Vulnerabilities
Vulnerable Software
Caldera:  >> Openlinux  >> 2.3  Security Vulnerabilities
The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments.
CVSS Score
5.0
EPSS Score
0.021
Published
2002-10-28
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
CVSS Score
5.0
EPSS Score
0.006
Published
2001-12-06
makewhatis in Linux man package allows local users to overwrite files via a symlink attack.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-07-03
The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system.
CVSS Score
5.0
EPSS Score
0.036
Published
2000-03-05
Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.
CVSS Score
7.2
EPSS Score
0.002
Published
2000-02-03
Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.
CVSS Score
2.1
EPSS Score
0.002
Published
1999-11-23
The IDENT server in Caldera Linux 2.3 creates multiple threads for each IDENT request, which allows remote attackers to cause a denial of service.
CVSS Score
5.0
EPSS Score
0.007
Published
1999-10-08
The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass additional access restrictions.
CVSS Score
10.0
EPSS Score
0.003
Published
1999-08-22


Contact Us

Shodan ® - All rights reserved