VendorsRed Hatlinux6.2
Vulnerabilities

Red Hat Linux 6.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

63CVEs
CVE-2000-0668
pam_console PAM module in Linux systems allows a user to access the system console and reboot the system when a display manager such as gdm or kdm has XDMCP enabled.
Published 2000-10-13 · Modified
5.01 PoCEPSS 0.072
CVE-2001-0977
slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field.
Published 2002-06-25 · Modified
5.0EPSS 0.041
CVE-2002-1232
Memory leak in ypdb_open in yp_db.c for ypserv before 2.5 in the NIS package 3.9 and earlier allows remote attackers to cause a denial of service (memory consumption) via a large number of requests for a map that does not exist.
Published 2004-09-01 · Modified
5.0EPSS 0.033
CVE-2000-0289
IP masquerading in Linux 2.2.x allows remote attackers to route UDP packets through the internal interface by modifying the external source IP address and port number to match those of an established connection.
Published 2000-10-13 · Modified
5.0EPSS 0.026
CVE-2001-0309
inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.
Published 2001-05-07 · Modified
5.0EPSS 0.014
CVE-2002-2185
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
Published 2005-11-16 · Modified
4.9EPSS 0.025
CVE-2001-0641
Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option.
Published 2002-03-09 · Modified
4.61 PoCEPSS 0.013
CVE-2002-1814
Buffer overflow in efstools in Bonobo, when installed setuid, allows local users to execute arbitrary code via long command line arguments.
Published 2005-06-28 · Modified
4.63 PoCEPSS 0.011
CVE-2001-0886
Buffer overflow in glob function of glibc allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a glob pattern that ends in a brace "{" character.
Published 2002-06-25 · Modified
4.6EPSS 0.006
CVE-2000-0604
gkermit in Red Hat Linux is improperly installed with setgid uucp, which allows local users to modify files owned by uucp.
Published 2000-10-13 · Modified
4.6EPSS 0.005
CVE-2000-1214
Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges.
Published 2002-08-31 · Modified
4.6EPSS 0.004
CVE-2002-0044
GNU Enscript 1.6.1 and earlier allows local users to overwrite arbitrary files of the Enscript user via a symlink attack on temporary files.
Published 2002-06-25 · Modified
3.6EPSS 0.004
CVE-2002-0069
Memory leak in SNMP in Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service.
Published 2003-04-02 · Modified
2.6EPSS 0.028
CVE-2000-0263
The X font server xfs in Red Hat Linux 6.x allows an attacker to cause a denial of service via a malformed request.
Published 2000-10-13 · Modified
2.11 PoCEPSS 0.010
CVE-2000-0336
Linux OpenLDAP server allows local users to modify arbitrary files via a symlink attack.
Published 2000-07-12 · Modified
2.11 PoCEPSS 0.009
CVE-2000-0816
Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.
Published 2001-05-07 · Modified
2.11 PoCEPSS 0.009
CVE-2001-0169
When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.
Published 2001-05-07 · Modified
2.11 PoCEPSS 0.009
CVE-2001-0736
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
Published 2001-10-12 · Modified
2.11 PoCEPSS 0.008
CVE-2000-0286
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
Published 2000-04-26 · Modified
2.11 PoCEPSS 0.007
CVE-2002-0080
rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.
Published 2002-06-25 · Modified
2.1EPSS 0.005
CVE-2000-0633
Vulnerability in Mandrake Linux usermode package allows local users to to reboot or halt the system.
Published 2000-10-13 · Modified
2.1EPSS 0.004
CVE-2000-0184
Linux printtool sets the permissions of printer configuration files to be world-readable, which allows local attackers to obtain printer share passwords.
Published 2000-04-25 · Modified
2.1EPSS 0.004
CVE-2003-1437
BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores passwords in plaintext when a keystore is used to store a private key or trust certificate authorities, which allows local users to gain access.
Published 2007-10-23 · Modified
2.1EPSS 0.002
← Prev2 / 2