← Back

Caldera

caldera

82 CVEs • 16 products

Products (16)

Click to collapse
Toggle
Openlinux
openlinux
Unixware
unixware
Openunix
openunix
Openserver
openserver
Caldera
caldera
Volution
volution
Coas
coas
Openlinux Lite
openlinux_lite

CVEs (82)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
6Caldera
ImmunixMandrakesoft+3 more
8Immunix
LinuxMandrake Linux+5 more
Apr 16, 2026
Jul 18, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduc...Show more
Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.Show less
1Caldera
2Openlinux Server
Openlinux Workstation
Apr 16, 2026
Jul 17, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
docview before 1.0-15 allows remote attackers to execute arbitrary commands via shell metacharacters that are processed when converting a man page to a web page.
1Caldera
1Unixware
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in uucp utilities in UnixWare 7 allows local users to execute arbitrary code via long command line arguments to (1) uucp, (2) uux, (3) bnuconvert, (4) uucico, (5) uuxcmd, or (6) uuxqt.
1Caldera
1Volution
Apr 16, 2026
Jun 8, 2001
N/A· v4
N/A· v3
10.0 HIGH· v2
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which allows remote attackers to fully control clients via a Trojan horse Volution serv...Show more
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which allows remote attackers to fully control clients via a Trojan horse Volution server.Show less
1Caldera
3Openlinux Desktop
Openlinux EdesktopOpenlinux Eserver
Apr 16, 2026
Mar 26, 2001
N/A· v4
N/A· v3
10.0 HIGH· v2
Format string vulnerability in the error logging code of DHCP server and client in Caldera Linux allows remote attackers to execute arbitrary commands.
4Caldera
ConectivaMandrakesoft+1 more
5Linux
Mandrake LinuxMandrake Linux Corporate Server+2 more
Apr 16, 2026
Mar 26, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.
5Caldera
DebianImmunix+2 more
7Debian Linux
ImmunixLinux+4 more
Apr 16, 2026
Mar 12, 2001
N/A· v4
N/A· v3
1.2 LOW· v2
inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
7Caldera
ConectivaHp+4 more
9Hp Ux
ImmunixLinux+6 more
Apr 16, 2026
Jan 9, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to over...Show more
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.Show less
3Caldera
RedhatTrustix
6Linux
OpenlinuxOpenlinux Ebuilder+3 more
Apr 16, 2026
Dec 19, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
13Caldera
ConectivaDebian+10 more
16Aix
Debian LinuxImmunix+13 more
Apr 16, 2026
Nov 14, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
1Caldera
1Openlinux
Apr 16, 2026
Jul 12, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges.
3Caldera
FreebsdMandrakesoft
6Freebsd
Mandrake LinuxOpenlinux Desktop+3 more
Apr 16, 2026
Jul 4, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
3Caldera
MandrakesoftRedhat
3Linux
Mandrake LinuxOpenlinux
Apr 16, 2026
Jul 3, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
makewhatis in Linux man package allows local users to overwrite files via a symlink attack.
2Caldera
Kde
2Kde
Openlinux
Apr 16, 2026
May 31, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files.
3Caldera
GnomeSuse
3Gdm
OpenlinuxSuse Linux
Apr 16, 2026
May 24, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.
4Caldera
SlackwareSuse+1 more
4Openlinux
Slackware LinuxSuse Linux+1 more
Apr 16, 2026
May 22, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter.
1Caldera
1Openlinux
Apr 16, 2026
Mar 5, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system.
2Caldera
Suse
2Openlinux
Suse Linux
Apr 16, 2026
Feb 3, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.
2Caldera
Redhat
3Linux
OpenlinuxOpenlinux Eserver
Apr 16, 2026
Nov 23, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.
1Caldera
1Openlinux
Apr 16, 2026
Oct 8, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The IDENT server in Caldera Linux 2.3 creates multiple threads for each IDENT request, which allows remote attackers to cause a denial of service.