Monthly Archive: January 2000

CVE-1999-0989

Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol. Date published : 2000-01-04 http://www.securityfocus.com/bid/861

CVE-1999-0986

The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option. Date published : 2000-01-04 http://www.securityfocus.com/bid/870

CVE-1999-0982

The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file. Date published : 2000-01-04

CVE-1999-0981

Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect."...

CVE-1999-0979

The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed. Date published :...

CVE-1999-0975

The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the...