Vulnerabilities > Debian > Debian Linux

DATE CVE VULNERABILITY TITLE RISK
2001-05-03 CVE-2001-1331 mandb in the man-db package before 2.3.16-3 allows local users to overwrite arbitrary files via the command line options (1) -u or (2) -c, which do not drop privileges and follow symlinks.
local
high complexity
debian progeny
1.2
2001-05-03 CVE-2001-0279 Buffer overflow in sudo earlier than 1.6.3p6 allows local users to gain root privileges.
local
low complexity
debian mandrakesoft
7.2
2001-05-03 CVE-2001-0193 Format string vulnerability in man in some Linux distributions allows local users to gain privileges via a malformed -l parameter.
local
low complexity
debian suse
7.2
2001-03-26 CVE-2001-0235 Unspecified vulnerability in Debian Linux 2.2
Vulnerability in crontab allows local users to read crontab files of other users by replacing the temporary file that is being edited while crontab is running.
local
low complexity
debian
2.1
2001-03-26 CVE-2001-0233 Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.
network
low complexity
matthew-smith debian redhat
critical
10.0
2001-03-26 CVE-2001-0195 Improper Preservation of Permissions vulnerability in Debian Linux 2.2
sash before 3.4-4 in Debian GNU/Linux does not properly clone /etc/shadow, which makes it world-readable and could allow local users to gain privileges via password cracking.
local
low complexity
debian CWE-281
7.8
2001-03-26 CVE-2001-0170 glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
local
low complexity
immunix conectiva debian redhat
2.1
2001-03-12 CVE-2001-0139 inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
local
high complexity
caldera immunix debian mandrakesoft redhat
1.2
2001-03-12 CVE-2001-0138 privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
immunix debian mandrakesoft redhat
1.2
2001-03-12 CVE-2001-0128 Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges. 7.2