Lucene search

K

Sco Security Vulnerabilities

cve
cve

CVE-2003-0937

SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a setuid or setgid program, which leaves the descriptor open to the...

6.4AI Score

0.0004EPSS

2003-12-15 05:00 AM
25
cve
cve

CVE-2004-0510

Multiple buffer overflows in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to execute arbitrary code, as demonstrated via the execmail...

7.5AI Score

0.002EPSS

2004-12-23 05:00 AM
27
cve
cve

CVE-2003-0791

The Script.prototype.freeze/thaw functionality in Mozilla 1.4 and earlier allows attackers to execute native methods by modifying the string used as input to the script.thaw JavaScript function, which is then deserialized and...

9.8CVSS

9.6AI Score

0.012EPSS

2005-04-14 04:00 AM
30
cve
cve

CVE-2004-0112

The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that causes an...

7.2AI Score

0.002EPSS

2004-11-23 05:00 AM
54
cve
cve

CVE-2004-0079

The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null...

7.5CVSS

7.1AI Score

0.006EPSS

2004-11-23 05:00 AM
66
cve
cve

CVE-2000-0306

Buffer overflow in calserver in SCO OpenServer allows remote attackers to gain root access via a long...

7.6AI Score

0.025EPSS

2001-05-07 04:00 AM
17
cve
cve

CVE-2000-0224

ARCserve agent in SCO UnixWare 7.x allows local attackers to gain root privileges via a symlink...

7AI Score

0.001EPSS

2000-04-10 04:00 AM
18
cve
cve

CVE-2000-0154

The ARCserve agent in UnixWare allows local attackers to modify arbitrary files via a symlink...

6.8AI Score

0.0004EPSS

2000-02-23 05:00 AM
19
cve
cve

CVE-2000-0158

Buffer overflow in MMDF server allows remote attackers to gain privileges via a long MAIL FROM command to the SMTP...

7.7AI Score

0.009EPSS

2000-02-23 05:00 AM
25
cve
cve

CVE-1999-0864

UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid...

6.6AI Score

0.0004EPSS

2000-06-02 04:00 AM
25
cve
cve

CVE-2002-1998

Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long parameter to rtable_create (procedure...

8.2AI Score

0.007EPSS

2022-10-03 04:23 PM
17
cve
cve

CVE-2001-1579

The timed program (in.timed) in UnixWare 7 and OpenUnix 8.0.0 does not properly terminate certain strings with a null, which allows remote attackers to cause a denial of...

7AI Score

0.002EPSS

2022-10-03 04:22 PM
30
cve
cve

CVE-2001-1578

Unknown vulnerability in SCO OpenServer 5.0.6 and earlier allows local users to modify critical information such as certain CPU registers and segment...

6.4AI Score

0.0004EPSS

2022-10-03 04:22 PM
27
cve
cve

CVE-2011-1432

The STARTTLS implementation in SCO SCOoffice Server does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection".....

6.7AI Score

0.011EPSS

2011-03-16 10:55 PM
35
cve
cve

CVE-2009-1552

Unspecified vulnerability in the IGMP driver in SCO Unixware Release 7.1.4 Maintenance Pack 4 allows attackers to cause a denial of service (system panic) via unspecified...

6.6AI Score

0.001EPSS

2009-05-06 03:30 PM
17
cve
cve

CVE-2008-6559

Merge mcd in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges via a crafted -d argument that contains .. (dot dot) sequences that point to a directory containing a file whose name includes shell...

6.7AI Score

0.0004EPSS

2009-03-30 08:30 PM
20
cve
cve

CVE-2008-6558

Untrusted search path vulnerability in (1) hvdisp and (2) rcvm in ReliantHA 1.1.4 in SCO UnixWare 7.1.4 allows local users to gain root privileges by modifying the RELIANT_PATH environment variable to point to a malicious bin/hvenv...

6.7AI Score

0.0004EPSS

2009-03-30 08:30 PM
23
cve
cve

CVE-2008-0310

Directory traversal vulnerability in pkgadd in SCO UnixWare 7.1.4 before p534589 allows local users to create or append to arbitrary files via ".." sequences in an unspecified environment variable, probably...

