MidnightBSD

Advisories for data_general

CVE-1999-0009 HIGH

Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
isc bind 8.1.1
sgi irix 4.0.1t
sco unixware 2.1
isc bind 4.9.6
sgi irix 5.0
sgi irix 4.0.5d
ibm aix 4.1.2
sgi irix 3.2
sgi irix 5.3
redhat linux 4.0
redhat linux 4.2
sgi irix 4.0.5f
sgi irix 4.0.5g
bsdi bsd_os 2.1
ibm aix 4.3
sgi irix 4.0
data_general dg_ux 5.4_4.11
sgi irix 3.3.2
isc bind 8.1
sun sunos -
sgi irix 5.0.1
netbsd netbsd 1.1
sun solaris 2.6
data_general dg_ux 5.4_4.1
nec asl_ux_4800 64
netbsd netbsd 1.3
sgi irix 4.0.4b
ibm aix 4.1.4
ibm aix 4.1
sun sunos 5.5
sco open_desktop 5.0
sgi irix 6.1
sgi irix 4.0.5_iop
bsdi bsd_os 2.0
ibm aix 4.2.1
sgi irix 3.3
sgi irix 4.0.5e
netbsd netbsd 1.2.1
sgi irix 4.0.2
sgi irix 4.0.5a
sgi irix 4.0.4
sgi irix 5.1
ibm aix 4.1.1
sgi irix 4.0.4t
redhat linux 4.1
netbsd netbsd 1.3.1
sgi irix 4.0.1
sgi irix 3.3.3
sgi irix 5.1.1
sgi irix 6.0
sun sunos 5.4
netbsd netbsd 1.2
caldera openlinux 1.0
sgi irix 3.3.1
redhat linux 5.0
sgi irix 6.3
sgi irix 5.2
ibm aix 4.2
ibm aix 4.1.5
bsdi bsd_os 2.0.1
sgi irix 4.0.5
sgi irix 6.2
sgi irix 4.0.5h
sco open_desktop 3.0
sun solaris 2.5.1
netbsd netbsd 1.0
sun sunos 5.5.1
ibm aix 4.1.3
sun sunos 5.3
sgi irix 4.0.5_ipr
sco unixware 7.0
data_general dg_ux 5.4_3.1
sun solaris 2.5
sgi irix 4.0.3
data_general dg_ux 5.4_3.0
CVE-1999-0010 MEDIUM

Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
sco unixware 2.1
netbsd netbsd 1.3.1
sun sunos 5.6
sun sunos 5.4
nec asl_ux_4800 11
redhat linux 4.2
redhat linux 5.0
ibm aix 4.3
ibm aix 4.2
nec asl_ux_4800 13
data_general dg_ux y2k_patchr4.20mu02
data_general dg_ux y2k_patchr4.12mu03
netbsd netbsd 1.3
data_general dg_ux y2k_patchr4.20mu03
sco open_desktop 3.0
data_general dg_ux y2k_patchr4.11mu05
data_general dg_ux y2k_patchr4.20mu01
ibm aix 4.1
sun sunos 5.5.1
isc bind 4.9
sun sunos 5.3
sun sunos 5.5
sco openserver 5.0
sco unixware 7.0
sco unix 3.2v4
isc bind 8
CVE-1999-0011 HIGH

Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,CWE-1067,

Products Affected

Vendor Product Version
sco unixware 2.1
netbsd netbsd 1.3.1
sun sunos 5.6
sun sunos 5.4
nec asl_ux_4800 11
redhat linux 4.2
redhat linux 5.0
ibm aix 4.3
ibm aix 4.2
nec asl_ux_4800 13
data_general dg_ux y2k_patchr4.20mu02
data_general dg_ux y2k_patchr4.12mu03
netbsd netbsd 1.3
data_general dg_ux y2k_patchr4.20mu03
sco open_desktop 3.0
data_general dg_ux y2k_patchr4.11mu05
data_general dg_ux y2k_patchr4.20mu01
ibm aix 4.1
sun sunos 5.5.1
isc bind 4.9
sun sunos 5.3
sun sunos 5.5
sco openserver 5.0
sco unixware 7.0
sco unix 3.2v4
isc bind 8
CVE-1999-0019 MEDIUM

