Section: .. / advisories / caldera /
| /// File Name: |
CSSA-1999-032.0.txt |
Description:
|
Caldera Advisory - The Linux kernel as shipped with Caldera OpenLinux 2.3 has two definitive security problems, and one possible problem. TCP Spoofing Problem, Packet Injection Problem, and Possible Argument Vector Corruption.
| | File Size: | 5936 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 18f0eb71d50716545fbf1622e3fe3731 |
|
| /// File Name: |
CSSA-1999-033.0.txt |
Description:
|
Caldera Advisory - A buffer overflow was discovered in the Linux user space NFS daemon that allows an attacker to obtain root privilege on the NFS server host. In order to exploit the bug, the attacker must have access to a file systems exported read/write by the server machine.
| | File Size: | 2595 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 1f2f9c0da06276e5abe20314a2407eab |
|
| /// File Name: |
CSSA-1999-034.0.txt |
Description:
|
Caldera Advisory - Several vulnerabilities have been discovered in BIND, the DNS name server implementation maintained by the Internet Consortium, and shipped with OpenLinux. At least one of them, the so-called ``NXT bug,'' involves a buffer overflow that can possibly be used by a skilled attacker to execute arbitrary code with the privilege of the name server process. Five other bugs could be exploited by remote and local users to crash the name server.
| | File Size: | 4490 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | f372b37e400da08fae2dd765c7d715ce |
|
| /// File Name: |
CSSA-1999-035.0.txt |
Description:
|
Caldera Advisory - On Linux, most services do not log informational or error messages to their own files, but use the system log daemon, syslogd, for this. Unfortunately, the current syslogd has a problem by which any user on the local host can mount a denial of service attack that effectively stops all logging. Since all programs that want to send logging information to syslogd block until they're able to establish a connection to syslogd, this will make programs such as login, su, sendmail, telnetd, etc hang indefinitely.
| | File Size: | 2978 | | Last Modified: | Nov 23 02:35:49 1999 |
| MD5 Checksum: | 056d78439a69bb409489c80e61c78e89 |
|
| /// File Name: |
CSSA-1999-036.0.txt |
Description:
|
Caldera Advisory - Versions of pine prior to 4.21 had a security problem when viewing URLs. Sending an email with a specially formatted URL embedded in it, an attacker could cause arbitrary shell code to be executed under the account of the victim user.
| | File Size: | 2439 | | Last Modified: | Nov 23 02:37:31 1999 |
| MD5 Checksum: | 1666f477435af01dd07c8f3f60c63cae |
|
| /// File Name: |
cssa-1999.019.xmonisdn |
Description:
|
cssa-1999.019.xmonisdn
| | File Size: | 2559 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | f944ae788cde70b5781babd107039d0b |
|
| /// File Name: |
cssa-1999.020.termcap |
Description:
|
cssa-1999.020.termcap
| | File Size: | 2459 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 144131459cd64ec36a07f0c700a8594b |
|
| /// File Name: |
cssa-1999.021.kdm |
Description:
|
cssa-1999.021.kdm
| | File Size: | 3254 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 8cc5517f19691e55520843ea41f94879 |
|
| /// File Name: |
cssa-1999.022.telnetd |
Description:
|
cssa-1999.022.telnetd
| | File Size: | 3999 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 1d505c66efa634d982c01a0b6b661a10 |
|
| /// File Name: |
cssa-1999.023.cron |
Description:
|
cssa-1999.023.cron
| | File Size: | 3066 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 42a08735f16d177df83dd70e6102f7cc |
|
| /// File Name: |
cssa-1999.024.amd |
Description:
|
cssa-1999.024.amd
| | File Size: | 2655 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 97fdda8b3b1c80b4d3389ea56604fabd |
|
| /// File Name: |
cssa-1999.025.man |
Description:
|
cssa-1999.025.man
| | File Size: | 2816 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | 9afb0e70c0906b389c785c4811e47177 |
|
| /// File Name: |
cssa-1999.026.inews |
Description:
|
cssa-1999.026.inews
| | File Size: | 3718 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | b7eca78ad6a9faeec2dae709a52c6244 |
|
| /// File Name: |
cssa-1999.028.wuftpd |
Description:
|
cssa-1999.028.wuftpd
| | File Size: | 3070 | | Last Modified: | Sep 23 06:21:31 1999 |
| MD5 Checksum: | e17e3d930555669618b9265062bde808 |
|
| /// File Name: |
CSSA-2000-033.0.txt |
Description:
|
Caldera Advisory - There is a format bug in the LPRng printer daemon that could possibly be exploited to obtain root privilege. This problem is particulary severe because it can be exercised remotely.