6.4AI Score

0.0004EPSS

2008-04-07 05:44 PM
23
cve
cve

CVE-2008-1343

Directory traversal vulnerability in (1) pkgadd and (2) pkgrm in SCO UnixWare 7.1.4 allows local users to gain privileges via unknown...

6.5AI Score

0.0004EPSS

2008-03-17 04:44 PM
18
cve
cve

CVE-2006-4655

Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long _XKB_CHARSET environment variable...

6.8AI Score

0.0004EPSS

2006-09-09 12:04 AM
20
cve
cve

CVE-2005-2934

Unspecified vulnerability in ptrace in SCO UnixWare 7.1.3 and 7.1.4 allows local users to gain privileges via unspecified...

6.5AI Score

0.0004EPSS

2006-02-24 01:00 AM
21
cve
cve

CVE-2005-3626

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null...

6.1AI Score

0.005EPSS

2006-01-06 10:00 PM
54
cve
cve

CVE-2005-3625

Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU...

6.2AI Score

0.006EPSS

2006-01-06 10:00 PM
46
cve
cve

CVE-2005-3624

The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer...

6.3AI Score

0.013EPSS

2006-01-06 10:00 PM
54
cve
cve

CVE-2006-0072

Buffer overflow in termsh on SCO OpenServer 5.0.7 allows remote attackers to execute arbitrary code via a long -o command line argument. NOTE: this is probably a different vulnerability than CVE-2005-0351 since it involves a distinct attack...

7.9AI Score

0.031EPSS

2006-01-04 12:03 AM
30
cve
cve

CVE-2005-3903

Buffer overflow in uidadmin in SCO Unixware 7.1.3 and 7.1.4 allows local users to execute arbitrary code via a -S (scheme) argument that specifies a large file, a different vulnerability than...

7.5AI Score

0.001EPSS

2005-12-14 11:03 AM
24
cve
cve

CVE-2005-2927

Stack-based buffer overflow in ppp in SCO Unixware 7.1.3 and 7.1.4, and possibly earlier versions, allows local users to execute arbitrary code via a long argument to the (1) prompt or (2) defprompt...

7.7AI Score

0.001EPSS

2005-10-25 04:02 PM
28
cve
cve

CVE-2005-2926

Stack-based buffer overflow in (1) backupsh and (2) authsh in SCO Openserver 5.0.7 allows local users to execute arbitrary code via a long HOME environment...

7.6AI Score

0.001EPSS

2005-10-25 04:02 PM
25
cve
cve

CVE-2005-2132

RPC portmapper (rpcbind) in SCO UnixWare 7.1.1 m5, 7.1.3 mp5, and 7.1.4 mp2 allows remote attackers or local users to cause a denial of service (lack of response) via multiple invalid portmap...

6.5AI Score

0.001EPSS

2005-08-03 04:00 AM
22
cve
cve

CVE-2001-1508

Buffer overflow in lpstat in SCO OpenServer 5.0 through 5.0.6a allows local users to execute arbitrary code as group bin via a long command line...

7.5AI Score

0.0004EPSS

2005-07-14 04:00 AM
21
cve
cve

CVE-2005-0134

The X server in SCO UnixWare 7.1.1, 7.1.3, and 7.1.4 does not properly create socket directories in /tmp, which could allow attackers to hijack local...

6.8AI Score

0.0004EPSS

2005-05-18 04:00 AM
18
cve
cve

CVE-2004-1307

Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer...

7.7AI Score

0.048EPSS

2005-05-04 04:00 AM
32
cve
cve

CVE-2005-0993

Buffer overflow in nwprint in SCO OpenServer 5.0.7 allows local users to execute arbitrary code via a long command line...

7.5AI Score

0.0004EPSS

2005-05-02 04:00 AM
23
cve
cve

CVE-2004-1082

mod_digest_apple for Apache 1.3.31 and 1.3.32 on Mac OS X Server does not properly verify the nonce of a client response, which allows remote attackers to replay...

