Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2002-11-29 CVE-2002-1285 Local Privilege Escalation vulnerability in LPRNG runlpr
runlpr in the LPRng package allows the local lp user to gain root privileges via certain command line arguments.
local
low complexity
suse
7.2
2002-11-29 CVE-2002-1282 Unspecified vulnerability in KDE
Unknown vulnerability in the telnet KIO subsystem (telnet.protocol) of KDE 2.x 2.1 and later allows local and remote attackers to execute arbitrary code via a certain URL.
network
low complexity
kde
7.5
2002-11-29 CVE-2002-1281 Unspecified vulnerability in KDE
Unknown vulnerability in the rlogin KIO subsystem (rlogin.protocol) of KDE 2.x 2.1 and later, and KDE 3.x 3.0.4 and earlier, allows local and remote attackers to execute arbitrary code via a certain URL.
network
low complexity
kde
7.5
2002-11-29 CVE-2002-1279 Buffer Overflow vulnerability in Masqmail 0.1.16
Multiple buffer overflows in conf.c for Masqmail 0.1.x before 0.1.17, and 0.2.x before 0.2.15, allow local users to gain privileges via certain entries in the configuration file (-C option).
local
low complexity
masqmail
7.2
2002-11-29 CVE-2002-1247 Local Buffer Overflow vulnerability in KDE Network RESLISA LOGNAME
Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon.
local
low complexity
kde lisa
7.2
2002-11-29 CVE-2002-1219 Buffer Overflow vulnerability in ISC BIND SIG Cached Resource Record
Buffer overflow in named in BIND 4 versions 4.9.10 and earlier, and 8 versions 8.3.3 and earlier, allows remote attackers to execute arbitrary code via a certain DNS server response containing SIG resource records (RR).
network
low complexity
isc freebsd openbsd
7.5
2002-11-29 CVE-2002-1142 Unspecified vulnerability in Microsoft Data Access Components, IE and Internet Explorer
Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 through 2.6, and Internet Explorer 5.01 through 6.0, allows remote attackers to execute code via a malformed HTTP request to the Data Stub.
network
low complexity
microsoft
7.5
2002-11-29 CVE-2002-0029 Buffer Overflow vulnerability in ISC BIND DNS Resolver
Buffer overflows in the DNS stub resolver library in ISC BIND 4.9.2 through 4.9.10, and other derived libraries such as BSD libc and GNU glibc, allow remote attackers to execute arbitrary code via DNS server responses that trigger the overflow in the (1) getnetbyname, or (2) getnetbyaddr functions, aka "LIBRESOLV: buffer overrun" and a different vulnerability than CVE-2002-0684.
network
low complexity
isc astaro
7.5
2002-11-25 CVE-2002-1644 Privilege Escalation vulnerability in SSH Communications SSH Server
SSH Secure Shell for Servers and SSH Secure Shell for Workstations 2.0.13 through 3.2.1, when running without a PTY, does not call setsid to remove the child process from the process group of the parent process, which allows attackers to gain certain privileges.
local
low complexity
ssh
7.2
2002-11-12 CVE-2002-1278 Unspecified vulnerability in Jacques Gelinas Linuxconf 1.2.4R2/1.2.5R3
The mailconf module in Linuxconf 1.24, and other versions before 1.28, on Conectiva Linux 6.0 through 8, and possibly other distributions, generates the Sendmail configuration file (sendmail.cf) in a way that configures Sendmail to run as an open mail relay, which allows remote attackers to send Spam email.
network
low complexity
jacques-gelinas
7.5