Home arrow Vendor Advisories
Thursday, 20 November 2008
 
spacer.png, 0 kB
spacer.png, 0 kB
spacer.png, 0 kB
Vendor Advisories
FreeBSD access() Function Race Condition
Open Source Vulnerability Database
Thursday, 20 October 1994
FreeBSD contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicious user executes a setuid program that utilizes the standard C library access() function. As access() will only verify that a user can access a...
Read more...
 
IRIX colorview -text Argument Arbitrary File Read
Open Source Vulnerability Database
Tuesday, 09 August 1994
IRIX contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a malicious user passes any file name to colorview using the -text argument, which will disclose the contents of the file resulting in a loss of confidentiality.
Read more...
 
IRIX print manager clogin Root Privilege Escalation
Open Source Vulnerability Database
Monday, 01 August 1994
IRIX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when the print manager allows local users to gain root privileges, possibly through the clogin command. This flaw may lead to a loss of integrity.
Read more...
 
IRIX xwsh ANSI Escape Code Arbitrary Command Execution
Open Source Vulnerability Database
Wednesday, 17 November 1993
IRIX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when an ingenious, yet malicious, user places escape sequences in a file or filename, which when passed to xwsh, will remap keys to unexpected strings or to...
Read more...
 
BSD ftpd Site EXEC Race Condition
Open Source Vulnerability Database
Monday, 01 March 1993
BSD contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicious attacker uses the SITE EXEC command to execute an arbitrary binary in /bin that is capable of giving access to an executable outside of /bin. ...
Read more...
 
IRIX /usr/sbin/Mail Arbitrary Mail Spool Access
Open Source Vulnerability Database
Wednesday, 31 October 1990
IRIX contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when usr/sbin/Mail fails to reset its group ID to the group ID of the caller, which will allow a malicious user to read the mail of other users, as well as that of the root...
Read more...
 
Sendmail DECODE Alias Arbitrary File Overwrite
Open Source Vulnerability Database
Monday, 01 January 1990
Sendmail contains a flaw that may allow a remote attacker to overwrite arbitrary files. The issue is due tot he program allowing remote access to the 'decode' alias. By sending a crafted email to the alias, the sendmail program would write user-supplied content to an...
Read more...
 
Sendmail .forward Arbitrary Non-root Command Execution
Open Source Vulnerability Database
Wednesday, 25 January 1989
Sendmail contains a flaw that may allow a local attacker to gain increased privileges. The flaw can be exploited by creating a custom .forward file that calls a program to create a SUID shell before connecting to the SMTP port (25) and sending yourself mail from the user you...
Read more...
 
BSD chfn Unspecified Local Overflow
Open Source Vulnerability Database
Saturday, 07 January 1989
BSD contains a flaw related to the chfn program that may allow an attacker to cause a local overflow. No further details have been provided.
Read more...
 
BSD passwd Multiple Field Local Overflow
Open Source Vulnerability Database
Thursday, 01 December 1988
A local overflow exists in BSD. The passwd program fails to check bounds on a long shell or GECOS field causing a buffer overflow. With a specially crafted request, an attacker can change the flow of execution to gain root privileges, which will result in a loss of integrity.
Read more...
 
<< Start < Prev 441 442 443 444 445 446 Next > End >>

Results 4411 - 4420 of 4451
spacer.png, 0 kB
     

© 2008 Intellect Information Technology Pty Ltd, Melbourne, Australia.

This page was loaded in 0.049 seconds.