| | File Size: | 4806 | | Last Modified: | Sep 27 22:44:49 2000 |
| MD5 Checksum: | 26cd8be0af17378747b6027a9f5f7674 |
|
| /// File Name: |
CSSA-2002-040.0.txt |
Description:
|
Caldera security advisory CSSA-2002-040.0 - The uudecode utility created output files without checking to see if it was about to write to a symlink or a pipe. If a user uses uudecode to extract data into open shared directories, such as /tmp, this vulnerability could be used by a local attacker to overwrite files.
| | Homepage: | http://stage.caldera.com/support/security/ | | File Size: | 3955 | | Related CVE(s): | CAN-2002-0178 | | Last Modified: | Oct 30 17:39:50 2002 |
| MD5 Checksum: | cd216723764ec227721effb6d82249b7 |
|
| /// File Name: |
CSSA-2002-041.0.txt |
Description:
|
Caldera security advisory CSSA-2002-041.0 - Versions of the pam_ldap module prior to 144 include a remote exploitable format string bug in the logging function. Caldera released fixed packages for OpenLinux 3.1.1 and 3.1 configurations.
| | Homepage: | http://stage.caldera.com/support/security/ | | File Size: | 4309 | | Last Modified: | Oct 30 17:46:44 2002 |
| MD5 Checksum: | d03efb188f70701feba1ffc923e5d39d |
|
| /// File Name: |
CSSA-2002-SCO.17.txt |
Description:
|
Caldera Security Advisory CSSA-2002-SCO.17 - A buffer overflow found in how the sar can be used to execute shellcode with elevated privileges on Caldera OpenServer 5.0.5 systems.
| | Author: | Caldera, KF | | Homepage: | http://stage.caldera.com/support/security/ | | File Size: | 2323 | | Last Modified: | May 7 07:56:52 2002 |
| MD5 Checksum: | 6d186fb897c7ff4c70fbad4f31ac7f8b |
|
| /// File Name: |
CSSA-2002-SCO.23 |
Description:
|
Caldera Security Advisory CSSA-2002-SCO.23 - A vulnerability found in the Open UNIX and UnixWare FTP daemon can allow remote attackers to hijack passive FTP data connections.
| | Author: | Caldera Security | | Homepage: | http://stage.caldera.com/support/security/ | | File Size: | 3953 | | Last Modified: | Jun 3 06:11:22 2002 |
| MD5 Checksum: | 57d8580ce7d8a5097057cc5f1eef8d5a |
|
| /// File Name: |
CSSA-2002-SCO.35.txt |
Description:
|
Caldera security advisory CSSA-2002-SCO.35 - A format string vulnerability found in the crontab utility can allow local users to gain root level privileges. This issue affects Caldera OpenServer 5.0.5 and OpenServer 5.0.6 .
| | Author: | Caldera security | | Homepage: | http://www.caldera.com/support/security/ | | File Size: | 3590 | | Last Modified: | Jul 24 05:11:39 2002 |
| MD5 Checksum: | b2031d17f7de3571143dd7c364865f6e |
|
| /// File Name: |
SA-1996.01.txt |
Description:
|
SA-1996.01.txt
| | File Size: | 1657 | | Last Modified: | Sep 23 06:21:32 1999 |
| MD5 Checksum: | 75b2c195aada47089b5b16337fe9060d |
|
| /// File Name: |
SA-1996.02.txt |
Description:
|
SA-1996.02.txt
| | File Size: | 3529 | | Last Modified: | Sep 23 06:21:32 1999 |
| MD5 Checksum: | 4617d595b407ff5abeaa6ad89f012802 |
|
| /// File Name: |
SA-1996.03.txt |
Description:
|
SA-1996.03.txt
| | File Size: | 2687 | | Last Modified: | Sep 23 06:21:32 1999 |
| MD5 Checksum: | fff8caec8f39ec4fdfe70d0652d5fe56 |
|
| /// File Name: |
SA-1996.04.txt |
Description:
|
SA-1996.04.txt
| | File Size: | 1395 | | Last Modified: | Sep 23 06:21:32 1999 |
| MD5 Checksum: | 2fd27718a39138183562d59ff587fa42 |
|
| /// File Name: |
SA-1996.05.txt |
Description:
|
SA-1996.05.txt
| | File Size: | 1134 | | Last Modified: | Sep 23 06:21:32 1999 |
| MD5 Checksum: | 334ccfa74736a8c0d1557c38edb02dc6 |
|
|
|
|
|