Delete or create a file via rpc.statd, due to invalid information.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
nighthawk cx_ux *
ibm aix 3.2
sun sunos 4.1.4
sco open_desktop 3
ibm aix 4.1
sun sunos 5.4
sun sunos 5.3
data_general dg_ux 4.11
sun sunos 5.5
sco openserver 5.0
sun sunos 4.1.3
sgi irix 6.1
sco open_desktop 2
ncr mp-ras 2.03
sco unixware 2
sco openserver 3.0
ncr mp-ras 3.0
nighthawk powerux *
CVE-1999-0038 HIGH

Buffer overflow in xlock program allows local users to execute commands as root.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,CWE-120,

Products Affected

Vendor Product Version
hp hp-ux 10.00
ibm aix 3.2
hp hp-ux 10.16
sun solaris 2.4
sgi irix 5.0
hp hp-ux 10.01
data_general dg_ux 2.0
sgi irix 5.1.1
hp hp-ux 10.20
debian debian_linux 1.1
sgi irix 6.0
sun sunos 5.4
debian debian_linux 1.3
data_general dg_ux 3.0
sgi irix 5.3
bsdi bsd_os 2.1
data_general dg_ux 5.0
sgi irix 6.3
hp hp-ux 10.10
data_general dg_ux 4.0
sgi irix 5.2
ibm aix 4.2
data_general dg_ux 1.0
sgi irix 5.0.1
debian debian_linux 0.93
hp hp-ux 10.08
hp hp-ux 10.24
ibm aix 4.1
sun solaris 2.5.1
debian debian_linux 1.2
sun sunos 5.5.1
hp hp-ux 10.30
sun sunos 5.3
sgi irix 6.4
data_general dg_ux 7.0
sgi irix 6.0.1
sun sunos 5.5
hp hp-ux 10.34
data_general dg_ux 6.0
sgi irix 6.1
sun solaris 2.5
sgi irix 5.1
CVE-1999-0046 HIGH

Buffer overflow of rlogin program using TERM environmental variable.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-120,

Products Affected

Vendor Product Version
hp hp-ux 10.00
oracle solaris 2.6
hp hp-ux 10.16
sun sunos 4.1.4
next nextstep 3.3
data_general dg_ux 2.0
ibm aix 4.1.2
digital ultrix 4.5
freebsd freebsd 2.1.5
hp hp-ux 10.09
next nextstep 2.0
bsdi bsd_os 2.1
digital unix 4.0a
digital ultrix -
data_general dg_ux 4.0
next nextstep 1.0
data_general dg_ux 1.0
freebsd freebsd 2.1.0
netbsd netbsd 1.1
digital ultrix 4.1
freebsd freebsd 2.0.5
ibm aix 4.1.4
ibm aix 4.1
hp hp-ux 10.30
next nextstep 3.1
sun sunos 4.1.3u1
sun sunos 5.5
next nextstep -
freebsd freebsd 1.1.5.1
bsdi bsd_os 2.0
digital ultrix 4.2
digital ultrix 4.0
next nextstep 2.1
digital ultrix 3.0
next nextstep 3.0
ibm aix 3.2
sun solaris 2.4
ibm aix 4.1.1
hp hp-ux 10.01
hp hp-ux 10.20
digital ultrix 4.3a
sun sunos 5.4
digital ultrix 4.4
freebsd freebsd 2.0
data_general dg_ux 3.0
oracle solaris -
next nextstep 4.0
digital unix 4.0
hp hp-ux 10.10
oracle solaris 7.0
digital unix 3.2g
next nextstep 1.0a
oracle solaris 8
ibm aix 4.1.5
bsdi bsd_os 2.0.1
digital unix 4.0b
next nextstep 3.2
debian debian_linux 0.93
digital ultrix 2.2
hp hp-ux 10.08
hp hp-ux 10.24
sun solaris 2.5.1
bsdi bsd_os 1.1
netbsd netbsd 1.0
sun sunos 5.5.1
ibm aix 4.1.3
sun sunos 5.3
hp hp-ux 10.34
digital ultrix 4.3
sun solaris 2.5
CVE-1999-0152 HIGH

The DG/UX finger daemon allows remote command execution through shell metacharacters.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
data_general dg_ux *