Search: "suse"

280 CVEs found

SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise.

Published: 1999-02-02
Products: 2
Vendors:
plp suse

xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack on the pic000.pnm file.

Published: 1999-02-18
Products: 1
Vendors:
suse
CVE-1999-0746
5.0 MEDIUM

A default configuration of in.identd in SuSE Linux waits 120 seconds between requests, allowing a remote attacker to conduct a denial of service.

Published: 1999-08-16
Products: 11
Vendors:
slackware suse

pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.

Published: 1999-08-21
Products: 3
Vendors:
redhat bent_bagger suse
CVE-2000-0233
10.0 HIGH

SuSE Linux IMAP server allows remote attackers to bypass IMAP authentication and gain privileges.

Published: 2000-03-15
Products: 1
Vendors:
suse

Buffer overflow in Gnomelib in SuSE Linux 6.3 allows local users to execute arbitrary commands via the DISPLAY environmental variable.

Published: 2000-04-29
Products: 2
Vendors:
suse

aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating files whose names include spaces, which are then incorrectly interpreted by aaa_...

Published: 2000-05-02
Products: 8
Vendors:
suse
CVE-2000-0433
4.6 MEDIUM

The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such ...

Published: 2000-05-02
Products: 7
Vendors:
suse
CVE-2000-0800
10.0 HIGH

String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.

Published: 2000-10-20
Products: 9
Vendors:
suse
CVE-2000-0868
5.0 MEDIUM

The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-bin-sdb/.

Published: 2000-11-14
Products: 3
Vendors:
suse apache
CVE-2000-0869
5.0 MEDIUM

The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method.

Published: 2000-11-14
Products: 12
Vendors:
suse apache
CVE-2000-1016
5.0 MEDIUM

The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain system configuration i...

Published: 2000-12-11
Products: 2
Vendors:
suse
CVE-2000-1044
10.0 HIGH

Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges.

Published: 2000-12-11
Products: 4
Vendors:
suse
CVE-2000-1107
5.0 MEDIUM

in.identd ident server in SuSE Linux 6.x and 7.0 allows remote attackers to cause a denial of service via a long request, which causes the server to access a NULL pointer and crash.

Published: 2001-01-09
Products: 6
Vendors:
suse

rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctmp temporary file.

Published: 2001-03-12
Products: 5
Vendors:
suse

Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute arbitrary commands by via a long directory name.

Published: 2001-03-26
Products: 2
Vendors:
hans_reiser suse

Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by uploading a keylist.txt file that contains filenames with shell metacharacters, then causing the file ...

Published: 2001-08-02
Products: 6
Vendors:
suse
CVE-2001-1119
6.2 MEDIUM

cda in xmcd 3.0.2 and 2.6 in SuSE Linux allows local users to overwrite arbitrary files via a symlink attack.

Published: 2001-08-03
Products: 3
Vendors:
ti_kan

Buffer overflow in dsh in dqs 3.2.7 in SuSE Linux 7.0 and earlier, and possibly other operating systems, allows local users to gain privileges via a long first command line argument.

Published: 2001-08-14
Products: 3
Vendors:
suse
CVE-2001-0918
5.1 MEDIUM

Vulnerabilities in CGI scripts in susehelp in SuSE 7.2 and 7.3 allow remote attackers to execute arbitrary commands by not opening files securely.

Published: 2001-11-22
Products: 2
Vendors:
suse