VendorsRed Hatlinux7.0
Vulnerabilities

Red Hat Linux 7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

59CVEs
CVE-2001-0886
Buffer overflow in glob function of glibc allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a glob pattern that ends in a brace "{" character.
Published 2002-06-25 · Modified
4.6EPSS 0.006
CVE-2000-1214
Buffer overflows in the (1) outpack or (2) buf variables of ping in iputils before 20001010, as distributed on Red Hat Linux 6.2 through 7J and other operating systems, may allow local users to gain privileges.
Published 2002-08-31 · Modified
4.6EPSS 0.004
CVE-2001-1375
tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-controlled directory.
Published 2003-04-02 · Modified
4.6EPSS 0.004
CVE-2002-0044
GNU Enscript 1.6.1 and earlier allows local users to overwrite arbitrary files of the Enscript user via a symlink attack on temporary files.
Published 2002-06-25 · Modified
3.6EPSS 0.004
CVE-2002-0069
Memory leak in SNMP in Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service.
Published 2003-04-02 · Modified
2.6EPSS 0.028
CVE-2000-0816
Linux tmpwatch --fuser option allows local users to execute arbitrary commands by creating files whose names contain shell metacharacters.
Published 2001-05-07 · Modified
2.11 PoCEPSS 0.009
CVE-2001-0170
glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
Published 2001-05-07 · Modified
2.12 PoCEPSS 0.008
CVE-2001-0736
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to overwrite arbitrary files via a symlink attack.
Published 2001-10-12 · Modified
2.11 PoCEPSS 0.008
CVE-2002-0080
rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.
Published 2002-06-25 · Modified
2.1EPSS 0.005
CVE-2001-0117
sdiff 2.7 in the diffutils package allows local users to overwrite files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.004
CVE-2001-0143
vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0139
inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0142
squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0116
gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0118
rdist 6.1.5 allows local users to overwrite arbitrary files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0119
getty_ps 2.0.7j allows local users to overwrite arbitrary files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0120
useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0138
privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.
Published 2001-05-07 · Modified
1.2EPSS 0.003
CVE-2001-0140
arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
Published 2001-05-07 · Modified
1.2EPSS 0.003
← Prev2 / 2