CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
Unknown vulnerability in chroot on SCO UnixWare 7.1.1 through 7.1.4 allows local users to escape the chroot jail and conduct unauthorized activities. |
The X server in SCO UnixWare 7.1.1, 7.1.3, and 7.1.4 does not properly create socket directories in /tmp, which could allow attackers to hijack local sockets. |
ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value. |
Buffer overflow in the Strcmp function in the XKEYBOARD extension in X Window System X11R6.4 and earlier, as used in SCO UnixWare 7.1.3 and Sun Solaris 8 through 10, allows local users to gain privileges via a long _XKB_CHARSET environment variable value. |
The search97cgi/vtopic" in the UnixWare 7 scohelphttp webserver allows remote attackers to read arbitrary files via a .. (dot dot) attack. |
Format string vulnerability in the search97.cgi CGI script in SCO help http server for Unixware 7 allows remote attackers to execute arbitrary commands via format characters in the queryText parameter. |
MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook. |
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages. |
Delete or create a file via rpc.statd, due to invalid information. |
Local user gains root privileges via buffer overflow in rdist, via lookup() function. |
pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call. |
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto. |
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges. |
The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail. |
Buffer overflow in SCO UnixWare Xsco command via a long argument. |
Buffer overflow in SCO su program allows local users to gain root access via a long username. |
UnixWare programs that dump core allow a local user to modify files via a symlink attack on the ./core.pid file. |
UnixWare dos7utils allows a local user to gain root privileges by using the STATICMERGE environmental variable to find a script which it executes. |
The SCO UnixWare privileged process system allows local users to gain root privileges by using a debugger such as gdb to insert traps into _init before the privileged process is executed. |
UnixWare pkgtrans allows local users to read arbitrary files via a symlink attack. |