|
Date |
Description |
system |
version |
Risk |
Application |
Source |
References |
port |
Patch |
Patchref |
|
12/31/98 |
Oracle |
8.05 8.0.4 7.3 |
medium |
Oracle |
|
|||||
|
12/20/98 |
Windows NT |
3.51 4.0 5.0 |
medium |
Windows NT |
|
|||||
|
12/17/98 |
Solaris |
2.6 2.6_x86, 2.5.1, 2.5.1_x86, 2.5, 2.5_x86, 2.4, 2.4_x86 2.3 |
medium |
passwd |
|
|||||
|
12/16/98 |
MS-Proxy |
|
high |
Firewall |
|
|||||
|
12/13/98 |
UNIX |
|
high |
bootpd |
|
|||||
|
12/10/98 |
MS-Office |
97 |
high |
Excel |
|
|||||
|
12/10/98 |
IRIX |
6.4 and higher |
medium |
fcagent, RPC |
|
|||||
|
12/10/98 |
OS-9 |
|
medium |
Embedded Controllers |
|
|||||
|
12/10/98 |
BreezeCOM |
|
high |
password |
|
|||||
|
11/16/98 |
Sendmail |
8.8.6 |
medium |
sendmail |
25 |
|||||
|
11/5/98 |
cisco IOS |
Cisco 7xxx family 11.1CC and 11.1CT releases |
medium |
all |
||||||
|
11/2/98 |
Open View |
HP-UX Version 10.X HP-UX Version 9.X Solaris Version 2.X |
high |
Open View snmp |
161 |
|||||
|
11/2/98 |
Solaris |
2.6 and earlier |
high |
snmp agent |
161 |
|||||
|
10/16/98 |
Windows All |
Microsoft Internet Explorer 4.01 and 4.01 SP1 on Windows NT 4.0, Windows 95 - Microsoft Windows 98, with integrated Internet Explorer - Microsoft Internet Explorer 4.01 for Windows 3.1 and Windows NT 3.51 |
high |
Iexplorer 4.01 |
80 |
|||||
|
10/14/98 |
SunOS |
5.5.1 5.5.1_x86 5.5 5.5_x86. 5.4 5.4_x86 5.3 |
high |
ufsrestore ufsdump |
|
|||||
|
10/14/98 |
cisco IOS |
Cisco routers in the AGS/MGS/CGS/AGS+, IGS, RSM, 8xx, 1xxx, 25xx, 26xx, 30xx, 36xx,40xx, 45xx, 47xx, AS52xx, AS53xx, 70xx, 72xx (including the ubr72xx), 75xx, and 12xxxseries Most recent versions of the LS1010 ATM switch, some version of te Catalyst 29 |
00XL |
o |
||||||
|
10/13/98 |
Security Vulnerabilities in "mscreen" Serial Multiscreens Utility |
SCO |
- SCO Open Desktop/Open Server 3.0 (all, also SCO UNIX 3.2v4) - SCO OpenServer 5.0 (all, also SCO Internet FastStart) - SCO CMW+ 3.0 |
high |
mscreen |
OS |
||||
|
10/12/98 |
Linux |
|
high |
NFS |
|
http://www.redhat.com/
support/docs/errata.html ftp://ftp.caldera.com/pub/ OpenLinux/updates/1.2/013 |
||||
|
9/29/98 |
Windows NT |
4.0 including SP4 |
medium |
RPC |
135,7,9 |
|||||
|
9/3/98 |
SunOS |
5.6, 5.6_x86, 5.5.1, 5.5.1_x86, 5.4,5.4_x86, 5.3, 4.1,4.1.3_U1 |
HP-U |
X release 10.3 |
1.00
SGI IRIX 5.3 IRIX 5.4 IRIX 6.2 IRIX 6.3 IRIX 6.4 IBM AIX 4.1. |
X |
||||
|
8/25/98 |
hotmail |
|
high |
free mail service |
|
|||||
|
8/20/98 |
Cisco PIXpossible DOS-attacks to static
IP-addresses on the inside |
cisco PIX |
|
