Mandrakesoft
mandrakesoft
139 CVEs • 7 products
Products (7)
Click to collapseToggle
Products (7)
Click to collapse
CVEs (139)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
8Apache DebianGentoo+5 more12Debian Linux Enterprise LinuxEnterprise Linux Desktop+9 moreApr 16, 2026 Sep 16, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The mod_dav module in Apache 2.0.50 and earlier allows remote attackers to cause a denial of service (child process crash) via a certain sequence of LOCK requests for a location that allows WebDAV authoring access. |
5Conectiva MandrakesoftSamba+2 more5Linux Mandrake LinuxSamba+2 moreApr 16, 2026 Sep 13, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Samba 3.0.6 and earlier allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via certain malformed requests that cause new processes to be spawned and enter an infinite loop. |
3Mandrakesoft RedhatSuse4Fedora Core Mandrake LinuxMandrake Linux Corporate Server+1 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 2.1 LOW· v2 Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service. |
2Gnu Mandrakesoft3Ksymoops Mandrake LinuxMandrake Linux Corporate ServerApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 4.6 MEDIUM· v2 ksymoops-gznm script in Mandrake Linux 9.1 through 10.0, and Corporate Server 2.1, allows local users to delete arbitrary files via a symlink attack on files in /tmp. |
6Conectiva EngardelinuxGentoo+3 more17Linux LinuxLinux Kernel+14 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 2.1 LOW· v2 The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. NOTE: this issue was originally incorrectly reported...Show more |
5Infoblox IscMandrakesoft+2 more11Dhcpd Dns One ApplianceFedora Core+8 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 The DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13, when compiled in environments that do not provide the vsnprintf function, uses C include files that define vsnprintf to use the less safe vsprintf function, w...Show more |
5Infoblox IscMandrakesoft+2 more11Dhcpd Dns One ApplianceFedora Core+8 moreApr 16, 2026 Aug 6, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multi...Show more |
2Mandrakesoft Xpcd2Mandrake Linux XpcdApr 16, 2026 Jul 7, 2004 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Buffer overflow in xpcd-svga in xpcd before 2.08, and possibly other versions, may allow local users to execute arbitrary code. |
3Gentoo MandrakesoftMplayer3Linux Mandrake LinuxMplayerApr 16, 2026 May 4, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in the HTTP parser for MPlayer 1.0pre3 and earlier, 0.90, and 0.91 allows remote attackers to execute arbitrary code via a long Location header. |
3Debian MandrakesoftSun5Debian Linux Mandrake LinuxMandrake Linux Corporate Server+2 moreApr 16, 2026 Feb 16, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Unknown vulnerability in the rwho daemon (rwhod) before 0.17, on little endian architectures, allows remote attackers to cause a denial of service (application crash). |
2Irssi Mandrakesoft2Irssi Mandrake LinuxApr 16, 2026 Jan 5, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The format_send_to_gui function in formats.c for irssi before 0.8.9 allows remote IRC users to cause a denial of service (crash). |
2Linux Mandrakesoft4Linux Kernel Mandrake LinuxMandrake Linux Corporate Server+1 moreApr 16, 2026 Aug 27, 2003 N/A· v4 N/A· v3 1.2 LOW· v2 A race condition in the way env_start and env_end pointers are initialized in the execve system call and used in fs/proc/base.c on Linux 2.4 allows local users to cause a denial of service (crash). |
4Adobe MandrakesoftRedhat+1 more7Acrobat Enterprise LinuxLinux+4 moreApr 16, 2026 Jul 24, 2003 N/A· v4 N/A· v3 7.5 HIGH· v2 Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink. |
3Mandrakesoft MitRedhat4Kerberos Ftp Client LinuxMandrake Linux+1 moreApr 16, 2026 Feb 19, 2003 N/A· v4 N/A· v3 10.0 HIGH· v2 Kerberos FTP client allows remote FTP sites to execute arbitrary code via a pipe (|) character in a filename that is retrieved by the client. |
6Debian MandrakesoftMicrosoft+3 more11Debian Linux Enterprise LinuxEnterprise Linux Desktop+8 moreApr 16, 2026 Dec 31, 2002 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target t...Show more |
2Jmcce Mandrakesoft2Jmcce Mandrake LinuxApr 16, 2026 Dec 31, 2002 N/A· v4 N/A· v3 1.2 LOW· v2 jmcce 1.3.8 in Mandrake 8.1 creates log files in /tmp with predictable names, which allows local users to overwrite arbitrary files via a symlink attack. |
4Gnome MandrakesoftRedhat+1 more4Bonobo LinuxMandrake Linux+1 moreApr 16, 2026 Dec 31, 2002 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long command line arguments. |
The Standard security setting for Mandrake-Security package (msec) in Mandrake 8.2 installs home directories with world-readable permissions, which could allow local users to read other user's files. |
3Hp MandrakesoftRedhat3Linux Mandrake LinuxSecure OsApr 16, 2026 Oct 28, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 dvips converter for Postscript files in the tetex package calls the system() function insecurely, which allows remote attackers to execute arbitrary commands via certain print jobs, possibly involving fonts. |
3Hp MandrakesoftRedhat5Linux Mandrake LinuxMandrake Linux Corporate Server+2 moreApr 16, 2026 Aug 12, 2002 N/A· v4 N/A· v3 6.2 MEDIUM· v2 setpwnam.c in the util-linux package, as included in Red Hat Linux 7.3 and earlier, and other operating systems, does not properly lock a temporary file when modifying /etc/passwd, which may allow local users to gain pri...Show more |