CVE-1999-1572
cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and a...
ubuntu redhat mandrakesoft debian freebsd
CVE-1999-1390
suidexec in suidmanager 0.18 on Debian 2.0 allows local users to gain root privileges by specifying a malicious program on the command line.
debian
CVE-1999-1411
The installation of the fsp package 2.71-10 in Debian GNU/Linux 2.0 adds the anonymous FTP user without notifying the administrator, which could automatically enable anonymous FTP on some servers such...
debian
CVE-1999-0698
Denial of service in IP protocol logger (ippl) on Red Hat and Debian Linux.
CVE-1999-0389
Buffer overflow in the bootp server in the Debian Linux netstd package.
debian
CVE-1999-0914
Buffer overflow in the FTP client in the Debian GNU/Linux netstd package.
debian
CVE-1999-0678
A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the entire server.
apache debian
CVE-1999-0373
Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root.
debian
CVE-1999-0374
Debian GNU/Linux cfengine package is susceptible to a symlink attack.
debian
CVE-2000-0367
Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.
michael_jennings
CVE-1999-1496
Sudo 1.5 in Debian Linux 2.1 and Red Hat 6.0 allows local users to determine the existence of arbitrary files by attempting to execute the target filename as a program, which generates a different err...
todd_miller debian redhat
CVE-1999-0730
The zsoelim program in the Debian man-db package allows local users to overwrite files via a symlink attack.
debian
CVE-1999-0742
The Debian mailman package uses weak authentication, which allows attackers to gain privileges.
debian
CVE-1999-0732
The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic links.
debian
CVE-1999-0939
Denial of service in Debian IRC Epic/epic4 client via a long string.
debian
CVE-2000-0366
dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to modify the ownership of arbitrary files.
debian
CVE-2000-0076
nviboot boot script in the Debian nvi package allows local users to delete files via malformed entries in vi.recover.
debian berkeley
CVE-2000-0112
The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot from a floppy disk during the installation.
debian
CVE-2000-0145
The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.
debian
CVE-2000-1135
fshd (fsh daemon) in Debian GNU/Linux allows local users to overwrite files of other users via a symlink attack.
debian