| CVE ID | Publié | Description | Score | Gravité |
|---|---|---|---|---|
| Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning. | 7.5 |
|||
| sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that are being processed by sgml-tools. | 2.1 |
|||
| Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option. | 4.6 |
|||
| LogLine function in klogd in sysklogd 1.3 in various Linux distributions allows an attacker to cause a denial of service (hang) by causing null bytes to be placed in log messages. | 5 |
|||
| Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack. | 2.1 |
|||
| Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands. | 7.5 |
|||
| gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack. | 1.2 |
|||
| sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack. | 1.2 |
|||
| rdist 6.1.5 allows local users to overwrite arbitrary files via a symlink attack. | 1.2 |
|||
| getty_ps 2.0.7j allows local users to overwrite arbitrary files via a symlink attack. | 1.2 |
|||
| useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack. | 1.2 |
|||
| privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack. | 1.2 |
|||
| inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations. | 1.2 |
|||
| arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations. | 1.2 |
|||
| squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations. | 1.2 |
|||
| vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack. | 1.2 |
|||
| glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files. | 2.1 |
|||
| modprobe in the modutils 2.3.x package on Linux systems allows a local user to execute arbitrary commands via shell metacharacters. | 7.2 |
|||
| Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS. | 7.2 |