Skip to content
Noroxi

rpath records

19 published records for vendor rpath.

All records

19 records
  • A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute ar

    CriticalCVSS 10.0No exploitEPSS 6%

    gnu · privacy guardDec 7, 2006

  • CVE-2007-1351
    36Monitor

    Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier all

    HighCVSS 8.5No exploitEPSS 6%

    x.org · libxfontApr 5, 2007

  • CVE-2007-5962
    32Monitor

    Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresigh

    HighCVSS 7.1Proof of conceptEPSS 12%

    redhat · enterprise linuxMay 22, 2008

  • CVE-2008-0411
    31Monitor

    Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitr

    MediumCVSS 6.8Proof of conceptEPSS 15%

    ghostscript · ghostscriptFeb 28, 2008

  • CVE-2007-5116
    31Monitor

    Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attacker

    HighCVSS 7.5No exploitEPSS 5%

    debian · debian linuxNov 7, 2007

  • CVE-2008-5516
    31Monitor

    The web interface in git (gitweb) 1.5.x before 1.5.5 allows remote attackers to execute arbitrary commands via shell metacharacters related

    HighCVSS 7.5No exploitEPSS 4%

    git · gitJan 20, 2009

  • CVE-2007-3106
    28Monitor

    lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and

    MediumCVSS 6.8No exploitEPSS 3%

    libvorbis · libvorbisJul 26, 2007

  • CVE-2007-4131
    28Monitor

    Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwr

    MediumCVSS 6.8No exploitEPSS 3%

    gnu · tarAug 24, 2007

  • CVE-2008-1078
    28Monitor

    expn in the am-utils and net-fs packages for Gentoo, rPath Linux, and other distributions, allows local users to overwrite arbitrary files v

    HighCVSS 7.2No exploitEPSS 1%

    gentoo · linuxFeb 28, 2008

  • CVE-2007-0536
    28Monitor

    The chroot helper in rMake for rPath Linux 1 does not drop supplemental groups, which causes packages to be installed with insecure permissi

    HighCVSS 7.2No exploitEPSS 0%

    rpath · rpath linuxJan 26, 2007

  • CVE-2007-4029
    27Monitor

    libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service via (1) an invali

    MediumCVSS 6.8No exploitEPSS 2%

    libvorbis · libvorbisJul 26, 2007

  • CVE-2007-5194
    27Monitor

    The Chroot server in rMake 1.0.11 creates a /dev/zero device file with read/write permissions for the rMake user and the same minor device n

    MediumCVSS 6.9No exploitEPSS 0%

    rpath · rmakeOct 4, 2007

  • CVE-2008-4832
    27Monitor

    rc.sysinit in initscripts 8.12-8.21 and 8.56.15-0.1 on rPath allows local users to delete arbitrary files via a symlink attack on a director

    MediumCVSS 6.9No exploitEPSS 0%

    rpath · initscriptsNov 17, 2008

  • CVE-2008-2139
    26Monitor

    The rootpw plugin in rPath Appliance Platform Agent 2 and 3 does not re-validate requests from a browser with a valid administrator session,

    MediumCVSS 6.5No exploitEPSS 0%

    rpath · appliance platform agentMay 12, 2008

  • CVE-2008-3139
    21Monitor

    The RTMPT dissector in Wireshark (formerly Ethereal) 0.99.8 through 1.0.0 allows remote attackers to cause a denial of service (crash) via u

    MediumCVSS 5.0No exploitEPSS 3%

    wireshark · wiresharkJul 10, 2008

  • CVE-2008-3138
    21Monitor

    The (1) PANA and (2) KISMET dissectors in Wireshark (formerly Ethereal) 0.99.3 through 1.0.0 allow remote attackers to cause a denial of ser

    MediumCVSS 5.0No exploitEPSS 2%

    wireshark · wiresharkJul 10, 2008

  • CVE-2007-5686
    19Monitor

    initscripts in rPath Linux 1 sets insecure permissions for the /var/log/btmp file, which allows local users to obtain sensitive information

    MediumCVSS 4.9No exploitEPSS 1%

    rpath · rpath linuxOct 28, 2007

  • CVE-2007-1352
    15Monitor

    Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary

    LowCVSS 3.8No exploitEPSS 2%

    x.org · libxfontApr 5, 2007

  • CVE-2008-2140
    10Monitor

    Cross-site request forgery (CSRF) vulnerability in the rootpw plugin in rPath Appliance Platform Agent 2 and 3 allows remote attackers to re

    LowCVSS 2.6No exploitEPSS 0%

    rpath · appliance platform agentMay 12, 2008