suse software vulnerabilities
vulnerabilities.aspcode.net
Searching suse software vulnerabilities
pg and pb in SuSE pbpg 1.x package allows an at
arbitrary
|
attacker
|
package
|
allows
|
files
|
SuSE
|
pbpg
|
read
|
pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
The SuSE aaa_base package installs some system
directories
|
privileges
|
standard
|
accounts
|
creating
|
profiles
|
aaa_base
|
installs
|
package
|
scripts
|
startup
|
allows
|
system
|
those
|
users
|
local
|
which
|
user
|
such
|
some
|
/tmp
|
gain
|
home
|
SuSE
|
set
|
The SuSE aaa_base package installs some system accounts with home directories set to /tmp, which allows local users to gain privileges to those accounts by creating standard user startup scripts such as profiles.
String parsing error in rpc.kstatd in the linux
privileges
|
rpckstatd
|
attackers
|
packages
|
possibly
|
linuxnfs
|
systems
|
parsing
|
allows
|
remote
|
String
|
knfsd
|
error
|
other
|
Linux
|
SuSE
|
root
|
gain
|
String parsing error in rpc.kstatd in the linuxnfs or knfsd packages in SuSE and possibly other Linux systems allows remote attackers to gain root privileges.
Buffer overflow in ReiserFS 3.5.28 in SuSE Linu
ReiserFS
|
overflow
|
Buffer
|
Buffer overflow in ReiserFS 3.5.28 in SuSE Linux allows local users to cause a denial of service and possibly execute arbitrary commands by via a long directory name.
Buffer overflows in ISDN Point to Point Protoco
overflows
|
Protocol
|
Buffer
|
Point
|
ISDN
|
Buffer overflows in ISDN Point to Point Protocol (PPP) daemon (ipppd) in the i4l package on SuSE 7.3, 8.0, and possibly other operating systems, may allow local users to gain privileges.
SuSEconfig.javarunt in the javarunt package on
SuSEconfigjavarunt
|
java_wrapper
|
arbitrary
|
overwrite
|
temporary
|
javarunt
|
symlink
|
package
|
attack
|
allows
|
files
|
73Pro
|
Linux
|
local
|
users
|
file
|
SuSE
|
via
|
SuSEconfig.javarunt in the javarunt package on SuSE Linux 7.3Pro allows local users to overwrite arbitrary files via a symlink attack on the .java_wrapper temporary file.
SuSEconfig.susewm in the susewm package on SuSE
SuSEconfigsusewm
|
temporary
|
overwrite
|
arbitrary
|
susewm$$
|
symlink
|
package
|
attack
|
susewm
|
allows
|
files
|
82Pro
|
Linux
|
local
|
users
|
file
|
SuSE
|
via
|
SuSEconfig.susewm in the susewm package on SuSE Linux 8.2Pro allows local users to overwrite arbitrary files via a symlink attack on the susewm.$$ temporary file.
The SuSEconfig.gnome-filesystem script for YaST
tmpSuSEconfiggnome-filesystem$RANDOM
|
SuSEconfiggnome-filesystem
|
arbitrary
|
overwrite
|
directory
|
temporary
|
symlink
|
within
|
attack
|
script
|
allows
|
users
|
files
|
local
|
YaST
|
SuSE
|
via
|
The SuSEconfig.gnome-filesystem script for YaST in SuSE 9.0 allows local users to overwrite arbitrary files via a symlink attack on files within the tmp.SuSEconfig.gnome-filesystem.$RANDOM temporary directory.
SUSE Linux Enterprise Server 9 on the S/390 pla
instruction
|
privileged
|
Enterprise
|
privileges
|
properly
|
platform
|
certain
|
allows
|
handle
|
Server
|
Linux
|
users
|
local
|
which
|
S/390
|
gain
|
root
|
does
|
SUSE
|
not
|
SUSE Linux Enterprise Server 9 on the S/390 platform does not properly handle a certain privileged instruction, which allows local users to gain root privileges.
SUSE Linux before 9.1 and SUSE Linux Enterprise
unauthorized
|
activities
|
associated
|
Enterprise
|
read-only
|
commands
|
properly
|
firmware
|
devices
|
conduct
|
opened
|
modify
|
Server
|
before
|
check
|
users
|
Linux
|
write
|
local
|
which
|
could
|
allow
|
been
|
SUSE
|
SCSI
|
sent
|
have
|
not
|
SUSE Linux before 9.1 and SUSE Linux Enterprise Server before 9 do not properly check commands sent to CD devices that have been opened read-only, which could allow local users to conduct unauthorized write activities to modify the firmware of associated SCSI devices.
