Vulnerabilities > Redhat > Medium

DATE CVE VULNERABILITY TITLE RISK
2003-07-24 CVE-2003-0442 Cross-Site Scripting vulnerability in PHP Transparent Session ID
Cross-site scripting (XSS) vulnerability in the transparent SID support capability for PHP before 4.3.2 (session.use_trans_sid) allows remote attackers to insert arbitrary script via the PHPSESSID parameter.
network
php redhat
4.3
2003-06-16 CVE-2003-0364 Unspecified vulnerability in Redhat Linux
The TCP/IP fragment reassembly handling in the Linux kernel 2.4 allows remote attackers to cause a denial of service (CPU consumption) via certain packets that cause a large number of hash table collisions.
network
low complexity
redhat
5.0
2003-06-16 CVE-2003-0247 Unspecified vulnerability in Redhat Linux
Unknown vulnerability in the TTY layer of the Linux kernel 2.4 allows attackers to cause a denial of service ("kernel oops").
network
low complexity
redhat
5.0
2003-06-09 CVE-2003-0194 Unspecified vulnerability in Redhat Linux and Tcpdump
tcpdump does not properly drop privileges to the pcap user when starting up.
local
low complexity
redhat
4.6
2002-12-31 CVE-2002-2185 Denial Of Service vulnerability in Multiple Vendor Spoofed IGMP Report
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
local
low complexity
sgi debian mandrakesoft microsoft redhat suse
4.9
2002-12-31 CVE-2002-1814 Buffer Overflow vulnerability in Bonobo EFSTool Commandline Argument
Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long command line arguments.
local
low complexity
gnome mandrakesoft redhat slackware
4.6
2002-12-11 CVE-2002-1323 Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive calls.
local
low complexity
safe-pm sun sgi redhat sco
4.6
2002-11-04 CVE-2002-1232 Remote Network Information Leakage vulnerability in YPServ
Memory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist.
network
low complexity
debian hp redhat
5.0
2002-10-04 CVE-2002-0835 Denial Of Service vulnerability in PXE Server DHCP Packet
Preboot eXecution Environment (PXE) server allows remote attackers to cause a denial of service (crash) via certain DHCP packets from Voice-Over-IP (VOIP) phones.
network
low complexity
caldera redhat hp
5.0
2002-09-05 CVE-2002-0874 Denial-Of-Service vulnerability in Interchange
Vulnerability in Interchange 4.8.6, 4.8.3, and other versions, when running in INET mode, allows remote attackers to read arbitrary files.
network
low complexity
redhat
5.0