Product:

Linux

(Redhat)
Repositories https://github.com/mjg59/linux
#Vulnerabilities 232
Date Id Summary Products Score Patch Annotated
1996-02-02 CVE-1999-1491 abuse.console in Red Hat 2.1 uses relative pathnames to find and execute the undrv program, which allows local users to execute arbitrary commands via a path that points to a Trojan horse program. Linux N/A
1998-05-28 CVE-1999-1490 xosview 1.5.1 in Red Hat 5.1 allows local users to gain root access via a long HOME environmental variable. Linux N/A
1998-03-09 CVE-1999-1407 ifdhcpc-done script for configuring DHCP on Red Hat Linux 5 allows local users to append text to arbitrary files via a symlink attack on the dhcplog file. Linux N/A
1998-07-29 CVE-1999-1406 dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (crash) by redirecting fd 1 (stdout) to the kernel. Linux N/A
1999-06-30 CVE-1999-1348 Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service. Linux N/A
1999-10-07 CVE-1999-1347 Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm. Linux N/A
1999-10-07 CVE-1999-1346 PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file. Linux N/A
1999-12-31 CVE-1999-1335 snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read and write sensitive information. Linux N/A
1999-12-31 CVE-1999-1333 automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be downloaded. Linux N/A
1999-12-31 CVE-1999-1332 gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a symlink attack on a temporary file. Linux N/A