| OSVDB ID | Disclosure Date | Title |
|
1163
Description:
(Description Provided by CVE) : The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option.
|
1999-12-09
|
Linux Packet Length with Options
|
|
39213
Description:
Unknown / Incomplete
|
2007-02-22
|
Linux PAM Console SCSI Device Local Privilege Escalation
|
|
11497
Description:
(Description Provided by CVE) : Linux PAM modules allow local users to gain root access using temporary files.
|
1998-12-23
|
Linux PAM Modules Insecure Temp File Privilege Escalation
|
|
1478
Description:
(Description Provided by CVE) : pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has XDMCP enabled.
|
2000-07-27
|
Linux pam_console XDMCP Remote Reboot
|
|
19789
Description:
(Description Provided by CVE) : Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of the search space required for brute force attacks.
|
2004-05-17
|
Linux passwd --stdin Off-by-one Password Generation Weakness
|
|
19790
Description:
(Description Provided by CVE) : Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer.
|
2004-05-17
|
Linux passwd Failed Read Attempt Local DoS
|
|
19791
Description:
(Description Provided by CVE) : passwd 0.68 does not check the return code for the pam_start function, which has unknown impact and attack vectors that may prevent "safe and proper operation" of PAM.
|
2004-05-17
|
Linux passwd pam_start Function Return Code Unspecified Issue
|
|
5857
Description:
pop3d contains a flaw that allows a malicious user to access arbitrary mail files. The issue is triggered due to the usage of mktmp() in order to create temporary files in /tmp. A local attacker can use this to read the mail currently being processed by the pop3d daemon. This flaw may lead to a loss of confidentiality.
|
1995-12-22
|
Linux pop3d Arbitrary Mail File Access
|
|
26322
Description:
Unknown / Incomplete
|
2006-05-22
|
Linux portmap Local DoS
|
|
31373
Description:
(Description Provided by CVE) : Unspecified vulnerability in the "alignment check exception handling" in Ubuntu 5.10, 6.06 LTS, and 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (kernel panic) via unspecified vectors.
|
2006-12-21
|
Linux PowerPC kernel Alignment Check Exception Handling DoS
|
|
31372
Description:
(Description Provided by CVE) : Ubuntu Linux 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (resource consumption) by using the (1) sys_get_robust_list and (2) sys_set_robust_list functions to create processes that cannot be killed.
|
2006-12-21
|
Linux PowerPC kernel sys_get_robust_list/sys_set_robust_list DoS
|
|
1053
Description:
(Description Provided by CVE) : The pt_chown command in Linux allows local users to modify TTY terminal devices that belong to other users.
|
1999-08-23
|
Linux pt_chown Arbitrary TTY Modification
|
|
13686
Description:
(Description Provided by CVE) : Buffer overflow in restore program 0.4b17 and earlier in dump package allows local users to execute arbitrary commands via a long tape name.
|
2000-06-07
|
Linux restore Tape Name Variable Local Overflow
|
|
12964
Description:
(Description Provided by CVE) : rxvt, when compiled with the PRINT_PIPE option in various Linux operating systems including Linux Slackware 3.0 and RedHat 2.1, allows local users to gain root privileges by specifying a malicious program using the -print-pipe command line parameter.
|
1995-04-01
|
Linux rxvt -print-pipe Local Privilege Escalation
|
|
65991
Description:
(Description Provided by CVE) : Multiple buffer overflows in the iSNS implementation in isns.c in (1) Linux SCSI target framework (aka tgt or scsi-target-utils) before 1.0.6, (2) iSCSI Enterprise Target (aka iscsitarget or IET) 1.4.20.1 and earlier, and (3) Generic SCSI Target Subsystem for Linux (aka SCST or iscsi-scst) 1.0.1.1 and earlier allow remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via (a) a long iSCSI Name string in an SCN message or (b) an invalid PDU.
