Redhat Linux vulnerabilities

213 known vulnerabilities affecting redhat/linux.

Total CVEs
213
CISA KEV
0
Public exploits
72
Exploited in wild
0
Severity breakdown
CRITICAL34HIGH86MEDIUM56LOW37

Vulnerabilities

Page 9 of 11
CVE-1999-0997HIGHCVSS 7.5PoCv5.2v6.0+1 more1999-12-20
CVE-1999-0997 [HIGH] CVE-1999-0997: wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress.
nvd
CVE-1999-0986MEDIUMCVSS 5.0PoCv5.21999-12-08
CVE-1999-0986 [MEDIUM] CVE-1999-0986: The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large pa The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option.
nvd
CVE-2000-0357HIGHCVSS 7.5v6.11999-12-03
CVE-2000-0357 [HIGH] CVE-2000-0357: ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local use ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the authentication keys.
nvd
CVE-2000-0358MEDIUMCVSS 5.0v6.11999-12-03
CVE-2000-0358 [MEDIUM] CVE-2000-0358: ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program. ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program.
nvd
CVE-2000-0531LOWCVSS 2.1PoCv6.0v6.11999-11-23
CVE-2000-0531 [LOW] CVE-2000-0531: Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.
nvd
CVE-1999-0832CRITICALCVSS 10.0v5.21999-11-09
CVE-1999-0832 [CRITICAL] CVE-1999-0832: Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname. Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname.
nvd
CVE-2000-0356MEDIUMCVSS 4.6v6.11999-10-13
CVE-2000-0356 [MEDIUM] CVE-2000-0356: Pluggable Authentication Modules (PAM) in Red Hat Linux 6.1 does not properly lock access to disable Pluggable Authentication Modules (PAM) in Red Hat Linux 6.1 does not properly lock access to disabled NIS accounts.
nvd
CVE-1999-1346HIGHCVSS 7.5≤ 6.11999-10-07
CVE-1999-1346 [HIGH] CVE-1999-1346: PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule PAM configuration file for rlogin in Red Hat Linux 6.1 and earlier includes a less restrictive rule before a more restrictive one, which allows users to access the host via rlogin even if rlogin has been explicitly disabled using the /etc/nologin file.
nvd
CVE-1999-1347MEDIUMCVSS 4.6≤ 6.11999-10-07
CVE-1999-1347 [MEDIUM] CVE-1999-1347: Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass e Xsession in Red Hat Linux 6.1 and earlier can allow local users with restricted accounts to bypass execution of the .xsession file by starting kde, gnome or anotherlevel from kdm.
nvd
CVE-1999-1542CRITICALCVSS 10.0v6.01999-10-04
CVE-1999-1542 [CRITICAL] CVE-1999-1542: RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell meta RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.
nvd
CVE-1999-0704CRITICALCVSS 9.3PoCv4.2v5.0+3 more1999-09-16
CVE-1999-0704 [CRITICAL] CVE-1999-0704: Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
nvd
CVE-1999-0768HIGHCVSS 7.5PoCv4.2v5.2+1 more1999-08-25
CVE-1999-0768 [HIGH] CVE-1999-0768: Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable. Buffer overflow in Vixie Cron on Red Hat systems via the MAILTO environmental variable.
nvd
CVE-1999-0769HIGHCVSS 7.2PoCv4.0v4.1+5 more1999-08-25
CVE-1999-0769 [HIGH] CVE-1999-0769: Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO Vixie Cron on Linux systems allows local users to set parameters of sendmail commands via the MAILTO environmental variable.
nvd
CVE-1999-0872HIGHCVSS 7.2v4.0v4.1+5 more1999-08-25
CVE-1999-0872 [HIGH] CVE-1999-0872: Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment v Buffer overflow in Vixie cron allows local users to gain root access via a long MAILTO environment variable in a crontab file.
nvd
CVE-2000-0355HIGHCVSS 7.5v6.01999-08-21
CVE-2000-0355 [HIGH] CVE-2000-0355: pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files. pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
nvd
CVE-1999-0740MEDIUMCVSS 6.4v4.2v5.2+1 more1999-08-19
CVE-1999-0740 [MEDIUM] CVE-1999-0740: Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed Remote attackers can cause a denial of service on Linux in.telnetd telnet daemon through a malformed TERM environmental variable.
nvd
CVE-1999-0814CRITICALCVSS 10.0v6.01999-08-11
CVE-1999-0814 [CRITICAL] CVE-1999-0814: Red Hat pump DHCP client allows remote attackers to gain root access in some configurations. Red Hat pump DHCP client allows remote attackers to gain root access in some configurations.
nvd
CVE-1999-0710HIGHCVSS 7.5PoCv5.2v6.01999-07-25
CVE-1999-0710 [HIGH] CVE-1999-0710: The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a The Squid package in Red Hat Linux 5.2 and 6.0, and other distributions, installs cachemgr.cgi in a public web directory, which allows remote attackers to use it as an intermediary to connect to other systems.
nvd
CVE-1999-1348LOWCVSS 2.1≤ 6.01999-06-30
CVE-1999-1348 [LOW] CVE-1999-1348: Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdow Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service.
nvd
CVE-2000-0118HIGHCVSS 7.2PoCv2.0v2.1+9 more1999-06-09
CVE-2000-0118 [HIGH] CVE-2000-0118: The Red Hat Linux su program does not log failed password guesses if the su process is killed before The Red Hat Linux su program does not log failed password guesses if the su process is killed before it times out, which allows local attackers to conduct brute force password guessing.
nvd