| OSVDB ID | Disclosure Date | Title |
|
830
Description:
(Description Provided by CVE) : Buffer overflow in ircd allows arbitrary command execution.
|
1997-06-30
|
IRCnet IRCd s_serv.c SERVER Message Remote Overflow
|
|
59264
Description:
(Description Provided by CVE) : Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
|
1997-06-29
|
Microsoft Windows Crafted Fragmented Packet Stream Remote DoS (Jolt)
|
|
11477
Description:
Microsoft Windows NT 4.0 contains a flaw that may allow a remote denial of service. The issue is triggered when a remote attacker causes an access violation within LSASS.exe causing the process to stop running, and will result in loss of availability for the operating system.
|
1997-06-28
|
Microsoft Windows NT LSASS.EXE Access Violation DoS
|
|
83446
Description:
Samba is prone to an overflow condition. This issue is triggered when smbmount fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted multiple variable username, a local attacker can potentially execute arbitrary code.
|
1997-06-27
|
Samba smbmount Multiple Variable Username Handling Local Overflow
|
|
11225
Description:
A local overflow exists in SVGAlib/zgv. The product fails to verify the length of the HOME environment variable, resulting in a buffer overflow. By setting this variable to an overly long value, arbitrary code can be executed as root, resulting in a loss of availability.
|
1997-06-27
|
SVGAlib zgv HOME Environment Variable Local Overflow
|
|
935
Description:
(Description Provided by CVE) : ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.
|
1997-06-26
|
Solaris Multicast Address ping -i DoS
|
|
84074
Description:
Ultrix contains a flaw that is triggered by dxterm being given setuid privileges. This may allow a remote attacker to log output data to arbitrary files, which will overwrite pre-existing data on that file.
|
1997-06-26
|
Ultrix dxterm Log Output Arbitrary File Overwrite
|
|
7420
Description:
(Description Provided by CVE) : Buffer overflow in bootpd 2.4.3 and earlier via a long boot file location.
|
1997-06-25
|
bootpd bootpd.c handle_request() Function Boot File Location Overflow
|
|
8674
Description:
(Description Provided by CVE) : Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.
|
1997-06-25
|
Solaris Solstice AdminSuite NIS+ Password Table Modification
|
|
8675
Description:
(Description Provided by CVE) : Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.
|
1997-06-25
|
Solaris Solstice AdminSuite Unauthorized /etc/passwd Modification
|
|
8676
Description:
(Description Provided by CVE) : Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.
|
1997-06-25
|
Solaris Solstice AdminSuite Symlink Arbitrary File Overwrite
|
|
8677
Description:
(Description Provided by CVE) : Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.
|
1997-06-25
|
Solaris Solstice AdminSuite Lock File Privilege Escalation
|
|
8678
Description:
(Description Provided by CVE) : Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.
|
1997-06-25
|
Solaris Solstice AdminSuite Database Manager Save Option Privilege Escalation
|
|
934
Description:
(Description Provided by CVE) : Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
|
1997-06-24
|
Solaris chkey Command Line Overflow
|
|
933
Description:
(Description Provided by CVE) : Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.
|
1997-06-24
|
Solaris eeprom Command Line Overflow
|
|
1804
Description:
(Description Provided by CVE) : Denial of service in IIS using long URLs.
|
1997-06-21
|
Microsoft IIS Long Request Parsing Remote DoS
|
|
45109
Description:
Unknown / Incomplete
|
1997-06-19
|
DES Algorithm Brute Force Key Exhaustion Cryptanalysis Weakness
|
|
83481
Description:
Solaris contains a flaw that may allow a local denial of service. The issue is triggered by an error in rsh that allows an attacker to manipulate a root-owned socket, which will result in loss of availability for the program / service.
|
1997-06-19
|
Solaris rsh Root-owned Socket Manipulation Local DoS
|
|
301
Description:
Unknown / Incomplete
|
1997-06-19
|
IRCnet IRCD res.c Unspecified Overflow
|
|
11267
Description:
(Description Provided by CVE) : MajorCool mj_key_cache program allows local users to modify files via a symlink attack.
|
1997-06-18
|
MajorCool mj_key_cache Program Symlink Arbitrary File Modification
|
|
85
Description:
(Description Provided by CVE) : The handler CGI program in IRIX allows arbitrary command execution.
|
1997-06-15
|
IRIX handler CGI Arbitrary Command Execution
|
|
17004
Description:
Unknown / Incomplete
|
1997-06-14
|
Sendmail NFS Mount safechown Bypass
|
|
17005
Description:
Unknown / Incomplete
|
1997-06-14
|
Sendmail Forward/Include File Parent Directory Permission Issue
|
|
17003
Description:
Unknown / Incomplete
|
1997-06-14
|
Sendmail Alias Rebuild Symlink Issue
|
|
17002
Description:
Unknown / Incomplete
|
1997-06-14
|
Sendmail lstat Symlink Race Arbitrary Privileged File Creation
|
|
12978
Description:
(Description Provided by CVE) : rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system.
|
1997-06-13
|
Multiple Vendor rshd Login Error Message User Enumeration
|
|
83850
Description:
NetKit (netkit-tftp) contains a flaw that allows an attacker to traverse outside of a restricted path. The issue is due to tftpd not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../). This directory traversal attack would allow the attacker to gain access to arbitrary files.
|
1997-06-12
|
NetKit (netkit-tftp) tftpd Unspecified Traversal Arbitrary File Access
|
|
5738
Description:
A local overflow exists in some versions of the at(1) program. The program fails to validate input properly resulting in a buffer overflow. With a specially crafted request, an attacker can execute arbitrary code as root resulting in a loss of integrity and confidentiality.
|
1997-06-12
|
Multiple Unix Vendor at Local Overflow
|
|
5850
Description:
qmail-smtpd contains a flaw that may allow a remote denial of service. The issue is triggered by sending an email with a large number of recipient addresses. Qmail will attempt to process such message, which will consume all memory on the server host, and will result in loss of availability for this computer.
|
1997-06-12
|
qmail RCPT TO Command Remote Overflow DoS
|
|
56527
Description:
(Description Provided by CVE) : Denial of service in Qmail through long SMTP commands.
|
1997-06-11
|
qmail Long SMTP Command Saturation Remote DoS
|
|
5826
Description:
(Description Provided by CVE) : Buffer overflow in dtaction command gives root access.
|
1997-06-10
|
IBM AIX dtaction HOME Environement Variable Handling Local Overflow
|
|
8065
Description:
(Description Provided by CVE) : The snprintf function in the db library 1.85.4 ignores the size parameter, which could allow attackers to exploit buffer overflows that would be prevented by a properly implemented snprintf.
|
1997-06-07
|
db Library snprintf Function Size Parameter Overflows
|
|
83142
Description:
IBM AIX contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when a buffer overflow occurs in mount, which will cause a segfault and core dump file. Using a symlink, the core file can be used to create or overwrite a file. By setting an environment variable with arbitrary content, it will be appended to the file. Leveraging this against a file such as .rhosts will allow for privileged access to an arbitrary account.
|
1997-06-05
|
IBM AIX mount Overflow Core Dump Local Privilege Escalation
|
|
8727
Description:
(Description Provided by CVE) : Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111.
|
1997-06-04
|
Solaris rpcbind Non-standard Port Assignment Filter Bypass
|
|
11471
Description:
(Description Provided by CVE) : Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.
|
1997-06-01
|
Microsoft Windows NT DNS Server Character Saturation DoS
|