OpenBSD crash using nlink value in FFS and EXT2FS filesystems.
Buffer overflow in OpenBSD ping.
Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.
Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service.
xtvscreen in SuSE Linux 6.0 allows local users to overwrite arbitrary files via a symlink attack on the pic000.pnm file.
A race condition between the select() and accept() calls in NetBSD TCP servers allows remote attackers to cause a denial of service.
Debian GNU/Linux cfengine package is susceptible to a symlink attack.
Vulnerability in Compaq Tru64 UNIX edauth command.
The installer for BackOffice Server includes account names and passwords in a setup file (reboot.ini) which is not deleted.
Lynx allows a local user to overwrite sensitive files through /tmp symlinks.
NetBSD netstat command allows local users to access kernel memory.
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object.
Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port.
When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password.
Solaris ff.core allows local users to modify files.
L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information.
Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames.
PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.
The rpc.rquotad service is running.
The rstat/rstatd service is running.