VYPR

Kernel

by Linux

Source repositories

CVEs (16,445)

  • CVE-1999-1339Dec 31, 1999
    risk 0.00cvss epss 0.03

    Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.2 with ipfw, allows remote attackers to cause a denial of service (kernel panic) via a ping -R (record route) command.

  • CVE-2000-0006Dec 25, 1999
    risk 0.00cvss epss 0.00

    strace allows local users to read arbitrary files via memory mapped file names.

  • CVE-1999-0317Nov 25, 1999
    risk 0.00cvss epss 0.00

    Buffer overflow in Linux su command gives root access to local users.

  • CVE-1999-1341Oct 22, 1999
    risk 0.00cvss epss 0.00

    Linux kernel before 2.3.18 or 2.2.13pre15, with SLIP and PPP options, allows local unprivileged users to forge IP packets via the TIOCSETD option on tty devices.

  • CVE-1999-1352Sep 28, 1999
    risk 0.00cvss epss 0.00

    mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges.

  • CVE-1999-0461Jan 28, 1999
    risk 0.00cvss epss 0.03

    Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address.

  • CVE-1999-0401Jan 1, 1999
    risk 0.00cvss epss 0.00

    A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files.

  • CVE-1999-0656Jan 1, 1999
    risk 0.00cvss epss 0.02

    The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names.

  • CVE-1999-1285Dec 27, 1998
    risk 0.00cvss epss 0.00

    Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffer from a random device (e.g. /dev/urandom), which cannot be interrupted until the read has completed.

  • CVE-1999-1276Dec 7, 1998
    risk 0.00cvss epss 0.00

    fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device.

  • CVE-1999-0780Nov 18, 1998
    risk 0.00cvss epss 0.00

    KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.

  • CVE-1999-0781Nov 18, 1998
    risk 0.00cvss epss 0.00

    KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables.

  • CVE-1999-0782Nov 18, 1998
    risk 0.00cvss epss 0.00

    KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable.

  • CVE-1999-0257Apr 1, 1998
    risk 0.00cvss epss 0.01

    Nestea variation of teardrop IP fragmentation denial of service.

  • CVE-1999-0330Mar 1, 1998
    risk 0.00cvss epss 0.00

    Linux bdash game has a buffer overflow that allows local users to gain root access.

  • CVE-1999-0216Nov 1, 1997
    risk 0.00cvss epss 0.03

    Denial of service of inetd on Linux through SYN and RST packets.

  • CVE-1999-0061Oct 2, 1997
    risk 0.00cvss epss 0.02

    File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).

  • CVE-1999-0183Sep 1, 1997
    risk 0.00cvss epss 0.02

    Linux implementations of TFTP would allow access to files outside the restricted directory.

  • CVE-1999-1225Aug 24, 1997
    risk 0.00cvss epss 0.02

    rpc.mountd on Linux, Ultrix, and possibly other operating systems, allows remote attackers to determine the existence of a file on the server by attempting to mount that file, which generates different error messages depending on whether the file exists or not.

  • CVE-1999-0195Jul 1, 1997
    risk 0.00cvss epss 0.02

    Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using a spoofed source IP address such as 127.0.0.1.

Page 822 of 823