VendorsSlackwareslackware_linux3.4
Vulnerabilities

Slackware Linux 3.4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-1999-0368
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.398
CVE-1999-0192
Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.100
CVE-2000-0438
Buffer overflow in fdmount on Linux systems allows local users in the "floppy" group to execute arbitrary commands via a long mountpoint parameter.
Published 2000-07-12 · Modified
7.23 PoCEPSS 0.011
CVE-1999-1434
login in Slackware Linux 3.2 through 3.5 does not properly check for an error when the /etc/group file is missing, which prevents it from dropping privileges, causing it to assign root privileges to any local user who logs on to the server.
Published 2001-09-12 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0340
Buffer overflow in Linux Slackware crond program allows local users to gain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-1422
The default configuration of Slackware 3.4, and possibly other versions, includes . (dot, the current directory) in the PATH environmental variable, which could allow local users to create Trojan horse programs that are inadvertently executed by other users.
Published 2001-09-12 · Modified
7.2EPSS 0.003
CVE-1999-1445
Vulnerability in imapd and ipop3d in Slackware 3.4 and 3.3 with shadowing enabled, and possibly other operating systems, allows remote attackers to cause a core dump via a short sequence of USER and PASS commands that do not provide valid usernames or passwords.
Published 2001-09-12 · Modified
5.0EPSS 0.013
CVE-1999-0433
XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.
Published 1999-09-29 · Modified
4.61 PoCEPSS 0.007
CVE-1999-1498
Slackware Linux 3.4 pkgtool allows local attacker to read and write to arbitrary files via a symlink attack on the reply file.
Published 2001-09-12 · Modified
3.61 PoCEPSS 0.009