Vulnerabilities > Suse > Low

DATE CVE VULNERABILITY TITLE RISK
2005-01-10 CVE-2004-1190 Unspecified vulnerability in Suse Linux 8.1/8.2/9.0
SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to conduct unauthorized write activities to modify the firmware of associated SCSI devices.
local
low complexity
suse
2.1
2005-01-10 CVE-2004-1191 Local Security vulnerability in Linux 8.1/9.2
Race condition in SuSE Linux 8.1 through 9.2, when run on SMP systems that have more than 4GB of memory, could allow local users to read unauthorized memory from "foreign memory pages."
local
high complexity
suse
1.2
2004-12-31 CVE-2004-1895 Unspecified vulnerability in Suse Linux 8.2/9.0
YaST Online Update (YOU) in SuSE 8.2 and 9.0 allows local users to overwrite arbitrary files via a symlink attack on you-$USER/cookies.
local
low complexity
suse
2.1
2004-12-31 CVE-2004-2097 Scripts Insecure Temporary File Handling Symbolic Link vulnerability in Suse Linux 9.0
Multiple scripts on SuSE Linux 9.0 allow local users to overwrite arbitrary files via a symlink attack on (1) /tmp/fvwm-bug created by fvwm-bug, (2) /tmp/wmmenu created by wm-oldmenu2new, (3) /tmp/rates created by x11perfcomp, (4) /tmp/xf86debug.1.log created by xf86debug, (5) /tmp/.winpopup-new created by winpopup-send.sh, or (6) /tmp/initrd created by lvmcreate_initrd.
local
low complexity
suse
2.1
2004-12-31 CVE-2004-2658 Local Security vulnerability in Suse Linux 9.0
resmgr in SUSE CORE 9 does not properly identify terminal names, which allows local users to spoof terminals and login types.
local
low complexity
suse
2.1
2004-12-06 CVE-2004-0497 Unknown vulnerability in Linux kernel 2.x may allow local users to modify the group ID of files, such as NFS exported files in kernel 2.4. 2.1
2004-08-06 CVE-2004-0535 The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. 2.1
2004-08-06 CVE-2004-0554 Local Denial Of Service vulnerability in Linux Kernel Floating Point Exception Handler
Linux kernel 2.4.x and 2.6.x for x86 allows local users to cause a denial of service (system crash), possibly via an infinite loop that triggers a signal handler with a certain sequence of fsave and frstor instructions, as originally demonstrated using a "crash.c" program.
local
low complexity
avaya gentoo linux redhat suse conectiva
2.1
2004-08-06 CVE-2004-0587 Denial of Service vulnerability in Linux Kernel HbaApiNode Improper File Permissions
Insecure permissions for the /proc/scsi/qla2300/HbaApiNode file in Linux allows local users to cause a denial of service.
local
low complexity
mandrakesoft redhat suse
2.1
2004-02-17 CVE-2004-0064 Local Insecure File Creation Symlink vulnerability in Suse Linux 9.0
The SuSEconfig.gnome-filesystem script for YaST in SuSE 9.0 allows local users to overwrite arbitrary files via a symlink attack on files within the tmp.SuSEconfig.gnome-filesystem.$RANDOM temporary directory.
local
low complexity
suse
2.1