Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
1996-12-12 CVE-1999-0297 Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.
local
low complexity
paul-vixie netbsd redhat bsdi freebsd
7.2
1996-12-10 CVE-1999-0101 Unspecified vulnerability in IBM AIX 3.2/4.1/4.2
Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
network
low complexity
ibm
critical
10.0
1996-12-10 CVE-1999-0096 Sendmail decode alias can be used to overwrite sensitive files.
network
low complexity
bsdi freebsd sco
5.0
1996-12-10 CVE-1999-0045 List of arbitrary files on Web host via nph-test-cgi script.
network
low complexity
netscape apache
7.5
1996-12-05 CVE-1999-1401 Unspecified vulnerability in SGI Irix
Vulnerability in Desktop searchbook program in IRIX 5.0.x through 6.2 sets insecure permissions for certain user files (iconbook and searchbook).
local
low complexity
sgi
4.6
1996-12-03 CVE-1999-0129 Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
local
low complexity
eric-allman sco sun hp ibm bsdi freebsd
4.6
1996-12-03 CVE-1999-0044 Unspecified vulnerability in SGI Irix
fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.
local
low complexity
sgi
7.2
1996-12-01 CVE-1999-0050 Unspecified vulnerability in HP Hp-Ux
Buffer overflow in HP-UX newgrp program.
local
low complexity
hp
7.2
1996-11-26 CVE-1999-1240 Unspecified vulnerability in Gracenote Cddbd
Buffer overflow in cddbd CD database server allows remote attackers to execute arbitrary commands via a long log message.
network
low complexity
gracenote
7.5
1996-11-22 CVE-1999-1099 Unspecified vulnerability in KTH Kerberos 4
Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertently includes the realm name and the last user.
network
low complexity
kth
5.0