Skip to content
Noroxi

slackware records

59 published records for vendor slackware.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
8
With a fix record
40.7%
Median publish → KEV
No record has entered KEV

All records

59 records
  • CVE-2007-3798
    60This week

    Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via craf

    CriticalCVSS 9.8Proof of conceptEPSS 70%

    tcpdump · tcpdumpJul 16, 2007

  • Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a.

    CriticalCVSS 10.0Proof of conceptEPSS 40%

    proftpd project · proftpdFeb 9, 1999

  • Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attacke

    CriticalCVSS 10.0Proof of conceptEPSS 16%

    caldera · openlinux ebuilderNov 14, 2000

  • Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable.

    CriticalCVSS 10.0Proof of conceptEPSS 10%

    redhat · linuxOct 18, 1997

  • Buffer overflow in the MSN protocol handler for gaim 0.79 to 1.0.1 allows remote attackers to cause a denial of service (application crash)

    CriticalCVSS 10.0No exploitEPSS 7%

    rob flynn · gaimJan 27, 2005

  • A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attackers to execute ar

    CriticalCVSS 10.0No exploitEPSS 6%

    gnu · privacy guardDec 7, 2006

  • The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco B

    HighCVSS 7.8No exploitEPSS 34%

    isc · bindJul 29, 2013

  • Format string vulnerability in libxml2 before 2.9.4 allows attackers to have unspecified impact via format string specifiers in unknown vect

    CriticalCVSS 9.8No exploitEPSS 7%

    hp · icewall federation agentJun 9, 2016

  • Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp directory which could

    CriticalCVSS 9.8No exploitEPSS 6%

    slackware · slackware linuxNov 21, 2019

  • Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclud

    CriticalCVSS 10.0No exploitEPSS 5%

    rsync · rsyncDec 1, 2007

  • Multiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code

    CriticalCVSS 10.0No exploitEPSS 4%

    midnight commander · midnight commanderAug 18, 2004

  • Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial

    CriticalCVSS 10.0No exploitEPSS 4%

    libextractor · libextractorDec 31, 2005

  • rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, sinc

    CriticalCVSS 10.0No exploitEPSS 2%

    redhat · linuxFeb 3, 1997

  • CVE-2007-6199
    38Monitor

    rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files vi

    CriticalCVSS 9.3No exploitEPSS 4%

    rsync · rsyncDec 1, 2007

  • CVE-2003-0962
    36Monitor

    Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibl

    HighCVSS 7.5No exploitEPSS 21%

    andrew tridgell · rsyncDec 15, 2003

  • CVE-1999-0041
    33Monitor

    Buffer overflow in NLS (Natural Language Service).

    HighCVSS 7.5Proof of conceptEPSS 9%

    gnu · libcFeb 13, 1997

  • CVE-2018-7184
    33Monitor

    ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, which allows remote attackers to cause a den

    HighCVSS 7.5No exploitEPSS 9%

    ntp · ntpMar 6, 2018

  • CVE-2004-0940
    32Monitor

    Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute

    HighCVSS 7.8Proof of conceptEPSS 5%

    apache · http serverFeb 9, 2005

  • CVE-1999-0242
    31Monitor

    Remote attackers can access mail files via POP3 in some Linux systems that are using shadow passwords.

    HighCVSS 7.5No exploitEPSS 2%

    slackware · slackware linuxMar 1, 1995

  • CVE-2003-0977
    31Monitor

    CVS server before 1.11.10 may allow attackers to cause the CVS server to create directories and files in the file system root directory via

    HighCVSS 7.5No exploitEPSS 2%

    cvs · cvsJan 5, 2004

  • CVE-1999-0298
    31Monitor

    ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a ..

    HighCVSS 7.5No exploitEPSS 2%

    slackware · slackware linuxFeb 5, 1997

  • CVE-2018-9336
    31Monitor

    openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-free of memory

    HighCVSS 7.8No exploitEPSS 1%

    openvpn · openvpnMay 1, 2018

  • CVE-2013-7172
    31Monitor

    Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package

    HighCVSS 7.8No exploitEPSS 0%

    slackware · slackware linuxNov 21, 2019

  • CVE-2003-0335
    30Monitor

    rc.M in Slackware 9.0 calls quotacheck with the -M option, which causes the filesystem to be remounted and possibly reset security-relevant

    HighCVSS 7.5No exploitEPSS 1%

    slackware · slackware linuxMay 22, 2003

  • CVE-1999-0421
    28Monitor

    During a reboot after an installation of Linux Slackware 3.6, a remote attacker can obtain root access by logging in to the root account wit

    HighCVSS 7.2No exploitEPSS 2%

    slackware · slackware linuxMar 17, 1999