Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
linux netkit vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2004-0640
Format string vulnerability in the SSL_set_verify function in telnetd.c for SSLtelnet daemon (SSLtelnetd) 0.13 allows remote malicious users to execute arbitrary code.
Netkit Linux Netkit 0.17
Netkit Linux Netkit 0.17.17
Ssltelnetd Secure Telnet 0.13.1
5.8
CVSSv2
CVE-2019-7283
An issue exists in rcp in NetKit up to and including 0.17. For an rcp operation, the server chooses which files/directories are sent to the client. However, the rcp client only performs cursory validation of the object name returned. A malicious rsh server (or Man-in-The-Middle a...
Netkit Netkit
Debian Debian Linux 9.0
10
CVSSv2
CVE-2007-5769
Double free vulnerability in the getreply function in ftp.c in netkit ftp (netkit-ftp) 0.17 20040614 and later allows remote FTP servers to cause a denial of service (application crash) and possibly have unspecified other impact via some types of FTP protocol behavior. NOTE: the ...
Netkit-ftp Netkit Ftp 0.17
9.3
CVSSv2
CVE-2007-6263
The dataconn function in ftpd.c in netkit ftpd (netkit-ftpd) 0.17, when certain modifications to support SSL have been introduced, calls fclose on an uninitialized file stream, which allows remote malicious users to cause a denial of service (daemon crash) and possibly have unspe...
Netkit-ftp Netkit Ftp 0.17
NA
CVE-2022-39028
telnetd in GNU Inetutils up to and including 2.3, MIT krb5-appl up to and including 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In a typical installation, the telnetd application would crash but the telnet service would remain available ...
Gnu Inetutils
Mit Kerberos 5
Debian Debian Linux 10.0
Netkit-telnet Project Netkit-telnet
6.5
CVSSv2
CVE-2006-6008
ftpd in Linux Netkit (linux-ftpd) 0.17, and possibly other versions, does not check the return status of certain seteuid, setgid, and setuid calls, which might allow remote authenticated users to gain privileges if these calls fail in cases such as PAM failures or resource limits...
Netkit Netkit 0.17
4.3
CVSSv2
CVE-2019-7282
In NetKit up to and including 0.17, rcp.c in the rcp client allows remote rsh servers to bypass intended access restrictions via the filename of . or an empty filename. The impact is modifying the permissions of the target directory on the client side. This is similar to CVE-2018...
Netkit Netkit
Debian Debian Linux 9.0
Fedoraproject Fedora 34
Fedoraproject Fedora 35
Fedoraproject Fedora 36
5
CVSSv2
CVE-2004-0911
telnetd for netkit 0.17 and previous versions, and possibly other versions, on Debian GNU/Linux allows remote malicious users to cause a denial of service (free of an invalid pointer), a different vulnerability than CVE-2001-0554.
Debian Netkit
5
CVSSv2
CVE-2004-1180
Unknown vulnerability in the rwho daemon (rwhod) prior to 0.17, on little endian architectures, allows remote malicious users to cause a denial of service (application crash).
Sun Solaris
Sun Sunos 5.9
Debian Debian Linux 3.0
Mandrakesoft Mandrake Linux 10.0
Mandrakesoft Mandrake Linux 10.1
Mandrakesoft Mandrake Linux Corporate Server 2.1
6.2
CVSSv2
CVE-2005-0178
Race condition in the setsid function in Linux prior to 2.6.8.1 allows local users to cause a denial of service (crash) and possibly access portions of kernel memory, related to TTY changes, locking, and semaphores.
Vserver Linux-vserver 1.24
Vserver Linux-vserver 1.21
Netkit Linux Netkit 0.17
Vserver Linux-vserver 1.22
Vserver Linux-vserver 1.20
Vserver Linux-vserver 1.23
Netkit Linux Netkit 0.17.17
Linux Linux Kernel 2.6.11
Linux Linux Kernel 2.0.30
Linux Linux Kernel 2.0.18
Linux Linux Kernel 2.4.18
Linux Linux Kernel 2.4.15
Linux Linux Kernel 2.4.30
Linux Linux Kernel 2.2.10
Linux Linux Kernel 2.0.20
Linux Linux Kernel 2.5.29
Linux Linux Kernel 2.0.23
Linux Linux Kernel 2.0.9.9
Linux Linux Kernel 2.5.54
Linux Linux Kernel 2.6.12
Linux Linux Kernel 2.5.68
Linux Linux Kernel 2.5.3
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
firmware
CVE-2006-4304
CVE-2024-32878
CVE-2024-31502
XSS
CVE-2024-3059
CVE-2024-33692
CVE-2024-3400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »