake Linux+5 moreApr 16, 2026 Jul 18, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduc...Show more |
4Debian MandrakesoftOpenldap+1 more6Debian Linux LinuxMandrake Linux+3 moreApr 16, 2026 Jul 16, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field. |
5Conectiva FreebsdLicq+2 more6Freebsd LicqLinux+3 moreApr 16, 2026 Jul 2, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL. |
2Mandrakesoft Redhat2Linux Mandrake LinuxApr 16, 2026 Jun 27, 2001 N/A· v4 N/A· v3 4.6 MEDIUM· v2 kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges. |
5Conectiva ImmunixMandrakesoft+2 more5Immunix LinuxLinux+2 moreApr 16, 2026 Jun 27, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands. |
3Debian MandrakesoftRedhat4Debian Linux LinuxMandrake Linux+1 moreApr 16, 2026 Jun 27, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header. |
inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal serv...Show more |
Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges. |
3Debian Matthew SmithRedhat3Debian Linux LinuxMicqApr 16, 2026 Mar 26, 2001 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field. |
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands. |
4Conectiva DebianImmunix+1 more4Debian Linux ImmunixLinux+1 moreApr 16, 2026 Mar 26, 2001 N/A· v4 N/A· v3 2.1 LOW· v2 glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files. |
4Mandrakesoft RedhatTrustix+1 more5Linux Mandrake LinuxMandrake Linux Corporate Server+2 moreApr 16, 2026 Mar 26, 2001 N/A· v4 N/A· v3 2.1 LOW· v2 When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary...Show more |
vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack. |
5Immunix MandrakesoftNational Science Foundation+2 more5Immunix LinuxMandrake Linux+2 moreApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 1.2 LOW· v2 squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations. |
3Immunix MandrakesoftRedhat3Immunix LinuxMandrake LinuxApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 1.2 LOW· v2 arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations. |
5Caldera DebianImmunix+2 more7Debian Linux ImmunixLinux+4 moreApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 1.2 LOW· v2 inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations. |
4Debian ImmunixMandrakesoft+1 more5Debian Linux ImmunixLinux+2 moreApr 16, 2026 Mar 12, 2001 N/A· v4 N/A· v3 1.2 LOW· v2 privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack. |