medium |
Firewall |
|
||||
|
8/19/98 |
HP-UX |
9.0-11.0 |
high |
BIND |
|
|||||
|
8/18/98 |
Updates available for Security Vulnerabilities in Microsoft PPTP |
Windows NT |
|
high |
Dialup Networking 1.2x and earlier onWindows 95 -Remote Access Services, Routing and Remote Access Services on Windows NT 4.0 - Windows 98 Dialup Networking<br> |
|
||||
|
8/18/98 |
AIX |
4.0, 4.1, 4.2, 4.3 |
high |
rpc.pcnfsd |
|
|||||
|
8/18/98 |
Windows NT |
|
medium |
IE 4.0, 4.01, 4.01 SP1 |
|
|||||
|
8/14/98 |
Linux |
|
high |
ICQ servers |
|
|||||
|
8/13/98 |
cisco IOS |
|
medium |
IOS |
|
|||||
|
8/11/98 |
All |
high |
Openwindows versions 3.0, 3.3, 3.4, 3.5 and 3.6. CDE versions 1.0.1, 1.0.2 and 1.2. - - SCO CMW+ - - SCO Open Desktop / Open Server 3.0, SCO UNIX 3.2v4 - - SCO OpenServer 5, SCO Internet FastStart - - SCO UnixWare 2.1 mutt and pine |
25 |
||||||
|
8/8/98 |
All |
|
medium |
Apache |
|
|||||
|
8/7/98 |
1.Descriptionof the Eudora Security Hole
2. Eudora Pro Security Alert |
Windows All |
|
high |
Eudora Pro and CommCenter 4.0.1 and 4.0 |
25, 110, 143 |
||||
|
8/6/98 |
Windows NT |
|
low |
Internet Explorer 4.0 even with SP1 |
80, 25, 110, 143 |
|||||
|
8/6/98 |
IRIX |
|
high |
Imapd |
143 |
|||||
|
8/6/98 |
IRIX |
5.3 |
high |
Bind DNS |
53 |
|||||
|
8/6/98 |
IRIX |
5.3 6.2 |
medium |
tcpip |
|
|||||
|
8/6/98 |
Solaris |
2.5.1 2.6 |
medium |
finger |
|
|||||
|
8/6/98 |
All |
|
high |
Notes 4.6+ Client |
80 |
|||||
|
8/6/98 |
Solaris |
2.2 2.3 2.4 2.5 2.5.1 2.6 |
high |
login in.ftpd in.uucpd rpc.rexd |
|
|||||
|
8/5/98 |
Windows NT |
|
high |
OpenNT 2.1 |
23 |
|||||
|
8/5/98 |
|
high |
HylaFAX package |
80 |
||||||
|
8/4/98 |
Microsoft'sresponse to the Cult of the Dead Cow's "BackOrifice" tool |
W95 |
95 98 |
high |
Backorifice |
31337 or other |
||||
|
8/4/98 |
AIX |
|
low |
sdrd |
|
|||||
|
7/31/98 |
Lotus NotesSMTP Mta 1.1 running on crashes in
"imsgconv" task when receiving follwing Mime Fragment |
Notes Server |
4.5x |
medium |
SMTP Mta 1.1 |
25 |
||||
|
7/31/98 |
Windows NT |
4.0 |
high |
ZEN Client 2.5 access to Netware 4.11 |
|
|||||
|
7/29/98 |
HP-UX |
9.04 10.01 10.10 10.20 10.30 11.00 |
high |
Predictive |
|
|||||
|
7/28/98 |
Windows NT |
|
high |
Outlook 98 Outlook Express (v4.72.2106.4& v4.72.3110.1) Netscape Mail (v4.05 & 4.5b1) Eudora Pro 3.05 |
1. http://ntbugtraq.ntadvice.com/
editorials/newworm.asp 2. MS98-008 3.CIAC-I-077 |
25 110 |
||||
|
7/28/98 |
OpenVMS (VAX& ALPHA) V7.1 LOGINOUT Potential Security Vulnerability |
OpenVMS |
7.1 |
high |
LOGINOUT |
|
||||
|
