Vendor CVEs
Debian
All CVEs
10,469 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-1999-0872 | 0.00 | — | 0.00 | Aug 25, 1999 | Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file. | |||
| CVE-1999-1565 | 0.00 | — | 0.00 | Aug 20, 1999 | Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file. | |||
| CVE-1999-0743 | 0.00 | — | 0.00 | Aug 20, 1999 | Trn allows local users to overwrite other users' files via symlinks. | |||
| CVE-1999-0732 | 0.00 | — | 0.00 | Aug 19, 1999 | The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic links. | |||
| CVE-1999-0742 | 0.00 | — | 0.01 | Jun 22, 1999 | The Debian mailman package uses weak authentication, which allows attackers to gain privileges. | |||
| CVE-1999-1496 | 0.00 | — | 0.01 | Jun 8, 1999 | Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of arbitrary files by attempting to execute the target filename as a program, which generates a different error message when the file does not exist. | |||
| CVE-1999-0434 | 0.00 | — | 0.01 | Mar 30, 1999 | XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service. | |||
| CVE-2000-0367 | 0.00 | — | 0.00 | Feb 18, 1999 | Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges. | |||
| CVE-1999-0374 | 0.00 | — | 0.00 | Feb 16, 1999 | Debian GNU/Linux cfengine package is susceptible to a symlink attack. | |||
| CVE-1999-0373 | 0.00 | — | 0.00 | Feb 1, 1999 | Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root. | |||
| CVE-1999-0457 | 0.00 | — | 0.00 | Jan 17, 1999 | Linux ftpwatch program allows local users to gain root privileges. | |||
| CVE-1999-0389 | 0.00 | — | 0.00 | Jan 3, 1999 | Buffer overflow in the bootp server in the Debian Linux netstd package. | |||
| CVE-1999-1276 | 0.00 | — | 0.00 | Dec 7, 1998 | fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device. | |||
| CVE-1999-1411 | 0.00 | — | 0.02 | Nov 26, 1998 | The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp. | |||
| CVE-1999-1048 | 0.00 | — | 0.01 | Sep 5, 1998 | Buffer overflow in bash 2.0.0, 1.4.17, and other versions allows local attackers to gain privileges by creating an extremely large directory name, which is inserted into the password prompt via the \w option in the PS1 environmental variable when another user changes into that… | |||
| CVE-1999-0341 | 0.00 | — | 0.00 | Jan 1, 1998 | Buffer overflow in the Linux mail program "deliver" allows local users to gain root access. | |||
| CVE-1999-1182 | 0.00 | — | 0.00 | Jul 17, 1997 | Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges by calling a setuid program with a long program name (argv[0]) and forcing ld.so/ld-linux.so to report an error. | |||
| CVE-1999-0048 | 0.00 | — | 0.03 | Jan 27, 1997 | Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges. | |||
| CVE-1999-1572 | 0.00 | — | 0.01 | Jul 16, 1996 | cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files. |
- CVE-1999-0872Aug 25, 1999risk 0.00cvss —epss 0.00
Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file.
- CVE-1999-1565Aug 20, 1999risk 0.00cvss —epss 0.00
Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
- CVE-1999-0743Aug 20, 1999risk 0.00cvss —epss 0.00
Trn allows local users to overwrite other users' files via symlinks.
- CVE-1999-0732Aug 19, 1999risk 0.00cvss —epss 0.00
The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic links.
- CVE-1999-0742Jun 22, 1999risk 0.00cvss —epss 0.01
The Debian mailman package uses weak authentication, which allows attackers to gain privileges.
- CVE-1999-1496Jun 8, 1999risk 0.00cvss —epss 0.01
Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of arbitrary files by attempting to execute the target filename as a program, which generates a different error message when the file does not exist.
- CVE-1999-0434Mar 30, 1999risk 0.00cvss —epss 0.01
XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.
- CVE-2000-0367Feb 18, 1999risk 0.00cvss —epss 0.00
Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.
- CVE-1999-0374Feb 16, 1999risk 0.00cvss —epss 0.00
Debian GNU/Linux cfengine package is susceptible to a symlink attack.
- CVE-1999-0373Feb 1, 1999risk 0.00cvss —epss 0.00
Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root.
- CVE-1999-0457Jan 17, 1999risk 0.00cvss —epss 0.00
Linux ftpwatch program allows local users to gain root privileges.
- CVE-1999-0389Jan 3, 1999risk 0.00cvss —epss 0.00
Buffer overflow in the bootp server in the Debian Linux netstd package.
- CVE-1999-1276Dec 7, 1998risk 0.00cvss —epss 0.00
fte-console in the fte package before 0.46b-4.1 does not drop root privileges, which allows local users to gain root access via the virtual console device.
- CVE-1999-1411Nov 26, 1998risk 0.00cvss —epss 0.02
The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such as wu-ftp.
- CVE-1999-1048Sep 5, 1998risk 0.00cvss —epss 0.01
Buffer overflow in bash 2.0.0, 1.4.17, and other versions allows local attackers to gain privileges by creating an extremely large directory name, which is inserted into the password prompt via the \w option in the PS1 environmental variable when another user changes into that…
- CVE-1999-0341Jan 1, 1998risk 0.00cvss —epss 0.00
Buffer overflow in the Linux mail program "deliver" allows local users to gain root access.
- CVE-1999-1182Jul 17, 1997risk 0.00cvss —epss 0.00
Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges by calling a setuid program with a long program name (argv[0]) and forcing ld.so/ld-linux.so to report an error.
- CVE-1999-0048Jan 27, 1997risk 0.00cvss —epss 0.03
Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
- CVE-1999-1572Jul 16, 1996risk 0.00cvss —epss 0.01
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.
Page 210 of 210