Vulnerabilities > Gentoo

DATE CVE VULNERABILITY TITLE RISK
2005-01-10 CVE-2004-1162 Remote Arbitrary Command Execution vulnerability in SCPOnly
The unison command in scponly before 4.0 does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via the (1) -rshcmd or (2) -sshcmd flags.
network
low complexity
scponly gentoo
7.5
2005-01-10 CVE-2004-1161 Remote Arbitrary Command Execution vulnerability in RSSH
rssh 2.2.2 and earlier does not properly restrict programs that can be run, which could allow remote authenticated users to bypass intended access restrictions and execute arbitrary programs via (1) rdist -P, (2) rsync, or (3) scp -S.
network
low complexity
rssh gentoo
7.5
2005-01-10 CVE-2004-1117 Local Security vulnerability in Linux
The init scripts in ChessBrain 20407 and earlier execute user-owned programs with root privileges, which allows local users to gain privileges by modifying the programs.
local
low complexity
gentoo
7.2
2005-01-10 CVE-2004-1116 Local Security vulnerability in Linux
The init scripts in Great Internet Mersenne Prime Search (GIMPS) 23.9 and earlier execute user-owned programs with root privileges, which allows local users to gain privileges by modifying the programs.
local
low complexity
gentoo
7.2
2005-01-10 CVE-2004-1115 Local Security vulnerability in Linux
The init scripts in Search for Extraterrestrial Intelligence (SETI) project 3.08-r3 and earlier execute user-owned programs with root privileges, which allows local users to gain privileges by modifying the programs.
local
low complexity
gentoo
7.2
2005-01-10 CVE-2004-1110 The mtink status monitor before 1.0.5 for Epson printers allows local users to overwrite arbitrary files via a symlink attack on the epson temporary file.
local
low complexity
jean-jacques-sarton gentoo
2.1
2005-01-10 CVE-2004-1108 Unspecified vulnerability in Gentoo Linux
qpkg in Gentoolkit 0.2.0_pre10 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary directory.
local
low complexity
gentoo
2.1
2005-01-10 CVE-2004-1107 Unspecified vulnerability in Gentoo Linux
dispatch-conf in Portage 2.0.51-r2 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.
local
low complexity
gentoo
2.1
2005-01-10 CVE-2004-1096 Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system. 7.5
2005-01-10 CVE-2004-1026 XPM Image Decoding Buffer Overflow vulnerability in IMLib
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.
network
low complexity
enlightenment gentoo redhat
critical
10.0