7/27/98 |
1.Windows NT Privilege Elevation attack
2. Read authors interview |
Windows NT |
|
high |
NT4.0, 3.51 |
|
||||
|
7/27/98 |
UNIX |
|
high |
SSL,https, proxy |
443 |
|||||
|
7/25/98 |
|
high |
mIRC |
194 |
||||||
|
7/24/98 |
Potential SMTP andNNTP Denial-of-Service Vulnerabilities in Exchange Server |
Windows NT |
|
medium |
Exchange Server 5.5 and 5.0 |
25 119 |
ftp://ftp.microsoft.com/
bussys/exchange/ exchange-public/fixes/ |
|||
|
7/23/98 |
Windows NT |
|
medium |
IIS 2.0, 3.0, 4.0 |
21 |
ftp://ftp.microsoft.com/bussys/
iis/iis-public/fixes/usa/security/ |
||||
|
7/23/98 |
HP-UX |
10.0, 10.01 10.10 10.16 10.20 10.24 11.00 |
medium |
ftp |
21 |
|||||
|
7/22/98 |
IRIX |
6.4 |
high |
ioconfig disk_bandwidth |
|
|||||
|
7/20/98 |
All |
|
low |
statd nfs cgi-bin (eg: 'handler', 'phf' & 'cgi-test') X POP3 IMAP DNS finger |
53 80 110 143 6000 |
|||||
|
7/20/98 |
Macintosh |
|
medium |
Office 98 |
|
|||||
|
7/19/98 |
UNIX |
|
high |
ClassLoader in Netscape Navigator 4.0x |
80 |
|||||
|
7/17/98 |
Windows NT |
|
high |
-IIS 4.0 -Remote Data Services 1.5 -VisualStudio 6.0 |
80 |
|||||
|
7/17/98 |
UNIX |
|
high |
imapd |
143 |
|||||
|
7/15/98 |
Netware |
4.x |
high |
pandora |
|
|||||
|
7/9/98 |
http servers |
|
high |
eperl |
80 |
|||||
|
7/8/98 |
Windows NT |
|
medium |
ftpd |
21 |
|||||
|
7/7/98 |
Windows NT |
|
low |
Frontpage |
|
|||||
|
7/2/98 |
Windows NT |
|
high |
IIS |
80 |
|||||
|
6/30/98 |
Windows NT |
|
high |
MetaIP Sendmail |
25 |
|||||
|
6/29/98 |
UNIX |
|
medium |
NIS, NIS+ finger |
79 |
|||||
|
6/29/98 |
UNIX |
|
high |
Qpopper |
110 |
|||||
|
6/27/98 |
NetBSD |
1.3.2 |
high |
at |
|
|||||
|
6/26/98 |
|
high |
SSL |
|
||||||
|
6/26/98 |
IRIX |
|
high |
mailx |
|
|||||
|
6/25/98 |
HP-UX |
9.x 10.x |
high |
RLPDAEMON |
515 |
|||||
|
6/18/98 |
SCO |
|
high |
lp |
|
|||||
|
6/18/98 |
IRIX |
3.X to 6.4 |
high |
named |
53 |
|||||
|
6/18/98 |
IRIX |
3.X to 6.4 |
high |
mail(1)/ rmail(1M)/ sendmail(1M) |
|
|||||
|
6/17/98 |
IRIX |
5.1 to 6.4 |
high |
mediad |
|
|||||
|
6/17/98 |
BSDI |
2.0 2.1 3.0 3.1 |
high |
rlogind |
|
|||||
|
6/16/98 |
IRIX |
5.3 6.2 6.3 6.4 |
medium |
OSF/DCE |
|
|||||
|
6/11/98 |
Solaris |
2.4 2.5 2.5.1 2.6 |
high |
ufsrestore |
|
|||||
|
6/11/98 |
|
high |
SSH 1.x |
|
||||||
|
6/11/98 |
UNIX |
|
high |
Summary |
|
|||||
|
6/11/98 |
|
high |
SSH 1.x |
|
||||||
|
6/10/98 |
4.4 |
medium |
Secure levels |
|
||||||
|
6/10/98 |
Solaris |
2.3 2.5 2.5.1 2.6 |
medium |
ftpd |
|
|||||
|
6/9/98 |
UNIX |
|
high |
rpc.nisd |
|
|||||
|
6/5/98 |
Windows NT |
|
