Vulnerabilities > Redhat > Linux > 7.0

DATE CVE VULNERABILITY TITLE RISK
2001-12-21 CVE-2001-0869 Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.
network
low complexity
caldera redhat suse
7.5
2001-10-18 CVE-2001-0787 Unspecified vulnerability in Redhat Linux 7.0/7.1
LPRng in Red Hat Linux 7.0 and 7.1 does not properly drop memberships in supplemental groups when lowering privileges, which could allow a local user to elevate privileges.
local
low complexity
redhat
4.6
2001-10-18 CVE-2001-0736 Local Security vulnerability in Linux Mandrake
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
2.1
2001-09-20 CVE-2001-0641 Heap Overflow vulnerability in Man -S
Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option.
local
low complexity
immunix redhat suse
4.6
2001-09-12 CVE-2001-1013 Remote Username Enumeration vulnerability in Redhat Linux 7.0
Apache on Red Hat Linux with with the UserDir directive enabled generates different error codes when a username exists and there is no public_html directory and when the username does not exist, which could allow remote attackers to determine valid usernames on the server.
network
low complexity
redhat
5.0
2001-08-31 CVE-2001-1002 Remote Command Execution vulnerability in Redhat Linux 6.2/7.0/7.1
The default configuration of the DVI print filter (dvips) in Red Hat Linux 7.0 and earlier does not run dvips in secure mode when dvips is executed by lpd, which could allow remote attackers to gain privileges by printing a DVI file that contains malicious commands.
network
low complexity
redhat
7.5
2001-07-19 CVE-2001-1375 tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-controlled directory.
local
low complexity
conectiva redhat
4.6
2001-07-19 CVE-2001-1374 expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.
local
low complexity
don-libes conectiva redhat
7.2
2001-07-18 CVE-2001-1030 Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.
network
low complexity
caldera immunix mandrakesoft squid redhat trustix
7.5
2001-07-16 CVE-2001-0977 Denial of Service vulnerability in OpenLDAP
slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field.
network
low complexity
mandrakesoft openldap debian redhat
5.0