Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2001-06-02 CVE-2001-1047 Denial Of Service vulnerability in OpenBSD Dup2 VFS Race Condition
Race condition in OpenBSD VFS allows local users to cause a denial of service (kernel panic) by (1) creating a pipe in one thread and causing another thread to set one of the file descriptors to NULL via a close, or (2) calling dup2 on a file descriptor in one process, then setting the descriptor to NULL via a close in another process that is created via rfork.
local
high complexity
openbsd
1.2
2001-06-02 CVE-2001-0310 Unspecified vulnerability in Freebsd 3.5.1/4.1.1
sort in FreeBSD 4.1.1 and earlier, and possibly other operating systems, uses predictable temporary file names and does not properly handle when the temporary file already exists, which causes sort to crash and possibly impacts security-sensitive scripts.
local
low complexity
freebsd
2.1
2001-06-02 CVE-2001-0300 Local Security vulnerability in Oracle Internet Directory 2.1.1.1
oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack.
local
low complexity
oracle
2.1
2001-06-02 CVE-2001-0261 Unspecified vulnerability in Microsoft Windows 2000
Microsoft Windows 2000 Encrypted File System does not properly destroy backups of files that are encrypted, which allows a local attacker to recover the text of encrypted files.
local
low complexity
microsoft
2.1
2001-06-02 CVE-2001-0259 Unspecified vulnerability in SSH
ssh-keygen in ssh 1.2.27 - 1.2.30 with Secure-RPC can allow local attackers to recover a SUN-DES-1 magic phrase generated by another user, which the attacker can use to decrypt that user's private key file.
local
low complexity
ssh
3.6
2001-06-02 CVE-2001-0156 Unspecified vulnerability in VAN Dyke Technologies Vshell 1.0.1
VShell SSH gateway 1.0.1 and earlier has a default port forwarding rule of 0.0.0.0/0.0.0.0, which could allow local users to conduct arbitrary port forwarding to other systems.
local
low complexity
van-dyke-technologies
2.1
2001-05-28 CVE-2001-1349 Unspecified vulnerability in Sendmail
Sendmail before 8.11.4, and 8.12.0 before 8.12.0.Beta10, allows local users to cause a denial of service and possibly corrupt the heap and gain privileges via race conditions in signal handlers.
local
high complexity
sendmail
3.7
2001-05-18 CVE-2001-1346 Computer Associates ARCserveIT 6.61 and 6.63 (also called ARCservIT) allows local users to overwrite arbitrary files via a symlink attack on the temporary files (1) asagent.tmp or (2) inetd.tmp.
local
high complexity
broadcom ca
1.2
2001-05-11 CVE-2001-1450 Unspecified vulnerability in Microsoft Internet Explorer
Microsoft Internet Explorer 5.0 through 6.0 allows attackers to cause a denial of service (browser crash) via a crafted FTP URL such as "/.#./".
network
high complexity
microsoft
2.6
2001-05-10 CVE-2001-1333 Local Security vulnerability in CUPS
Linux CUPS before 1.1.6 does not securely handle temporary files, possibly due to a symlink vulnerability that could allow local users to overwrite files.
local
high complexity
easy-software-products
1.2