Vulnerabilities > Slackware

DATE CVE VULNERABILITY TITLE RISK
2005-01-27 CVE-2004-0880 getmail 4.x before 4.2.0, when run as root, allows local users to overwrite arbitrary files via a symlink attack on an mbox file.
local
high complexity
getmail gentoo slackware
1.2
2004-08-18 CVE-2004-0233 Local vulnerability in UTempter
Utempter allows device names that contain ..
local
low complexity
sgi utempter slackware
2.1
2004-08-18 CVE-2004-0232 Multiple format string vulnerabilities in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.
network
low complexity
midnight-commander sgi gentoo slackware
5.0
2004-08-18 CVE-2004-0231 Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to "Insecure temporary file and directory creations."
local
low complexity
midnight-commander sgi gentoo slackware
2.1
2004-08-18 CVE-2004-0226 Multiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.
network
low complexity
midnight-commander sgi gentoo slackware
critical
10.0
2004-08-06 CVE-2004-0530 The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the PHP user by inserting shared libraries into the appropriate path.
local
low complexity
slackware
7.2
2004-07-07 CVE-2004-0424 Integer Overflow vulnerability in Linux Kernel Setsockopt MCAST_MSFILTER
Integer overflow in the ip_setsockopt function in Linux kernel 2.4.22 through 2.4.25 and 2.6.1 through 2.6.3 allows local users to cause a denial of service (crash) or execute arbitrary code via the MCAST_MSFILTER socket option.
local
low complexity
sgi linux slackware
7.2
2004-01-05 CVE-2003-0977 CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via malformed module requests.
network
low complexity
cvs slackware
7.5
2003-12-15 CVE-2003-0962 Remote Heap Overflow vulnerability in RSync Daemon Mode Undisclosed
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
network
low complexity
andrew-tridgell redhat engardelinux slackware
7.5
2003-06-16 CVE-2003-0195 Denial Of Service vulnerability in Slackware Linux 8.1/9.0
CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out.
network
low complexity
slackware
5.0