Skip to main content

Vendor archive

suse CVEs

Beta · best-effort

1,190 CVEs tagged to vendor suse245 Critical, 421 High, 419 Medium, 105 Low, 0 Unrated.

CVE-2001-0109

Published Mar 12, 2001

rctab in SuSE 7.0 and earlier allows local users to create or overwrite arbitrary files via a symlink attack on the rctmp temporary file.

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2000-1107

Published Jan 9, 2001

in.identd ident server in SuSE Linux 6.x and 7.0 allows remote attackers to cause a denial of service via a long request, which causes the server to access a NULL pointer and cras…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-1016

Published Dec 11, 2000

The default configuration of Apache (httpd.conf) on SuSE 6.4 includes an alias for the /usr/doc directory, which allows remote attackers to read package documentation and obtain s…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-1040

Published Dec 11, 2000

Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-1044

Published Dec 11, 2000

Format string vulnerability in ypbind-mt in SuSE SuSE-6.2, and possibly other Linux operating systems, allows an attacker to gain root privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0844

Published Nov 14, 2000

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via fu…

CVSS 10.0 · Critical
Buzz score
12.0
OTX pulse activity

CVE-2000-0868

Published Nov 14, 2000

The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0869

Published Nov 14, 2000

The default configuration of Apache 1.3.12 in SuSE Linux 6.4 enables WebDAV, which allows remote attackers to list arbitrary directories via the PROPFIND HTTP request method.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0800

Published Oct 20, 2000

String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0614

Published Jul 10, 2000

Tnef program in Linux systems allows remote attackers to overwrite arbitrary files via TNEF encoded compressed attachments which specify absolute path names for the decompressed o…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0491

Published May 24, 2000

Buffer overflow in the XDMCP parsing code of GNOME gdm, KDE kdm, and wdm allows remote attackers to execute arbitrary commands or cause a denial of service via a long FORWARD_QUER…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0293

Published May 2, 2000

aaa_base in SuSE Linux 6.3, and cron.daily in earlier versions, allow local users to delete arbitrary files by creating files whose names include spaces, which are then incorrectl…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2000-0433

Published May 2, 2000

The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2000-0340

Published Apr 29, 2000

Buffer overflow in Gnomelib in SuSE Linux 6.3 allows local users to execute arbitrary commands via the DISPLAY environmental variable.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2000-0233

Published Mar 15, 2000

SuSE Linux IMAP server allows remote attackers to bypass IMAP authentication and gain privileges.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2000-0361

Published Dec 14, 1999

The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world readable permissions, which allows a local attacker in the dialout group to access login…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2000-0362

Published Oct 22, 1999

Buffer overflows in Linux cdwtools 093 and earlier allows local users to gain root privileges.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1,151-1,175 of 1,190 CVEsPage 47 of 48