Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2002-12-31 CVE-2002-1672 Unspecified vulnerability in Webmin 0.92/0.92.1
Webmin 0.92, when installed from an RPM, creates /var/webmin with insecure permissions (world readable), which could allow local users to read the root user's cookie-based authentication credentials and possibly hijack the root user's session using the credentials.
local
low complexity
webmin
2.1
2002-12-31 CVE-2002-1669 Unspecified vulnerability in Freebsd 4.2/4.3/4.4
pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow local users to modify world-writable parts of the package during installation.
local
low complexity
freebsd
2.1
2002-12-31 CVE-2002-1668 Denial of Service vulnerability in HP Hp-Ux, Hp-Ux Series 700 and Hp-Ux Series 800
HP-UX 11.11 and earlier allows local users to cause a denial of service (kernel deadlock), due to a "file system weakness" that is possibly via an mmap() system call and performing an I/O operation using data from the mapped buffer on the file descriptor for the mapped file.
local
low complexity
hp
2.1
2002-12-31 CVE-2002-1667 Denial-Of-Service vulnerability in Freebsd 4.5
The virtual memory management system in FreeBSD 4.5-RELEASE and earlier does not properly check the existence of a VM object during page invalidation, which allows local users to cause a denial of service (crash) by calling msync on an unaccessed memory map created with MAP_ANON and MAP_NOSYNC flags.
local
low complexity
freebsd
2.1
2002-12-23 CVE-2002-1380 Local Denial of Service vulnerability in Linux Kernel 2.2 mmap()
Linux kernel 2.2.x allows local users to cause a denial of service (crash) by using the mmap() function with a PROT_READ parameter to access non-readable memory pages through the /proc/pid/mem interface.
local
low complexity
linux
2.1
2002-12-11 CVE-2002-1319 Denial Of Service vulnerability in Linux Kernel 2.4 System Call TF Flag
The Linux kernel 2.4.20 and earlier, and 2.5.x, when running on x86 systems, allows local users to cause a denial of service (hang) via the emulation mode, which does not properly clear TF and NT EFLAGs.
local
low complexity
linux trustix
2.1
2002-12-11 CVE-2002-1270 Local Security vulnerability in Apple mac OS X 10.2.2
Mac OS X 10.2.2 allows local users to read files that only allow write access via the map_fd() Mach system call.
local
low complexity
apple
2.1
2002-12-04 CVE-2002-1587 Denial of Service vulnerability in Sun Solaris Libthread Library
The libthread library (libthread.so.1) for Solaris 2.5.1 through 8 allows local users to cause a denial of service (hang) of an application that uses libthread by causing the application to wait for a certain mutex.
local
low complexity
sun
2.1
2002-12-03 CVE-2002-1586 Denial Of Service vulnerability in Sun Solaris System Panic
Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sd_struiowrq variable in the struioget function to null, which triggers a null dereference.
local
low complexity
sun
2.1
2002-11-29 CVE-2002-1313 Denial Of Service vulnerability in Nullmailer 1.0Rc5
nullmailer 1.00RC5 and earlier allows local users to cause a denial of service via an email to a local user that does not exist, which generates an error that causes nullmailer to stop sending mail to all users.
local
low complexity
nullmailer
2.1