medium |
|
|
|||||
|
6/3/98 |
cisco PIX |
|
high |
PIX Private Link |
|
|||||
|
6/2/98 |
Windows NT |
|
high |
PPTP |
|
|||||
|
5/15/98 |
Remote users can sendcommands to your terminal via escape sequences sent to the rlpdaemon |
HP-UX |
9.X 10.X |
high |
rlpdaemon |
|
||||
|
5/14/98 |
Solaris |
5.6, 5.6_x86, 5.5.1, 5.5.1_x86, 5.5, 5.5_x86, 5.4, 5.4_x86 5.3. |
high |
Sun Microsystem's libnsl |
|
|||||
|
5/10/98 |
Bay-Wellfleet |
|
high |
login |
|
|||||
|
5/5/98 |
3COM |
|
high |
Debug |
|
|||||
|
4/30/98 |
DEC UNIX |
|
high |
ftp, advs, rpc.statd, ftpd V3.2g, V4.0, V4.0a, V4.0b, V4.0c |
|
|||||
|
4/27/98 |
UNIX |
|
high |
xterm, xaw |
|
|||||
|
4/23/98 |
Solaris |
2.6 |
medium |
ufsdump |
|
|||||
|
4/16/98 |
Netware |
4.x |
high |
NWADMIN |
|
|||||
|
4/10/98 |
UNIX |
|
medium |
named |
53 |
|||||
|
4/8/98 |
UNIX |
|
high |
BIND 4.9 BIND 8 |
ftp://ftp.cert.org/pub/cert_advisories/
CA-98.05.bind_problems |
53 |
||||
|
4/6/98 |
IRIX |
6.3 6.4 |
high |
runtask(1M) or runexec(1M) |
|
|||||
|
3/30/98 |
Improperly coded routines canresult in susceptability to denial of service attacks. |
HP-UX |
9.X, and 10.X |
medium |
|
|
||||
|
3/23/98 |
Solaris |
|
low |
NIS + |
|
|||||
|
3/16/98 |
Ascend |
|
medium |
|
|
|||||
|
3/4/98 |
W95 |
|
medium |
TCP/IP stack |
CERT* Summary CS-98.02
http://www.microsoft.com/security/ newtear2.htm |
|
||||
|
2/24/98 |
SCO |
|
medium |
|
|
|||||
|
2/14/98 |
Windows NT |
|
medium |
SMB logon |
|
|||||
|
2/13/98 |
UNIX |
|
high |
. |
|
|||||
|
2/12/98 |
|
high |
Windows NT, SAMBA running on Unix machines |
|
||||||
|
2/11/98 |
AIX |
4.1.x 4.2.x 4.3 |
medium |
telnet |
|
|||||
|
2/11/98 |
AIX |
3.2.5 4.1.x 4.2.x 4.3 |
medium |
. |
|
|||||
|
2/10/98 |
SunOS |
5.6 5.6_x86 |
medium |
volrmmount |
|
|||||
|
2/9/98 |
|
medium |
Intrusion detection systems |
|
||||||
|
2/6/98 |
MicrosoftWindows-based Web Servers unauthorized access - long file names |
Windows NT |
|
high |
IIS |
|
||||
|
2/6/98 |
Windows NT |
|
medium |
. |
|
|||||
|
1/21/98 |
UNIX |
|
medium |
CDE |
|
|||||
|
1/20/98 |
Notes Server |
4.6 |
high |
Domino 4.6 |
|
|||||
|
1/20/98 |
UNIX |
|
medium |
Apache |
|
|||||
|
1/20/98 |
UNIX |
|
high |
ssh |
|
|||||
|
1/19/98 |
UNIX |
|
medium |
EWS1.1 |
|
|||||
|
1/14/98 |
Viewing remote HTML contentcan execute arbitrary native code |
|
high |
Microsoft Internet Explorer 4.0(1) Suite |
|
|||||
|
1/14/98 |
Linux Debian |
|
high |
deliver mail component |
|
|||||
|
1/8/98 |
AIX |
3.2.x 4.1.x 4.2.x 4.3.x |
high |
routed |
|
|||||
|
1/5/98 |
All |
|
medium |
. |
|