Vulnerabilities > Debian > High

DATE CVE VULNERABILITY TITLE RISK
2004-11-03 CVE-2004-0835 Local vulnerability in MySQL
MySQL 3.x before 3.23.59, 4.x before 4.0.19, 4.1.x before 4.1.2, and 5.x before 5.0.1, checks the CREATE/INSERT rights of the original table instead of the target table in an ALTER TABLE RENAME operation, which could allow attackers to conduct unauthorized activities.
network
low complexity
mysql oracle debian
7.5
2004-10-20 CVE-2004-0793 Permissions, Privileges, and Access Controls vulnerability in Debian Bsdmainutils
The calendar program in bsdmainutils 6.0 through 6.0.14 does not drop root privileges when executed with the -a flag, which allows attackers to execute arbitrary commands via a calendar event file.
local
low complexity
debian CWE-264
7.2
2004-09-28 CVE-2004-0689 Link Following vulnerability in multiple products
KDE before 3.3.0 does not properly handle when certain symbolic links point to "stale" locations, which could allow local users to create or truncate arbitrary files.
local
low complexity
kde debian CWE-59
7.1
2004-09-28 CVE-2004-0458 NULL Pointer Dereference vulnerability in multiple products
mah-jong before 1.6.2 allows remote attackers to cause a denial of service (server crash) via a missing argument, which triggers a null pointer dereference.
network
low complexity
nicolas-boullis debian CWE-476
7.5
2004-08-06 CVE-2004-0579 Format string vulnerability in super before 3.23 allows local users to execute arbitrary code as root.
local
low complexity
william-deich debian
7.2
2004-01-20 CVE-2004-0011 Unspecified vulnerability in Debian FSP 2.81.B18
Buffer overflow in fsp before 2.81.b18 allows remote users to execute arbitrary code.
network
low complexity
debian
7.5
2004-01-20 CVE-2003-1022 Unspecified vulnerability in Debian FSP 2.81.B18
Directory traversal vulnerability in fsp before 2.81.b18 allows remote users to access files outside the FSP root directory.
network
low complexity
debian
7.5
2003-07-02 CVE-2003-0385 Local Security vulnerability in Linux 3.0.18/3.0.23
Buffer overflow in xaos 3.0-23 and earlier, when running setuid, allows local users to gain root privileges via a long -language option.
local
low complexity
debian
7.2
2003-06-09 CVE-2003-0361 Remote Security vulnerability in Linux
gPS before 1.1.0 does not properly follow the rgpsp connection source acceptation policy as specified in the rgpsp.conf file, which could allow unauthorized remote attackers to connect to rgpsp.
network
low complexity
debian
7.5
2003-06-09 CVE-2003-0360 Denial-Of-Service vulnerability in Linux
Multiple buffer overflows in gPS before 1.0.0 allow attackers to cause a denial of service and possibly execute arbitrary code.
network
low complexity
debian
7.5