Vulnerabilities > Digital

DATE CVE VULNERABILITY TITLE RISK
2002-10-04 CVE-2002-1129 Buffer Overflow vulnerability in HP Tru64/OSF1 DXTerm
Buffer overflow in dxterm allows local users to execute arbitrary code via a long -xrm argument.
local
low complexity
compaq digital
7.2
2002-10-04 CVE-2002-1128 Local Buffer Overflow vulnerability in Digital OSF 1 and Ultrix
Buffer overflow in inc mail utility for Compaq Tru64/OSF1 3.x allows local users to execute arbitrary code via a long MH environment variable.
local
low complexity
digital
7.2
2002-10-04 CVE-2002-1127 Local Buffer Overflow vulnerability in HP Tru64 UUCP
Buffer overflow in uucp in Compaq Tru64/OSF1 3.x allows local users to execute arbitrary code via a long source (-s) command line parameter.
local
low complexity
digital
7.2
2001-06-27 CVE-2001-0369 Local Security vulnerability in UNIX
Buffer overflow in lpsched on DGUX version R4.20MU06 and MU02 allows a local attacker to obtain root access via a long command line argument (non-existent printer name).
local
low complexity
digital
7.2
2001-03-12 CVE-2001-0134 Buffer Overflow vulnerability in Compaq Web Admin
Buffer overflow in cpqlogin.htm in web-enabled agents for various Compaq management software products such as Insight Manager and Management Agents allows remote attackers to execute arbitrary commands via a long user name.
network
low complexity
compaq digital
critical
10.0
2001-03-12 CVE-2000-0315 traceroute in NetBSD 1.3.3 and Linux systems allows local unprivileged users to modify the source address of the packets, which could be used in spoofing attacks.
network
low complexity
debian digital netbsd redhat slackware
5.0
2001-03-12 CVE-2000-0314 traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.
network
low complexity
debian digital netbsd redhat slackware
5.0
2000-11-14 CVE-2000-0845 Unspecified vulnerability in Digital Unix 4.0F
kdebug daemon (kdebugd) in Digital Unix 4.0F allows remote attackers to read arbitrary files by specifying the full file name in the initialization packet.
network
low complexity
digital
6.4
1999-09-13 CVE-1999-0691 Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
local
low complexity
cde digital ibm sun
7.2
1999-09-13 CVE-1999-0687 The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
network
low complexity
cde digital ibm sun
7.5