GNU / Cfengine
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2005-3137 | The (1) cfmailfilter and (2) cfcron.in files for cfengine 1.6.5 allow local users to overwrite arbitrary files via a symlink attack on temporary files, a diffe… | LOW | 2.1 | Oct 5, 2005 |
| CVE-2005-2960 | cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability th… | LOW | 2.1 | Oct 5, 2005 |
| CVE-2004-1702 | The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 does not properly check the return value of the ReceiveTransaction function, which… | MEDIUM | 5.0 | Feb 21, 2005 |
| CVE-2004-1701 | Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote attackers to execute arbitrary code vi… | HIGH | 10.0 | Feb 21, 2005 |
| CVE-2003-0849 | Buffer overflow in net.c for cfengine 2.x before 2.0.8 allows remote attackers to execute arbitrary code via certain packets with modified length values, which… | HIGH | 7.5 | Oct 9, 2003 |
| CVE-2000-0947 | Format string vulnerability in cfd daemon in GNU CFEngine before 1.6.0a11 allows attackers to execute arbitrary commands via format characters in the CAUTH com… | HIGH | 10.0 | Jan 22, 2001 |
Showing 1 to 6 of 6 CVEs