Vulnerabilities
Vulnerable Software
Redhat:  >> Linux  >> 2.4.2  Security Vulnerabilities
The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.
CVSS Score
4.6
EPSS Score
0.001
Published
2000-10-20
userhelper in the usermode package on Red Hat Linux executes non-setuid programs as root, which does not activate the security measures in glibc and allows the programs to be exploited via format string vulnerabilities in glibc via the LANG or LC_ALL environment variables (CVE-2000-0844).
CVSS Score
7.2
EPSS Score
0.001
Published
2000-09-30
Red Hat Linux screen program does not use Unix98 ptys, allowing local users to write to other terminals.
CVSS Score
10.0
EPSS Score
0.004
Published
2000-01-04
Buffer overflow in SysVInit in Red Hat Linux 5.1 and earlier allows local users to gain privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
1999-12-31
gzexe in the gzip package on Red Hat Linux 5.0 and earlier allows local users to overwrite files of other users via a symlink attack on a temporary file.
CVSS Score
2.1
EPSS Score
0.002
Published
1999-12-31
automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the names of files that are to be downloaded.
CVSS Score
7.5
EPSS Score
0.012
Published
1999-12-31
snmpd server in cmu-snmp SNMP package before 3.3-1 in Red Hat Linux 4.0 is configured to allow remote attackers to read and write sensitive information.
CVSS Score
6.4
EPSS Score
0.005
Published
1999-12-31
Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter.
CVSS Score
10.0
EPSS Score
0.03
Published
1999-12-21
PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file.
CVSS Score
7.5
EPSS Score
0.005
Published
1999-10-07
Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm.
CVSS Score
4.6
EPSS Score
0.001
Published
1999-10-07


Contact Us

Shodan ® - All rights reserved