Section: .. / advisories / cert /
|
See the CERT website for more information.
|
| /// File Name: |
CA-97.16.ftpd |
Description:
|
This advisory describes a vulnerability in some versions of ftpd distributed and installed under various Unix platforms. Includes vendor information.
| | File Size: | 19089 | | Last Modified: | Sep 14 07:49:32 1999 |
| MD5 Checksum: | 0f8dc8f73fd8a2c28042f5d0d722ad93 |
|
| /// File Name: |
CA-97.17.sperl |
Description:
|
This advisory addresses a buffer overflow condition in suidperl (sperl) built from Perl 4.n and Perl 5.n distributions on UNIX systems. It suggests several solutions and includes vendor information and a patch for Perl version 5.003.
| | File Size: | 29974 | | Last Modified: | Sep 14 07:49:33 1999 |
| MD5 Checksum: | 3732a2047f3dffef5d118958863c225c |
|
| /// File Name: |
CA-97.18.at |
Description:
|
This advisory addresses a buffer overflow condition in some versions of the at(1) program. Patch information and a workaround are provided.
| | File Size: | 13543 | | Last Modified: | Sep 14 07:49:34 1999 |
| MD5 Checksum: | 073629019b6c17c0178bc309d7b0af0d |
|
| /// File Name: |
CA-97.19.bsdlp |
Description:
|
This advisory describes a vulnerability in BSD-based lpr printing software. Vendor information and a pointer to a wrapper are included.
| | File Size: | 10640 | | Last Modified: | Sep 14 07:49:38 1999 |
| MD5 Checksum: | 404732293e68bd9b18964f1e1cd8e95a |
|
| /// File Name: |
CA-97.20.javascript |
Description:
|
This advisory reports a vulnerability in JavaScript that enables remote attackers to monitor a user's Web activities.
| | File Size: | 9372 | | Last Modified: | Sep 14 07:49:39 1999 |
| MD5 Checksum: | aa7121d26f48211407ecd0cafd2547b9 |
|
| /// File Name: |
CA-97.21.sgi_buffer_overflow |
Description:
|
In this advisory, we describe 6 buffer overflow problems in SGI IRIX systems. Problems affect the df, pset, eject, login/scheme, ordist, and xlock programs. Workarounds and a pointer to a wrapper are provided.
| | File Size: | 22013 | | Last Modified: | Sep 14 07:49:40 1999 |
| MD5 Checksum: | 7a764383c709e75dfc3670d806662769 |
|
| /// File Name: |
CA-97.22.bind |
Description:
|
** This advisory supersedes CA-96.02 ** It describes a vulnerability in all versions of BIND before release 4.9.6, suggests several solutions, and provides pointers to the current version of bind.
| | File Size: | 15425 | | Last Modified: | Sep 14 07:49:42 1999 |
| MD5 Checksum: | e5aa2f1ac093fd0fffd1967d02c28331 |
|
| /// File Name: |
CA-97.23.rdist |
Description:
|
This advisory discusses a buffer overflow problem in rdist. It is a different vulnerability from the one described in CA-96.14.
| | File Size: | 17551 | | Last Modified: | Sep 14 07:49:45 1999 |
| MD5 Checksum: | ea6da4998c1eb28dbce2f119ce602ccb |
|
| /// File Name: |
CA-97.24.Count_cgi |
Description:
|
This advisory describes a buffer overrun vulnerability which exists in the Count.cgi cgi-bin program that allows intruders to force Count.cgi to execute arbitrary commands.
| | File Size: | 9427 | | Last Modified: | Sep 14 07:49:46 1999 |
| MD5 Checksum: | 98f244e9627e522b42d605af0ebd921d |
|
| /// File Name: |
CA-97.25.CGI_metachar |
Description:
|
This advisory reports a vulnerability that some CGI scripts have a problem that allows an attacker to execute arbitrary commands on a WWW server under the effective user-id of the server process.
| | File Size: | 6304 | | Last Modified: | Sep 14 07:49:47 1999 |
| MD5 Checksum: | b96a7e7a763ec5a4aacce291710b0754 |
|
| /// File Name: |
CA-97.26.statd |
Description:
|
This advisory reports a vulnerability that exists in the statd(1M) program, available on a variety of Unix platforms.
| | File Size: | 12745 | | Last Modified: | Sep 14 07:49:48 1999 |
| MD5 Checksum: | 97a8497ec33b2a69a3d4a842a74a45d7 |
|
| /// File Name: |
CA-97.27.FTP_bounce |
Description:
|
This advisory discusses the use of the PORT command in the FTP protocol.
