Caldera
Caldera Openlinux: vulnerabilidades y CVE
Caldera Openlinux tiene 36 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE36
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2002-1199 | Media (5) | 2.2% | — | 28 oct 2002 | The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map arguments. |
| CVE-2001-0850 | Alta (10) | 2.3% | — | 6 dic 2001 | A configuration error in the libdb1 package in OpenLinux 3.1 uses insecure versions of the snprintf and vsnprintf functions, which could allow local or remote users to exploit those functions with a buffer overflow. |
| CVE-2001-0851 | Media (5) | 3.1% | — | 6 dic 2001 | Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie. |
| CVE-2000-0892 | Baja (2.6) | 1.2% | — | 21 jul 2001 | Some telnet clients allow remote telnet servers to request environment variables from the client that may contain sensitive information, or remote web servers to obtain the information via a telnet: URL. |
| CVE-2000-1134 | Alta (7.2) | 1.4% | — | 9 ene 2001 | Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to… |
| CVE-2000-0917 | Alta (10) | 79% | — | 19 dic 2000 | Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands. |
| CVE-2000-0844 | Alta (10) | 16% | — | 14 nov 2000 | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. |
| CVE-2000-0372 | Alta (7.2) | 0.36% | — | 12 jul 2000 | Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges. |
| CVE-2000-0566 | Alta (7.2) | 0.40% | — | 3 jul 2000 | makewhatis in Linux man package allows local users to overwrite files via a symlink attack. |
| CVE-2000-0530 | Alta (7.2) | 1.2% | — | 31 may 2000 | The KApplication class in the KDE 1.1.2 configuration file management capability allows local users to overwrite arbitrary files. |
| CVE-2000-0491 | Alta (10) | 18% | — | 24 may 2000 | Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request. |
| CVE-2000-0438 | Alta (7.2) | 1.1% | — | 22 may 2000 | Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter. |
| CVE-2000-0192 | Media (5) | 5.9% | — | 5 mar 2000 | The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system. |
| CVE-2000-0218 | Alta (7.2) | 0.85% | — | 3 feb 2000 | Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname. |
| CVE-2000-0531 | Baja (2.1) | 0.92% | — | 23 nov 1999 | Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets. |
| CVE-2000-0369 | Media (5) | 1.9% | — | 8 oct 1999 | The IDENT server in Caldera Linux 2.3 creates multiple threads for each IDENT request, which allows remote attackers to cause a denial of service. |
| CVE-1999-0880 | Media (5) | 1.4% | — | 1 oct 1999 | Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly. |
| CVE-1999-0879 | Alta (10) | 9.7% | — | 1 oct 1999 | Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file. |
| CVE-1999-0769 | Alta (7.2) | 0.80% | — | 25 ago 1999 | Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable. |
| CVE-1999-0872 | Alta (7.2) | 0.36% | — | 25 ago 1999 | Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file. |
| CVE-2000-0374 | Alta (10) | 4.3% | — | 22 ago 1999 | The default configuration of kdm in Caldera and Mandrake Linux, and possibly other distributions, allows XDMCP connections from any host, which allows remote attackers to obtain sensitive information or bypass… |
| CVE-1999-0731 | Media (4.6) | 0.32% | — | 23 jun 1999 | The KDE klock program allows local users to unlock a session using malformed input. |
| CVE-1999-0712 | Baja (2.1) | 0.40% | — | 27 abr 1999 | A vulnerability in Caldera Open Administration System (COAS) allows the /etc/shadow password file to be made world-readable. |
| CVE-1999-0439 | Alta (7.5) | 2.5% | — | 5 abr 1999 | Buffer overflow in procmail before version 3.12 allows remote or local attackers to execute commands via expansions in the procmailrc configuration file. |
| CVE-1999-0434 | Alta (7.5) | 1.1% | — | 30 mar 1999 | XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service. |
| CVE-1999-0368 | Alta (10) | 40% | — | 9 feb 1999 | Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. |
| CVE-2000-0370 | Alta (10) | 4.8% | — | 29 ene 1999 | The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail command. |
| CVE-1999-1288 | Media (4.6) | 0.46% | — | 19 nov 1998 | Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain… |
| CVE-1999-0002 | Alta (10) | 28% | — | 12 oct 1998 | Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems. |
| CVE-1999-0009 | Alta (10) | 29% | — | 8 abr 1998 | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. |