Vulnerabilities > Caldera

DATE CVE VULNERABILITY TITLE RISK
1998-11-19 CVE-1999-1288 Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain privileges via bugs in the program.
local
low complexity
samba caldera redhat turbolinux
4.6
1998-10-12 CVE-1999-0002 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
network
low complexity
bsdi caldera redhat CWE-119
critical
10.0
1998-04-08 CVE-1999-0009 Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
network
low complexity
data-general isc sgi bsdi caldera ibm nec netbsd redhat sco sun
critical
10.0
1997-12-16 CVE-1999-0104 A later variation on the Teardrop IP denial of service attack, a.k.a.
network
low complexity
caldera hp microsoft sun
5.0
1997-12-10 CVE-1999-0017 FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. 7.5
1997-07-17 CVE-1999-1182 Buffer overflow in run-time linkers (1) ld.so or (2) ld-linux.so for Linux systems allows local users to gain privileges by calling a setuid program with a long program name (argv[0]) and forcing ld.so/ld-linux.so to report an error.
local
low complexity
delix caldera debian lst redhat suse
7.2
1997-04-07 CVE-1999-0042 Buffer overflow in University of Washington's implementation of IMAP and POP servers.
network
low complexity
university-of-washington ibm redhat caldera bsdi
critical
10.0
1997-01-28 CVE-1999-0047 MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
network
low complexity
eric-allman bsdi caldera
critical
10.0
1996-12-04 CVE-1999-0043 Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
network
low complexity
isc netscape caldera bsdi redhat nec
critical
10.0
1996-11-16 CVE-1999-0130 Local users can start Sendmail in daemon mode and gain root privileges.
local
low complexity
caldera eric-allman bsdi freebsd hp ibm redhat
7.2