Skip to main content

Vendor archive

slackware CVEs

Beta · best-effort

44 CVEs tagged to vendor slackware11 Critical, 16 High, 11 Medium, 6 Low, 0 Unrated.

CVE-2013-7172

Published Nov 21, 2019

Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2013-7171

Published Nov 21, 2019

Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp directory which could allow remote attackers to execute arbit…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2018-9336

Published May 1, 2018

openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-free of memory by sending a malformed request to the i…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-7184

Published Mar 6, 2018

ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, which allows remote attackers to cause a denial of service (disruption) by sending…

CVSS 7.5 · High

CVE-2013-4854

Published Jul 29, 2013

The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9…

CVSS 7.8 · High

CVE-2007-6199

Published Dec 1, 2007

rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to c…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-6200

Published Dec 1, 2007

Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hi…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0823

Published Feb 7, 2007

xterm on Slackware Linux 10.2 stores information that had been displayed for a different user account using the same xterm process, which might allow local users to bypass file pe…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0530

Published Aug 6, 2004

The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the P…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 44 CVEsPage 1 of 2