trustix kayıtları
trustix üreticisine ait 67 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %1,5
- Pre-auth RCE
- 18
- Düzeltme kaydı olan
- %74,6
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-399 Resource Management Errors3
- CWE-125 Out-of-bounds Read1
- CWE-131 Incorrect Calculation of Buffer Size1
- CWE-189 Numeric Errors1
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
67 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
64Bu hafta | CVE-2000-0917Silahlaştırılmış | Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.caldera · openlinux ebuilder | Kritik10,0 | — | %78,7 | 19 Ara 2000 |
50Planlayın | CVE-2004-0493Kavram kanıtı | The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and papache · http server | Orta6,4 | — | %84,8 | 6 Ağu 2004 |
49Planlayın | CVE-2004-0600Kavram kanıtı | Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via ansamba · samba | Kritik10,0 | — | %29,4 | 27 Tem 2004 |
48Planlayın | CVE-2004-0990Kavram kanıtı | Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of sergd graphics library · gdlib | Kritik10,0 | — | %28,3 | 1 Mar 2005 |
48Planlayın | CVE-2000-0666Kavram kanıtı | rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote atconectiva · linux | Kritik10,0 | — | %26,3 | 16 Tem 2000 |
47Planlayın | CVE-2004-0989Kavram kanıtı | Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrarxmlsoft · libxml | Kritik10,0 | — | %21,7 | 1 Mar 2005 |
45Planlayın | CVE-2000-0844Kavram kanıtı | Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackecaldera · openlinux ebuilder · CWE-264 | Kritik10,0 | — | %15,6 | 14 Kas 2000 |
44Planlayın | CVE-2004-1154İstismar yok | Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of servsamba · samba | Kritik10,0 | — | %13,2 | 10 Oca 2005 |
43Planlayın | CVE-2002-0083Kavram kanıtı | Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.immunix · immunix · CWE-193 | Kritik9,8 | — | %14,7 | 15 Mar 2002 |
43Planlayın | CVE-2004-1304Kavram kanıtı | Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF file · file | Kritik10,0 | — | %11,4 | 10 Oca 2005 |
43Planlayın | CVE-2004-0941İstismar yok | Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via malgd graphics library · gdlib | Kritik10,0 | — | %10,7 | 9 Şub 2005 |
43Planlayın | CVE-2004-1065İstismar yok | Buffer overflow in the exif_read_data function in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to execute arbitrary codphp · php | Kritik10,0 | — | %10,0 | 10 Oca 2005 |
42Planlayın | CVE-2004-1019İstismar yok | The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbitphp · php · CWE-20 | Kritik10,0 | — | %8,0 | 10 Oca 2005 |
42Planlayın | CVE-2004-1012İstismar yok | The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary codcarnegie mellon university · cyrus imap server | Kritik10,0 | — | %6,0 | 10 Oca 2005 |
42Planlayın | CVE-2004-1011İstismar yok | Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execcarnegie mellon university · cyrus imap server | Kritik10,0 | — | %5,8 | 10 Oca 2005 |
42Planlayın | CVE-2004-1013İstismar yok | The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary codcarnegie mellon university · cyrus imap server | Kritik10,0 | — | %5,8 | 10 Oca 2005 |
41Planlayın | CVE-2004-0595Kavram kanıtı | The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restrictiphp · php | Orta6,8 | — | %45,2 | 27 Tem 2004 |
41Planlayın | CVE-2005-3625İstismar yok | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial libextractor · libextractor · CWE-399 | Kritik10,0 | — | %3,8 | 31 Ara 2005 |
41Planlayın | CVE-2007-0910İstismar yok | Unspecified vulnerability in PHP before 5.2.1 allows attackers to "clobber" certain super-global variables via unspecified vectors.php · php | Kritik10,0 | — | %3,4 | 13 Şub 2007 |
36İzleyin | CVE-2004-0594Kavram kanıtı | The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as when register_globals is enahp · hp-ux · CWE-367 | Orta5,1 | — | %54,9 | 27 Tem 2004 |
33İzleyin | CVE-2004-2044Kavram kanıtı | PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke francisco burzi · php-nuke | Yüksek7,5 | — | %11,0 | 1 Haz 2004 |
33İzleyin | CVE-2004-0432İstismar yok | ProFTPD 1.2.9 treats the Allow and Deny directives for CIDR based ACL entries as if they were AllowAll, which could allow FTP clients to bypproftpd project · proftpd | Yüksek7,5 | — | %9,2 | 18 Ağu 2004 |
32İzleyin | CVE-2004-0803İstismar yok | Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer ovlibtiff · libtiff | Yüksek7,5 | — | %8,3 | 23 Ara 2004 |
32İzleyin | CVE-2007-0906İstismar yok | Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecifiphp · php · CWE-119 | Yüksek7,5 | — | %5,6 | 13 Şub 2007 |
