[
Date Prev][
Date Next][
Thread Prev][
Thread Next][
Date Index][
Thread Index]
Re: Cluster 06: VEN-others
ACCEPT both
On Thu, Jun 17, 1999 at 03:10:46PM -0400, Steven M. Christey wrote:
|
| This cluster has 2 vulnerabilities.
|
| ------------------------------------------
| Candidate: CAN-1999-0358
| Proposer: 001
| Assigned: 19990617
| Announced: 19990617
| Category: SF
| Reference: BUGTRAQ:Jan29,1999
| Reference: COMPAQ:SSRT0583U
|
| Digital Unix 4.0 has a buffer overflow in the inc program of the mh
| package.
|
| ------------------------------------------
| Candidate: CAN-1999-0433
| Proposer: 001
| Assigned: 19990617
| Announced: 19990617
| Category: SF
| Reference: SUSE:Mar28,1999
| Reference: BUGTRAQ:Mar21,1999
|
| XFree86 startx command is vulnerable to a symlink attack, allowing local
| users to create files in restricted directories, possibly allowing
| them to gain privileges or cause a denial of service.