Skip to main content

Vendor/product archive

isc / inn CVEs

Beta · best-effort

10 CVEs tagged to isc / inn2 Critical, 4 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2012-3523

Published Nov 11, 2012

The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessi…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0045

Published Feb 3, 2004

Buffer overflow in the ARTpost function in art.c in the control message handling code for INN 2.4.0 may allow remote attackers to execute arbitrary code.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0525

Published Aug 12, 2002

Format string vulnerabilities in (1) inews or (2) rnews for INN 2.2.3 and earlier allow local users and remote malicious NNTP servers to gain privileges via format string specifie…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2001-1442

Published Apr 21, 2001

Buffer overflow in innfeed for ISC InterNetNews (INN) before 2.3.0 allows local users in the "news" group to gain privileges via a long -c command line argument.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0360

Published Oct 20, 2000

Buffer overflow in INN 2.2.1 and earlier allows remote attackers to cause a denial of service via a maliciously formatted article.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-1999-0706

Published Apr 27, 2000

Linux xmonisdn package allows local users to gain root privileges by modifying the IFS or PATH environmental variables.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0472

Published Feb 6, 2000

Buffer overflow in innd 2.2.2 allows remote attackers to execute arbitrary commands via a cancel request containing a long message ID.

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-1999-0754

Published May 11, 1999

The INN inndstart program allows local users to gain privileges by specifying an alternate configuration file using the INNCONF environmental variable.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-1999-0785

Published May 11, 1999

The INN inndstart program allows local users to gain root privileges via the "pathrun" parameter in the inn.conf file.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1