cbcvebase.

Suse Linux vulnerabilities

193 known vulnerabilities affecting suse/suse_linux.

Total CVEs
193
CISA KEV
0
Public exploits
51
Exploited in wild
0
Severity breakdown
CRITICAL28HIGH74MEDIUM66LOW25

Vulnerabilities

Page 1 of 10
CVE-2004-1170P3CRITICALCVSS 10.0PoCv8v8.1+3 more2005-01-10
CVE-2004-1170 [CRITICAL] CVE-2004-1170: a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the file a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.
nvd
CVE-2004-0932P3HIGHCVSS 7.5PoCv9.22005-01-27
CVE-2004-0932 [HIGH] CVE-2004-0932: McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4 McAfee Anti-Virus Engine DATS drivers before 4398 released on Oct 13th 2004 and DATS Driver before 4397 October 6th 2004 allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
nvd
CVE-2000-0666P3CRITICALCVSS 10.0PoCv6.3v6.4+1 more2000-07-16
CVE-2000-0666 [CRITICAL] CVE-2000-0666: rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untruste rpc.statd in the nfs-utils package in various Linux distributions does not properly cleanse untrusted format strings, which allows remote attackers to gain root privileges.
nvd
CVE-2004-0990P3CRITICALCVSS 10.0PoCv8.0v8.1+4 more2005-03-01
CVE-2004-0990 [CRITICAL] CVE-2004-0990: Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows r Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-20
nvd
CVE-2002-0083P3CRITICALCVSS 9.8PoCv6.4v7.0+3 more2002-03-15
CVE-2002-0083 [CRITICAL] CWE-193 CVE-2002-0083: Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malic Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
nvd
CVE-2000-0491P3CRITICALCVSS 10.0PoCv6.2v6.42000-05-24
CVE-2000-0491 [CRITICAL] CVE-2000-0491: Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUERY request.
nvd
CVE-2000-0844P3CRITICALCVSS 10.0PoCv6.1v6.2+3 more2000-11-14
CVE-2000-0844 [CRITICAL] CWE-264 CVE-2000-0844: Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected fo Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
nvd
CVE-2004-0933P3HIGHCVSS 7.5PoCv9.22005-01-27
CVE-2004-0933 [HIGH] CVE-2004-0933: Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for t Computer Associates (CA) InoculateIT 6.0, eTrust Antivirus r6.0 through r7.1, eTrust Antivirus for the Gateway r7.0 and r7.1, eTrust Secure Content Manager, eTrust Intrusion Detection, EZ-Armor 2.0 through 2.4, and EZ-Antivirus 6.1 through 6.3 allow remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to z
nvd
CVE-2004-1096P3HIGHCVSS 7.5PoCv9.22005-01-10
CVE-2004-1096 [HIGH] CVE-2004-1096: Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows re Archive::Zip Perl module before 1.14, when used by antivirus programs such as amavisd-new, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
nvd
CVE-2001-0763P3HIGHCVSS 7.5PoCv6.0v6.1+6 more2001-10-18
CVE-2001-0763 [HIGH] CVE-2001-0763: Buffer overflow in Linux xinetd 2.1.8.9pre11-1 and earlier may allow remote attackers to execute arb Buffer overflow in Linux xinetd 2.1.8.9pre11-1 and earlier may allow remote attackers to execute arbitrary code via a long ident response, which is not properly handled by the svc_logprint function.
nvd
CVE-2001-1130P3HIGHCVSS 7.5PoCv6.0v6.3+4 more2001-08-02
CVE-2001-1130 [HIGH] CVE-2001-1130: Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by up Sdbsearch.cgi in SuSE Linux 6.0-7.2 could allow remote attackers to execute arbitrary commands by uploading a keylist.txt file that contains filenames with shell metacharacters, then causing the file to be searched using a .. in the HTTP referer (from the HTTP_REFERER variable) to point to the directory that contains the keylist.txt file.
nvd
CVE-2004-0935P3HIGHCVSS 7.5PoCv9.22005-01-27
CVE-2004-0935 [HIGH] CVE-2004-0935: Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus prote Eset Anti-Virus before 1.020 (16th September 2004) allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
nvd
CVE-2004-0937P3HIGHCVSS 7.5PoCv9.22005-02-09
CVE-2004-0937 [HIGH] CVE-2004-0937: Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, all Sophos Anti-Virus before 3.87.0, and Sophos Anti-Virus for Windows 95, 98, and Me before 3.88.0, allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
nvd
CVE-2004-0936P3HIGHCVSS 7.5PoCv9.22005-01-27
CVE-2004-0936 [HIGH] CVE-2004-0936: RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both RAV antivirus allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
nvd
CVE-2004-0934P3HIGHCVSS 7.5PoCv9.22005-01-27
CVE-2004-0934 [HIGH] CVE-2004-0934: Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file wi Kaspersky 3.x to 4.x allows remote attackers to bypass antivirus protection via a compressed file with both local and global headers set to zero, which does not prevent the compressed file from being opened on a target system.
nvd
CVE-1999-0426P3CRITICALCVSS 9.8PoCv6.01999-03-01
CVE-1999-0426 [CRITICAL] CWE-276 CVE-1999-0426: The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing. The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.
nvd
CVE-2000-0869P4MEDIUMCVSS 5.0PoCv6.0v6.1+4 more2000-11-14
CVE-2000-0869 [MEDIUM] CVE-2000-0869: The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote att The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method.
nvd
CVE-2004-1491P3MEDIUMCVSS 5.0PoCv1.0v2.0+25 more2004-12-31
CVE-2004-1491 [MEDIUM] CVE-2004-1491: Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attacke Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitrary code via a shortcut or launcher that contains an Exec entry.
nvd
CVE-2004-0460P3CRITICALCVSS 10.0v7v8+5 more2004-08-06
CVE-2004-0460 [CRITICAL] CVE-2004-0460: Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0 Buffer overflow in the logging capability for the DHCP daemon (DHCPD) for ISC DHCP 3.0.1rc12 and 3.0.1rc13 allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via multiple hostname options in (1) DISCOVER, (2) OFFER, (3) REQUEST, (4) ACK, or (5) NAK messages, which can generate a long string when writing t
nvd
CVE-2004-0940P4HIGHCVSS 7.8PoCv8.0v8.1+4 more2005-02-09
CVE-2004-0940 [HIGH] CWE-131 CVE-2004-0940: Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI documents to execute arbitrary code as the apache user via SSI (XSSI) documents that trigger a length calculation error.
nvd
1 / 10Next →
Suse Linux vulnerabilities | cvebase