Vulnerabilities
Vulnerable Software
Redhat:  >> Linux  >> 6.1  Security Vulnerabilities
Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.
CVSS Score
7.5
EPSS Score
0.008
Published
2001-06-27
Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges.
CVSS Score
7.2
EPSS Score
0.002
Published
2001-05-28
When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.
CVSS Score
2.1
EPSS Score
0.001
Published
2001-03-26
Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.
CVSS Score
10.0
EPSS Score
0.095
Published
2001-03-26
Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.
CVSS Score
10.0
EPSS Score
0.148
Published
2001-03-26
Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2001-03-12
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack.
CVSS Score
7.2
EPSS Score
0.002
Published
2001-01-09
Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2001-01-09
The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/.
CVSS Score
2.1
EPSS Score
0.002
Published
2000-11-14
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
CVSS Score
10.0
EPSS Score
0.009
Published
2000-11-14


Contact Us

Shodan ® - All rights reserved