| | File Size: | 20831 | | Last Modified: | Sep 14 07:49:49 1999 |
| MD5 Checksum: | 77c719c1b5fb9d32dd994bddd1a4f4b1 |
|
| /// File Name: |
CA-97.28.Teardrop_Land |
Description:
|
This advisory reports on two IP Denial-of-Service attacks.
| | File Size: | 13938 | | Last Modified: | Sep 14 07:49:50 1999 |
| MD5 Checksum: | 83b0888f397aad90538de341288fbd25 |
|
| /// File Name: |
CA-98-13-tcp-denial-of-service |
Description:
|
This advisory describes a vulnerability that could allow an intruder crash certain systems based on BSD-derived TCP/IP stacks.
| | File Size: | 8411 | | Last Modified: | Sep 14 07:49:51 1999 |
| MD5 Checksum: | cfd604eed1244fff7b603309a4ef690e |
|
| /// File Name: |
CA-98.01.smurf |
Description:
|
This advisory describes the "smurf" IP Denial-of-Service attacks.
| | File Size: | 20994 | | Last Modified: | Sep 14 07:49:52 1999 |
| MD5 Checksum: | 82dc851afe15546c81d35881dbda7839 |
|
| /// File Name: |
CA-98.02.CDE |
Description:
|
This advisory reports several vulnerabilities in some implementations of the Common Desktop Environment (CDE).
| | File Size: | 11239 | | Last Modified: | Sep 14 07:49:53 1999 |
| MD5 Checksum: | 1715e2d5702647b8e0af1ae91c5f246e |
|
| /// File Name: |
CA-98.03.ssh-agent |
Description:
|
This advisory details a vulnerability in the SSH cryptographic login program.
| | File Size: | 9443 | | Last Modified: | Sep 14 07:49:54 1999 |
| MD5 Checksum: | 6b3143145ff1041b361970afa096837d |
|
| /// File Name: |
CA-98.04.Win32.WebServers |
Description:
|
This advisory reports an exploitation involving long file names on Microsoft Windows-based web servers.
| | File Size: | 9953 | | Last Modified: | Sep 14 07:49:55 1999 |
| MD5 Checksum: | 0aa7dd05cd0ead8602b4bb3bdbe59213 |
|
| /// File Name: |
CA-98.05.bind_problems |
Description:
|
This advisory describes three distinct problems in bind, two of which are denial-of-service attacks and one which can allow an intruder to gain root access to your nameserver.
| | File Size: | 25870 | | Last Modified: | Sep 14 07:49:56 1999 |
| MD5 Checksum: | c8712731436b331a08b02842b35ed7dc |
|
| /// File Name: |
CA-98.06.nisd |
Description:
|
This advisory reports a vulnerability that exists in some implementations of NIS+.
| | File Size: | 9618 | | Last Modified: | Sep 14 07:49:57 1999 |
| MD5 Checksum: | a92df3eed98eff13f251d62b7fd38df8 |
|
| /// File Name: |
CA-98.07.PKCS |
Description:
|
The advisory describes a vulnerability in PKCS#1, which allows an intruder to recover the encrypted information from an SSL-protected web-session.
| | File Size: | 14153 | | Last Modified: | Sep 14 07:49:58 1999 |
| MD5 Checksum: | 4807dfeaee12fa391a6e2bec3891f15b |
|
| /// File Name: |
CA-98.08.qpopper_vul |
Description:
|
This advisory reports buffer overflow vulnerabilities in some Post Office Protocol (POP) servers.
| | File Size: | 9175 | | Last Modified: | Sep 14 07:50:01 1999 |
| MD5 Checksum: | 1fbfae4c74045aa4ce89a054e8cd96a8 |
|
| /// File Name: |
CA-98.09.imapd |
Description:
|
This advisory reports a buffer overflow in some implementations of IMAP servers.
| | File Size: | 15461 | | Last Modified: | Sep 14 07:50:02 1999 |
| MD5 Checksum: | 7ec5271a95dbb46b5ae1d95be242e1c7 |
|
| /// File Name: |
CA-98.10.mime_buffer_overflows |
Description:
|
This advisory reports a vulnerability that exists in some MIME-aware mail and news clients.
| | File Size: | 17299 | | Last Modified: | Sep 14 07:50:03 1999 |
| MD5 Checksum: | 0da297d5ba397871dcf8aa32e5ccac87 |
|
| /// File Name: |
CA-98.11.tooltalk |
Description:
|
This advisory was originally released on August 31, 1998, as NAI-29, developed by Network Associates, Inc. (NAI). It reports a vulnerability in ToolTalk RPC Service.
| | File Size: | 13486 | | Last Modified: | Sep 14 07:50:04 1999 |
| MD5 Checksum: | 267ea0e3664f28819382ca960b3710a4 |
|
|
|
|
|