|
2010-07-01
|
Linux SCSI Target Framework (tgt) iSNS Message Remote Overflow
|
|
74916
Description:
(Description Provided by CVE) : Double free vulnerability in the iscsi_rx_handler function (usr/iscsi/iscsid.c) in the tgt daemon (tgtd) in Linux SCSI target framework (tgt) before 1.0.14, aka scsi-target-utils, allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via unknown vectors related to a buffer overflow during iscsi login. NOTE: some of these details are obtained from third party information.
|
2011-03-09
|
Linux SCSI Target Framework (tgt) tgt daemon (tgtd) iscsi_rx_handler() Function Double-free
|
|
63418
Description:
(Description Provided by CVE) : Multiple format string vulnerabilities in isns.c in (1) Linux SCSI target framework (aka tgt or scsi-target-utils) 1.0.3, 0.9.5, and earlier and (2) iSCSI Enterprise Target (aka iscsitarget) 0.4.16 allow remote attackers to cause a denial of service (tgtd daemon crash) or possibly have unspecified other impact via vectors that involve the isns_attr_query and qry_rsp_handle functions, and are related to (a) client appearance and (b) client disappearance messages.
|
2010-03-24
|
Linux SCSI Target Framework (tgt) usr/iscsi/isns.c Multiple Function Format String
|
|
34267
Description:
(Description Provided by CVE) : The Linux Security Auditing Tool (LSAT) allows local users to overwrite arbitrary files via a symlink attack on temporary files, as demonstrated using /tmp/lsat1.lsat.
|
2007-03-18
|
Linux Security Auditing Tool (LSAT) /tmp/lsat1.lsat Symlink Arbitrary File Overwrite
|
|
12604
Description:
(Description Provided by CVE) : The POSIX Capability Linux Security Module (LSM) for Linux kernel 2.6 does not properly handle the credentials of a process that is launched before the module is loaded, which allows local users to gain privileges.
|
2004-12-23
|
Linux Security Modules Running Processes Privilege Escalation
|
|
1231
Description:
(Description Provided by CVE) : setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file.
|
2000-02-24
|
Linux setxconf -T Option Local Privilege Escalation
|
|
13528
Description:
(Description Provided by CVE) : Linux 2.0.34 does not properly prevent users from sending SIGIO signals to arbitrary processes, which allows local users to cause a denial of service by sending SIGIO to processes that do not catch it.
|
1998-06-30
|
Linux SIGIO Signal Arbitrary Process DoS
|
|
6199
Description:
A local overflow exists in slocate for Linux. The product fails to handle input of over 536870912 bytes resulting in a integer overflow. With a specially crafted request, an attacker can cause privilege escalation resulting in a loss of confidentiality and integrity.
|
2003-05-19
|
Linux slocate parse_decode_path() Overflow
|
|
19186
Description:
(Description Provided by CVE) : Integer signedness error in the Linux Socket Filter implementation (filter.c) in Linux 2.4.3-pre3 to 2.4.22-pre10 allows attackers to cause a denial of service (crash).
|
2003-12-09
|
Linux Socket Filter Implementation (filter.c) Integer Signedness DoS
|
|
1729
Description:
(Description Provided by CVE) : Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile command line argument.
|
2001-01-14
|
Linux splitvt -rcfile Argument Format String
|
|
19063
Description:
Unknown / Incomplete
|
1995-12-03
|
Linux splitvt Environment Variable Expansion Overflow
|
|
10364
Description:
(Description Provided by CVE) : Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands.
|
2001-01-14
|
Linux splitvt Multiple Input Validation Local Privilege Escalation
|
|
19065
Description:
Unknown / Incomplete
|
1995-12-03
|
Linux splitvt parserc.c chdir() Access Check Issue
|
|
19062
Description:
Unknown / Incomplete
|
1995-12-03
|
Linux splitvt parserc.c Environment Label Overflow
|
|
11501
Description:
(Description Provided by CVE) : Buffer overflow in Linux splitvt command gives root access to local users.
|
1995-12-03
|
Linux splitvt parserc.c Local Overflow
|
|
19064
Description:
Unknown / Incomplete
|
1995-12-03
|
Linux splitvt parserc.c Read Access Check Issue
|