Race condition in SuSE Linux 8.1 through 9.2, w
unauthorized
|
condition
|
"foreign
|
through
|
systems
|
memory
|
pages"
|
allow
|
could
|
local
|
Linux
|
users
|
read
|
have
|
SuSE
|
Race
|
than
|
more
|
4GB
|
SMP
|
run
|
Race condition in SuSE Linux 8.1 through 9.2, when run on SMP systems that have more than 4GB of memory, could allow local users to read unauthorized memory from "foreign memory pages."
YaST Online Update (YOU) in SuSE 8.2 and 9.0 al
Update
|
Online
|
YaST
|
YaST Online Update (YOU) in SuSE 8.2 and 9.0 allows local users to overwrite arbitrary files via a symlink attack on you-$USER/cookies.
The Live CD in SUSE LINUX 9.1 Personal edition
configured
|
privileges
|
attackers
|
Personal
|
password
|
without
|
edition
|
allows
|
remote
|
LINUX
|
which
|
gain
|
Live
|
SUSE
|
root
|
SSH
|
via
|
The Live CD in SUSE LINUX 9.1 Personal edition is configured without a password for root, which allows remote attackers to gain privileges via SSH.
resmgr in SUSE CORE 9 does not properly identif
terminals
|
properly
|
terminal
|
identify
|
resmgr
|
allows
|
local
|
spoof
|
users
|
types
|
login
|
names
|
which
|
CORE
|
does
|
SUSE
|
not
|
resmgr in SUSE CORE 9 does not properly identify terminal names, which allows local users to spoof terminals and login types.
Multiple integer overflows in OpenWBEM on SuSE
overflows
|
arbitrary
|
attackers
|
Multiple
|
OpenWBEM
|
execute
|
integer
|
vectors
|
unknown
|
remote
|
Linux
|
allow
|
SuSE
|
code
|
via
|
Multiple integer overflows in OpenWBEM on SuSE Linux 9 allow remote attackers to execute arbitrary code via unknown vectors.
Multiple buffer overflows in OpenWBEM on SuSE L
overflows
|
arbitrary
|
attackers
|
OpenWBEM
|
Multiple
|
execute
|
unknown
|
vectors
|
buffer
|
remote
|
Linux
|
allow
|
SuSE
|
code
|
via
|
Multiple buffer overflows in OpenWBEM on SuSE Linux 9 allow remote attackers to execute arbitrary code via unknown vectors.
Unspecified vulnerability in Squid on SUSE Linu
vulnerability
|
Unspecified
|
attackers
|
service
|
remote
|
denial
|
allows
|
Squid
|
cause
|
Linux
|
SUSE
|
Unspecified vulnerability in Squid on SUSE Linux 9.0 allows remote attackers to cause a denial of service (crash) via HTTPs (SSL).
Directory traversal vulnerability in the xsp co
Open-Enterprise-Server
|
vulnerability
|
component
|
Directory
|
traversal
|
mod_mono
|
through
|
Mono/C#
|
server
|
Linux
|
SUSE
|
used
|
xsp
|
web
|
Directory traversal vulnerability in the xsp component in mod_mono in Mono/C# web server, as used in SUSE Open-Enterprise-Server 1 and SUSE Linux 9.2 through 10.0, allows remote attackers to read arbitrary files via a .. (dot dot) sequence in an HTTP request.
Multiple unspecified vulnerabilities in OpenPBS
vulnerabilities
|
unspecified
|
Multiple
|
through
|
OpenPBS
|
Linux
|
used
|
SUSE
|
Multiple unspecified vulnerabilities in OpenPBS, as used in SUSE Linux 9.2 through 10.1, allow attackers to execute arbitrary code via unspecified vectors.
Unspecified vulnerability in HP Serviceguard fo
vulnerability
|
Serviceguard
|
Unspecified
|
Enterprise
|
packaged
|
A111610
|
A111507
|
before
|
SLES10
|
Linux;
|
United
|
SLES9
|
SLES8
|
Linux
|
SuSE
|
Hat
|
Red
|
Unspecified vulnerability in HP Serviceguard for Linux; packaged for SuSE SLES8 and United Linux 1.0 before SG A.11.15.07, SuSE SLES9 and SLES10 before SG A.11.16.10, and Red Hat Enterprise Linux (RHEL) before SG A.11.16.10; allows remote attackers to obtain unauthorized access via unspecified vectors.
Software vulnerabilities results 1 to 20 of 54
Page:
1
2
3
►