Redhat Linux vulnerabilities

213 known vulnerabilities affecting redhat/linux.

Total CVEs
213
CISA KEV
0
Public exploits
72
Exploited in wild
0
Severity breakdown
CRITICAL34HIGH86MEDIUM56LOW37

Vulnerabilities

Page 5 of 11
CVE-2001-0977MEDIUMCVSS 5.0v6.2v7.0+1 more2001-07-16
CVE-2001-0977 [MEDIUM] CVE-2001-0977: slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field.
nvd
CVE-2001-0439HIGHCVSS 7.5v7.02001-07-02
CVE-2001-0439 [HIGH] CVE-2001-0439: licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
nvd
CVE-2001-0473HIGHCVSS 7.5v5.2v6.0+3 more2001-06-27
CVE-2001-0473 [HIGH] CVE-2001-0473: Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute ar Format string vulnerability in Mutt before 1.2.5 allows a remote malicious IMAP server to execute arbitrary commands.
nvd
CVE-2001-0441HIGHCVSS 7.5v6.2v7.02001-06-27
CVE-2001-0441 [HIGH] CVE-2001-0441: Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allo Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header.
nvd
CVE-2001-0496MEDIUMCVSS 4.6v7.12001-06-27
CVE-2001-0496 [MEDIUM] CVE-2001-0496: kdesu in kdelibs package creates world readable temporary files containing authentication info, whic kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.
nvd
CVE-2001-0309MEDIUMCVSS 5.0v6.22001-06-02
CVE-2001-0309 [MEDIUM] CVE-2001-0309: inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.
nvd
CVE-2001-1028HIGHCVSS 7.2v5.0v5.1+4 more2001-05-28
CVE-2001-1028 [HIGH] CVE-2001-1028: Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privil Buffer overflow in ultimate_source function of man 1.5 and earlier allows local users to gain privileges.
nvd
CVE-2001-0197CRITICALCVSS 10.0PoCv6.0v6.1+2 more2001-03-26
CVE-2001-0197 [CRITICAL] CVE-2001-0197: Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attacker Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands.
nvd
CVE-2001-0233CRITICALCVSS 10.0PoCv6.0v6.1+2 more2001-03-26
CVE-2001-0233 [CRITICAL] CVE-2001-0233: Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of servic Buffer overflow in micq client 0.4.6 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Description field.
nvd
CVE-2001-0170LOWCVSS 2.1PoCv7.02001-03-26
CVE-2001-0170 [LOW] CVE-2001-0170: glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS e glibc 2.1.9x and earlier does not properly clear the RESOLV_HOST_CONF, HOSTALIASES, or RES_OPTIONS environmental variables when executing setuid/setgid programs, which could allow local users to read arbitrary files.
nvd
CVE-2001-0169LOWCVSS 2.1PoCv6.0v6.1+1 more2001-03-26
CVE-2001-0169 [LOW] CVE-2001-0169: When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.
nvd
CVE-2001-0128HIGHCVSS 7.2v6.1v6.2+1 more2001-03-12
CVE-2001-0128 [HIGH] CVE-2001-0128: Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain privileges.
nvd
CVE-2000-0314MEDIUMCVSS 5.0v2.0.342001-03-12
CVE-2000-0314 [MEDIUM] CVE-2000-0314: traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute in NetBSD 1.3.3 and Linux systems allows local users to flood other systems by providing traceroute with a large waittime (-w) option, which is not parsed properly and sets the time delay for sending packets to zero.
nvd
CVE-2000-0315MEDIUMCVSS 5.0v2.0.342001-03-12
CVE-2000-0315 [MEDIUM] CVE-2000-0315: traceroute in NetBSD 1.3.3 and Linux systems allows local unprivileged users to modify the source ad traceroute in NetBSD 1.3.3 and Linux systems allows local unprivileged users to modify the source address of the packets, which could be used in spoofing attacks.
nvd
CVE-2001-0139LOWCVSS 1.2v7.02001-03-12
CVE-2001-0139 [LOW] CVE-2001-0139: inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configuration inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
nvd
CVE-2001-0120LOWCVSS 1.2v7.02001-03-12
CVE-2001-0120 [LOW] CVE-2001-0120: useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a sym useradd program in shadow-utils program may allow local users to overwrite arbitrary files via a symlink attack.
nvd
CVE-2001-0143LOWCVSS 1.2v7.02001-03-12
CVE-2001-0143 [LOW] CVE-2001-0143: vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
nvd
CVE-2001-0142LOWCVSS 1.2v7.02001-03-12
CVE-2001-0142 [LOW] CVE-2001-0142: squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some c squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.
nvd
CVE-2001-0116LOWCVSS 1.2v7.02001-03-12
CVE-2001-0116 [LOW] CVE-2001-0116: gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack. gpm 1.19.3 allows local users to overwrite arbitrary files via a symlink attack.
nvd
CVE-2001-0140LOWCVSS 1.2v7.02001-03-12
CVE-2001-0140 [LOW] CVE-2001-0140: arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configur arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.
nvd