8.1AI Score

0.003EPSS

2005-04-21 04:00 AM
125
cve
cve

CVE-2004-0390

SCO OpenServer 5.0.5 through 5.0.7 only supports Xauthority style access control when users log in using scologin, which allows remote attackers to gain unauthorized access to an X session via other X login...

7.3AI Score

0.039EPSS

2005-04-14 04:00 AM
28
cve
cve

CVE-2005-0351

Buffer overflow in (1) termsh, (2) atcronsh, and (3) auditsh in SCO OpenServer 5.0.6 and 5.0.7 might allow local users to execute arbitrary code via a long HOME environment...

7.5AI Score

0.0004EPSS

2005-04-09 04:00 AM
25
cve
cve

CVE-2005-0109

Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic...

5.6CVSS

5.4AI Score

0.001EPSS

2005-03-08 05:00 AM
51
cve
cve

CVE-2004-1131

Multiple buffer overflows in the enable command for SCO OpenServer 5.0.6 and 5.0.7 allow local users to execute arbitrary code via long command line...

8AI Score

0.0004EPSS

2005-02-08 05:00 AM
26
cve
cve

CVE-2003-1021

The scosession program in OpenServer 5.0.6 and 5.0.7 allows local users to gain privileges via crafted strings on the...

6.5AI Score

0.0004EPSS

2005-02-06 05:00 AM
23
cve
cve

CVE-2004-1124

Unknown vulnerability in chroot on SCO UnixWare 7.1.1 through 7.1.4 allows local users to escape the chroot jail and conduct unauthorized...

6.3AI Score

0.001EPSS

2005-01-29 05:00 AM
21
cve
cve

CVE-2004-1039

The NFS mountd service on SCO UnixWare 7.1.1, 7.1.3, 7.1.4, and 7.0.1, and possibly other versions, when run from inetd, allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests, which causes inetd to launch a separate process for each...

6.8AI Score

0.008EPSS

2005-01-19 05:00 AM
28
cve
cve

CVE-2004-0996

main.c in cscope 15-4 and 15-5 creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink...

6AI Score

0.0004EPSS

2005-01-10 05:00 AM
33
cve
cve

CVE-2004-0511

Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to cause a denial of service by triggering a null...

6.9AI Score

0.001EPSS

2004-12-23 05:00 AM
29
cve
cve

CVE-2004-0512

Multiple unknown vulnerabilities in MMDF on OpenServer 5.0.6 and 5.0.7, and possibly other operating systems, may allow attackers to cause a denial of service by triggering a core...

6.8AI Score

0.001EPSS

2004-12-23 05:00 AM
25
cve
cve

CVE-2004-0081

OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test...

7.2AI Score

0.003EPSS

2004-11-23 05:00 AM
50
cve
cve

CVE-2002-1323

Safe.pm 2.0.7 and earlier, when used in Perl 5.8.0 and earlier, may allow attackers to break out of safe compartments in (1) Safe::reval or (2) Safe::rdo using a redefined @_ variable, which is not reset between successive...

6.2AI Score

0.001EPSS

2004-09-01 04:00 AM
30
cve
cve

CVE-2002-1199

The getdbm procedure in ypxfrd allows local users to read arbitrary files, and remote attackers to read databases outside /var/yp, via a directory traversal and symlink attack on the domain and map...

6.5AI Score

0.004EPSS

2004-09-01 04:00 AM
26
cve
cve

CVE-2003-0914

ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live)...

6.2AI Score

0.02EPSS

2003-12-15 05:00 AM
35
cve
cve

CVE-2003-0834

Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3)...

7.1AI Score

0.0004EPSS

2003-12-01 05:00 AM
22
cve
cve

CVE-2003-0872

Certain scripts in OpenServer before 5.0.6 allow local users to overwrite files and conduct other unauthorized activities via a symlink attack on temporary...

6.3AI Score

0.0004EPSS

2003-11-17 05:00 AM
23
Total number of security vulnerabilities99