Vulnerabilities > Redhat > High

DATE CVE VULNERABILITY TITLE RISK
2001-08-31 CVE-2001-1002 Remote Command Execution vulnerability in Redhat Linux 6.2/7.0/7.1
The default configuration of the DVI print filter (dvips) in Red Hat Linux 7.0 and earlier does not run dvips in secure mode when dvips is executed by lpd, which could allow remote attackers to gain privileges by printing a DVI file that contains malicious commands.
network
low complexity
redhat
7.5
2001-07-19 CVE-2001-1374 expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.
local
low complexity
don-libes conectiva redhat
7.2
2001-07-18 CVE-2001-1030 Squid before 2.3STABLE5 in HTTP accelerator mode does not enable access control lists (ACLs) when the httpd_accel_host and http_accel_with_proxy off settings are used, which allows attackers to bypass the ACLs and conduct unauthorized activities such as port scanning.
network
low complexity
caldera immunix mandrakesoft squid redhat trustix
7.5
2001-07-02 CVE-2001-0439 licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
network
low complexity
licq conectiva freebsd mandrakesoft redhat
7.5
2001-06-27 CVE-2001-0473 Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.
network
low complexity
immunix mutt conectiva mandrakesoft redhat
7.5
2001-06-27 CVE-2001-0441 Buffer Overflow vulnerability in SLRN Long Header
Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header.
network
low complexity
debian mandrakesoft redhat
7.5
2001-05-28 CVE-2001-1028 Unspecified vulnerability in Redhat Linux
Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges.
local
low complexity
redhat
7.2
2001-03-12 CVE-2001-0128 Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges. 7.2
2001-01-09 CVE-2000-1189 Unspecified vulnerability in Redhat Linux
Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges.
local
low complexity
redhat
7.2
2001-01-09 CVE-2000-1134 Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via a symlink attack. 7.2