Vulnerabilities
Vulnerable Software
Gnu:  Security Vulnerabilities
The wrapper program in mailman 2.0beta3 and 2.0beta4 does not properly cleanse untrusted format strings, which allows local users to gain privileges.
CVSS Score
4.6
EPSS Score
0.004
Published
2000-10-20
GNU userv 1.0.0 and earlier does not properly perform file descriptor swapping, which can corrupt the USERV_GROUPS and USERV_GIDS environmental variables and allow local users to bypass some access restrictions.
CVSS Score
4.6
EPSS Score
0.003
Published
2000-10-20
The resolver in glibc 2.1.3 uses predictable IDs, which allows a local attacker to spoof DNS query results.
CVSS Score
7.5
EPSS Score
0.016
Published
2000-05-03
Emacs 20 does not properly set permissions for a slave PTY device when starting a new subprocess, which allows local users to read or modify communications between Emacs and the subprocess.
CVSS Score
2.1
EPSS Score
0.004
Published
2000-04-18
The make-temp-name Lisp function in Emacs 20 creates temporary files with predictable names, which allows attackers to conduct a symlink attack.
CVSS Score
3.6
EPSS Score
0.003
Published
2000-04-18
read-passwd and other Lisp functions in Emacs 20 do not properly clear the history of recently typed keys, which allows an attacker to read unencrypted passwords.
CVSS Score
4.6
EPSS Score
0.003
Published
2000-04-18
GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands.
CVSS Score
6.2
EPSS Score
0.003
Published
2000-02-01
The Guile plugin for the Gnumeric spreadsheet package allows attackers to execute arbitrary code.
CVSS Score
4.6
EPSS Score
0.004
Published
1999-08-05
GNU fingerd 1.37 does not properly drop privileges before accessing user information, which could allow local users to (1) gain root privileges via a malicious program in the .fingerrc file, or (2) read arbitrary files via symbolic links from .plan, .forward, or .project files.
CVSS Score
7.2
EPSS Score
0.005
Published
1999-07-21
The prompt parsing in bash allows a local user to execute commands as another user by creating a directory with the name of the command to execute.
CVSS Score
4.6
EPSS Score
0.009
Published
1999-04-20


Contact Us

Shodan ® - All rights reserved