| ★ wanayoo — archive 1999 http://search.linuxsecurity.com/advisories/turbolinux.html | Nouvelle recherche | Portail wanayoo |
![]() |
|
![]() |
|||
|
- Sendmail may be exploited to gain root privileges due to segmentation fault vulnerability in "address test" mode. - Buffer overflow and other vulnerabilities exist in previous versions of bind. - Previous versions may allow access to write or overwrite restricted files. - A buffer overflow exists in Netscape's HTML parsing code. - There is a heap-corruption vulnerability existing in slocate. - The version of LPRng that ships with TurboLinux is vulnerable to a remotely exploitable buffer overflow. - The updated IMAP server released in errata advisory RHSA:102-04 exposes a bug in fetchmail's implementation of the AUTHENTICATE GSSAPI command. - There is a bug in the traceroute command that can possibly be use by local users to obtain super user privileges. - Various vulnerabilities exist in syslogd/klogd. By exploiting these vulnerabilities, it could be possible for local users to gain root access. - There has been a well-known vulnerability existing with all un-patched xchat versions 1.4.2 and earlier. - Several bugs were discovered in glibc which could allow local users to gain root privileges. - There is a serious problem in netscape's java libraries that allows an applet to act as a web server on the client machine - A denial of service attack can be made against the PAM auth system. - The latest versions of perl as well as past shipping versions of perl in TurboLinux distributions are susceptible to a local root exploit. - A web site could contain malicious code which would enable remote execution or other malicious behavior as the user of netscape on the client's machine. - remote read/write access to arbitrary files owned by the default web user is possible via this exploit. - Remote root exploit present in versions earlier than 2.0. - Improper bounds checking may lead to remote root execution on FTP server. - Any local user with an account can use this vulnerability to obtain root priviledges by exploiting setuid root applications. - An overflow in the -mode command line option exists - A user with console access can use this vulnerability to execute arbitrary commands with elevated priviledges. - Local users can destroy the contents of any file on any mounted filesystem. - "Both 'pam' and 'userhelper' (a setuid binary that comes with the 'usermode-1.15' rpm) follow .. paths. Since pam_start calls down to _pam_add_handler(), we can get it to dlopen any file on disk. 'userhelper' being setuid means we can get root." - A buffer overrun exists in nmh versions 1.0.2 and prior. Due to improper MIME header parsing, an attacker could create a MIME message such that the mhshow utility may be used to execute shell code when the message is viewed. - Previous versions of dump did not handle permissions correctly. It may be possible to execute arbitrary code with the permissions of the process. - The MySQL database server (prior to 3.22.32) has a flawed password authentication mechanism. Anyone who can connect to the server can access databases without knowing an exact password. - Remote users can read any file on the server using htsearch. This affects TurboLinux versions 6.0 and earlier. - Buffer overflow possibility in TurboLinux versions 6.0.2 and earlier. - Older versions of mtr did not properly drop root privileges. - GNU make creates temporary files in /tmp without checking for links if it is fed a Makefile via stdin. - Gdmlogin reveals authentication and account information that may be used to gain root priviledges. |
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Contact Us | Legal Notice | About Our Site © Guardian Digital, Inc., 2000 |