VendorsEngardelinuxsecure_linuxall versions
Vulnerabilities

Engardelinux Engarde Secure Linux

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2002-0083
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
Published 2002-06-25 · Modified
10.01 PoCEPSS 0.147
CVE-2001-1240
The default configuration of sudo in Engarde Secure Linux 1.0.1 allows any user in the admin group to run certain commands that could be leveraged to gain full root access.
Published 2002-06-25 · Modified
10.0EPSS 0.018
CVE-2003-0962
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
Published 2003-12-10 · Modified
7.5EPSS 0.212
CVE-2002-0002
Format string vulnerability in stunnel before 3.22 when used in client mode for (1) smtp, (2) pop, or (3) nntp allows remote malicious servers to execute arbitrary code.
Published 2002-06-25 · Modified
7.51 PoCEPSS 0.053
CVE-2001-0739
Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.
Published 2002-03-09 · Modified
7.2EPSS 0.004
CVE-2001-0736
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
Published 2001-10-12 · Modified
2.11 PoCEPSS 0.008
CVE-2004-0535
The e1000 driver for Linux kernel 2.4.26 and earlier does not properly initialize memory before using it, which allows local users to read portions of kernel memory. NOTE: this issue was originally incorrectly reported as a "buffer overflow" by some sources.
Published 2004-06-08 · Modified
2.1EPSS 0.005