Known Vulnerabilities for products from Slackware

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Slackware".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-11135 TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially ... 6.5 - MEDIUM 2019-11-14 2023-11-07
CVE-2018-9336 openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-... 7.8 - HIGH 2018-05-01 2018-06-13
CVE-2018-7184 ntpd in ntp 4.2.8p4 before 4.2.8p11 drops bad packets before updating the "received" timestamp, which allows remote attackers... 7.5 - HIGH 2018-03-06 2020-08-24
CVE-2016-4448 Format string vulnerability in libxml2 before 2.9.4 allows attackers to have unspecified impact via format string specifiers ... 9.8 - CRITICAL 2016-06-09 2023-02-12
CVE-2013-7172 Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the l... 7.8 - HIGH 2019-11-21 2019-12-03
CVE-2013-7171 Slackware 14.0 and 14.1, and Slackware LLVM 3.0-i486-2 and 3.3-i486-2, contain world-writable permissions on the /tmp directo... 9.8 - CRITICAL 2019-11-21 2019-12-03
CVE-2013-4854 The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4... 7.8 - HIGH 2013-07-29 2019-04-22
CVE-2007-6200 Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass ... 10 - HIGH 2007-12-01 2018-10-15
CVE-2007-6199 rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access rest... 9.3 - HIGH 2007-12-01 2018-10-15
CVE-2007-3798 Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrar... 9.8 - CRITICAL 2007-07-16 2024-01-12
CVE-2007-1352 Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to exe... 3.8 - LOW 2007-04-06 2018-10-16
CVE-2007-0823 xterm on Slackware Linux 10.2 stores information that had been displayed for a different user account using the same xterm pr... 1.9 - LOW 2007-02-07 2008-11-15
CVE-2006-6235 A "stack overwrite" vulnerability in GnuPG (gpg) 1.x before 1.4.6, 2.x before 2.0.2, and 1.9.0 through 1.9.95 allows attacker... 10 - HIGH 2006-12-07 2018-10-17
CVE-2005-3626 Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to ... 5 - MEDIUM 2005-12-31 2018-10-19
CVE-2005-3625 Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to ... 10 - HIGH 2005-12-31 2018-10-19
CVE-2005-3624 The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor,... 5 - MEDIUM 2005-12-31 2018-10-19
CVE-2004-0940 Buffer overflow in the get_tag function in mod_include for Apache 1.3.x to 1.3.32 allows local users who can create SSI docum... 7.8 - HIGH 2005-02-09 2024-02-02
CVE-2004-0891 Buffer overflow in the MSN protocol handler for gaim 0.79 to 1.0.1 allows remote attackers to cause a denial of service (appl... 10 - HIGH 2005-01-27 2017-10-11
CVE-2004-0881 getmail 4.x before 4.2.0, and other versions before 3.2.5, when run as root, allows local users to write files in arbitrary d... 2.1 - LOW 2005-01-27 2017-07-11
CVE-2004-0880 getmail 4.x before 4.2.0, when run as root, allows local users to overwrite arbitrary files via a symlink attack on an mbox f... 1.2 - LOW 2005-01-27 2017-07-11

Known software with vulnerabilities from Slackware

Type Vendor Product Version
Operating
System
SlackwareSlackware Linux7.0