VYPR

Vendor CVEs

Red Hat

All CVEs

6,458 total · sorted by risk
  • CVE-1999-0318Mar 1, 1997
    risk 0.00cvss —epss 0.01

    Buffer overflow in xmcd 2.0p12 allows local users to gain access through an environmental variable.

  • CVE-1999-0868Feb 20, 1997
    risk 0.00cvss —epss 0.01

    ucbmail allows remote attackers to execute commands via shell metacharacters that are passed to it from INN.

  • CVE-1999-1299Feb 3, 1997
    risk 0.00cvss —epss 0.02

    rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.

  • CVE-1999-0297Dec 12, 1996
    risk 0.00cvss —epss 0.00

    Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.

  • CVE-1999-0234Oct 8, 1996
    risk 0.00cvss —epss 0.00

    Bash treats any character with a value of 255 as a command separator.

  • CVE-1999-0131Sep 11, 1996
    risk 0.00cvss —epss 0.01

    Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.

  • CVE-1999-1572Jul 16, 1996
    risk 0.00cvss —epss 0.01

    cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files.

  • CVE-1999-1186Jan 2, 1996
    risk 0.00cvss —epss 0.00

    rxvt, when compiled with the PRINT_PIPE option in various Linux operating systems including Linux Slackware 3.0 and RedHat 2.1, allows local users to gain root privileges by specifying a malicious program using the -print-pipe command line parameter.

Page 130 of 130