32İzleyin | CVE-2004-0940Kavram kanıtı | Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to executeapache · http server · CWE-131 | Yüksek7,8 | — | %4,8 | 9 Şub 2005 |
- CVE-2000-091764Bu hafta
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
KritikCVSS 10,0SilahlaştırılmışEPSS %79caldera · openlinux ebuilder19 Ara 2000
- CVE-2004-049350Planlayın
The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and p
OrtaCVSS 6,4Kavram kanıtıEPSS %85apache · http server6 Ağu 2004
- CVE-2004-060049Planlayın
Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an
KritikCVSS 10,0Kavram kanıtıEPSS %29samba · samba27 Tem 2004
- CVE-2004-099048Planlayın
Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of ser
KritikCVSS 10,0Kavram kanıtıEPSS %28gd graphics library · gdlib1 Mar 2005
- CVE-2000-066648Planlayın
rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote at
KritikCVSS 10,0Kavram kanıtıEPSS %26conectiva · linux16 Tem 2000
- CVE-2004-098947Planlayın
Multiple buffer overflows in libXML 2.6.12 and 2.6.13 (libxml2), and possibly other versions, may allow remote attackers to execute arbitrar
KritikCVSS 10,0Kavram kanıtıEPSS %22xmlsoft · libxml1 Mar 2005
- CVE-2000-084445Planlayın
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attacke
KritikCVSS 10,0Kavram kanıtıEPSS %16caldera · openlinux ebuilder14 Kas 2000
- CVE-2004-115444Planlayın
Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of serv
KritikCVSS 10,0İstismar yokEPSS %13samba · samba10 Oca 2005
- CVE-2002-008343Planlayın
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
KritikCVSS 9,8Kavram kanıtıEPSS %15immunix · immunix15 Mar 2002
- CVE-2004-130443Planlayın
Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF
KritikCVSS 10,0Kavram kanıtıEPSS %11file · file10 Oca 2005
- CVE-2004-094143Planlayın
Multiple buffer overflows in the gd graphics library (libgd) 2.0.21 and earlier may allow remote attackers to execute arbitrary code via mal
KritikCVSS 10,0İstismar yokEPSS %11gd graphics library · gdlib9 Şub 2005
- CVE-2004-106543Planlayın
Buffer overflow in the exif_read_data function in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to execute arbitrary cod
KritikCVSS 10,0İstismar yokEPSS %10php · php10 Oca 2005
- CVE-2004-101942Planlayın
The deserialization code in PHP before 4.3.10 and PHP 5.x up to 5.0.2 allows remote attackers to cause a denial of service and execute arbit
KritikCVSS 10,0İstismar yokEPSS %8php · php10 Oca 2005
- CVE-2004-101242Planlayın
The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary cod
KritikCVSS 10,0İstismar yokEPSS %6carnegie mellon university · cyrus imap server10 Oca 2005
- CVE-2004-101142Planlayın
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to exec
KritikCVSS 10,0İstismar yokEPSS %6carnegie mellon university · cyrus imap server10 Oca 2005
- CVE-2004-101342Planlayın
The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary cod
KritikCVSS 10,0İstismar yokEPSS %6carnegie mellon university · cyrus imap server10 Oca 2005
- CVE-2004-059541Planlayın
The strip_tags function in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, does not filter null (\0) characters within tag names when restricti
OrtaCVSS 6,8Kavram kanıtıEPSS %45php · php27 Tem 2004
- CVE-2005-362541Planlayın
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial
KritikCVSS 10,0İstismar yokEPSS %4libextractor · libextractor31 Ara 2005
- CVE-2007-091041Planlayın
Unspecified vulnerability in PHP before 5.2.1 allows attackers to "clobber" certain super-global variables via unspecified vectors.
KritikCVSS 10,0İstismar yokEPSS %3php · php13 Şub 2007
- CVE-2004-059436İzleyin
The memory_limit functionality in PHP 4.x up to 4.3.7, and 5.x up to 5.0.0RC3, under certain conditions such as when register_globals is ena
OrtaCVSS 5,1Kavram kanıtıEPSS %55hp · hp-ux27 Tem 2004
- CVE-2004-204433İzleyin
PHP-Nuke 7.3, and other products that use the PHP-Nuke codebase such as the Nuke Cops betaNC PHP-Nuke Bundle, OSCNukeLite 3.1, and OSC2Nuke
YüksekCVSS 7,5Kavram kanıtıEPSS %11francisco burzi · php-nuke1 Haz 2004
- CVE-2004-043233İzleyin
ProFTPD 1.2.9 treats the Allow and Deny directives for CIDR based ACL entries as if they were AllowAll, which could allow FTP clients to byp
YüksekCVSS 7,5İstismar yokEPSS %9proftpd project · proftpd18 Ağu 2004
- CVE-2004-080332İzleyin
Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer ov
YüksekCVSS 7,5İstismar yokEPSS %8libtiff · libtiff23 Ara 2004
- CVE-2007-090632İzleyin
Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecifi
YüksekCVSS 7,5İstismar yokEPSS %6php · php13 Şub 2007
- CVE-2004-094032İzleyin
Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute
YüksekCVSS 7,8Kavram kanıtıEPSS %5apache · http server9 Şub 2005