[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Cluster 06: VEN-others



ACCEPT both

On Thu, Jun 17, 1999 at 03:10:46PM -0400, Steven M. Christey wrote:
| 
| This cluster has 2 vulnerabilities.
| 
| ------------------------------------------
| Candidate: CAN-1999-0358
| Proposer: 001
| Assigned: 19990617
| Announced: 19990617
| Category: SF
| Reference: BUGTRAQ:Jan29,1999
| Reference: COMPAQ:SSRT0583U
| 
| Digital Unix 4.0 has a buffer overflow in the inc program of the mh
| package.
| 
| ------------------------------------------
| Candidate: CAN-1999-0433
| Proposer: 001
| Assigned: 19990617
| Announced: 19990617
| Category: SF
| Reference: SUSE:Mar28,1999
| Reference: BUGTRAQ:Mar21,1999
| 
| XFree86 startx command is vulnerable to a symlink attack, allowing local
| users to create files in restricted directories, possibly allowing
| them to gain privileges or cause a denial of service.

Page Last Updated or Reviewed: May 22, 2007