← Back

Mandrakesoft

mandrakesoft

139 CVEs • 7 products

Products (7)

Click to collapse
Toggle

CVEs (139)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
9Conectiva
EngardelinuxImmunix+6 more
11Immunix
LinuxLinux+8 more
Apr 16, 2026
Mar 15, 2002
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
8Caldera
DebianFreebsd+5 more
9Debian Linux
FreebsdLinux+6 more
Apr 16, 2026
Feb 27, 2002
N/A· v4
N/A· v3
7.2 HIGH· v2
Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice.
4Engardelinux
MandrakesoftRedhat+1 more
4Linux
Mandrake LinuxSecure Linux+1 more
Apr 16, 2026
Jan 31, 2002
N/A· v4
N/A· v3
7.5 HIGH· v2
Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows remote malicious servers to execute arbitrary code.
1Mandrakesoft
1Mandrake Linux
Apr 16, 2026
Dec 12, 2001
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The default PAM files included with passwd in Mandrake Linux 8.1 do not support MD5 passwords, which could result in a lower level of password security than intended.
1Mandrakesoft
1Mandrake Linux
Apr 16, 2026
Nov 30, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Packaging error for expect 8.3.3 in Mandrake Linux 8.1 causes expect to search for its libraries in the /home/snailtalk directory before other directories, which could allow a local user to gain root privileges.
2Apache
Mandrakesoft
4Http Server
Mandrake LinuxMandrake Linux Corporate Server+1 more
Apr 16, 2026
Nov 28, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
The default installation of Apache before 1.3.19 on Mandrake Linux 7.1 through 8.0 and Linux Corporate Server 1.0.1 allows remote attackers to list the directory index of arbitrary web directories.
5Engardelinux
ImmunixMandrakesoft+2 more
6Immunix
LinuxMandrake Linux+3 more
Apr 16, 2026
Oct 18, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
6Caldera
ImmunixMandrakesoft+3 more
8Immunix
LinuxMandrake Linux+5 more
Apr 16, 2026
Jul 18, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduc...Show more
Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.Show less
4Debian
MandrakesoftOpenldap+1 more
6Debian Linux
LinuxMandrake Linux+3 more
Apr 16, 2026
Jul 16, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field.
3Conectiva
LicqMandrakesoft
3Licq
LinuxMandrake Linux
Apr 16, 2026
Jul 2, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in logging functions of licq before 1.0.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands.
5Conectiva
FreebsdLicq+2 more
6Freebsd
LicqLinux+3 more
Apr 16, 2026
Jul 2, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
2Mandrakesoft
Redhat
2Linux
Mandrake Linux
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
4.6 MEDIUM· v2
kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.
1Mandrakesoft
1Mandrake Linux
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Vulnerability in rpmdrake in Mandrake Linux 8.0 related to insecure temporary file handling.
2Brian Paul
Mandrakesoft
2Mandrake Linux
Mesa
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
Utah-glx in Mesa before 3.3-14 on Mandrake Linux 7.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/glxmemory file.
5Conectiva
ImmunixMandrakesoft+2 more
5Immunix
LinuxLinux+2 more
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.
4Debian
MandrakesoftRalf S. Engelschall+1 more
4Debian Linux
EperlMandrake Linux+1 more
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.
3Debian
MandrakesoftRedhat
4Debian Linux
LinuxMandrake Linux+1 more
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header.
3Debian
ImmunixMandrakesoft
3Immunix
Mandrake LinuxSgml Tools
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that are being processed by sgml-tools.
3Freebsd
MandrakesoftSuse
3Freebsd
Mandrake LinuxSuse Linux
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
10.0 HIGH· v2
time server daemon timed allows remote attackers to cause a denial of service via malformed packets.
2Debian
Mandrakesoft
3Debian Linux
Mandrake LinuxMandrake Linux Corporate Server
Apr 16, 2026
May 3, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.