ISOMAN

Release

Slackware 13.37

Slackware · 8 targets · 8 artifacts

Release Facts

Version
13.37
Date
Architectures
x86, x86_64
Editions
-
Variants
install-d1, install-d2, install-d3, install-d4, install-dvd, source-d5, source-d6
Protocols
https

Quality

Targets
8
Artifacts
8
Checksums
8/8
Average confidence
1.00
CVEs
9

Artifacts

ArtifactMediaSizeProtocolsChecksumsQuality
slackware-13.37-install-d1.isoiso655 MBhttps11.00
slackware-13.37-install-d2.isoiso665 MBhttps11.00
slackware-13.37-install-d3.isoiso656 MBhttps11.00
slackware-13.37-install-d4.isoiso662 MBhttps11.00
slackware-13.37-install-dvd.isoiso4.2 GBhttps11.00
slackware-13.37-source-d5.isoiso663 MBhttps11.00
slackware-13.37-source-d6.isoiso661 MBhttps11.00
slackware64-13.37-install-dvd.isoiso4.3 GBhttps11.00

Related CVEs

  1. CVE-1999-0242

    HIGH · Remote attackers can access mail files via POP3 in some Linux systems that are using shadow passwords.

  2. CVE-2000-0867

    HIGH · Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.

  3. CVE-2004-0226

    HIGH · Multiple buffer overflows in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.

  4. CVE-2004-0231

    LOW · Multiple vulnerabilities in Midnight Commander (mc) before 4.6.0, with unknown impact, related to "Insecure temporary file and directory creations."

  5. CVE-2004-0232

    MEDIUM · Multiple format string vulnerabilities in Midnight Commander (mc) before 4.6.0 may allow attackers to cause a denial of service or execute arbitrary code.

  6. CVE-2004-0233

    LOW · Utempter allows device names that contain .. (dot dot) directory traversal sequences, which allows local users to overwrite arbitrary files via a symlink attack on device names in combination with an application that trusts the utmp or wtmp files.

  7. CVE-2013-4854

    HIGH · The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertion failure and named daemon exit) via a query with a malformed RDATA section that is not properly handled during construction of a log message, as exploited in the wild in July 2013.

  8. CVE-2013-7172

    HIGH · Slackware 13.1, 13.37, 14.0 and 14.1 contain world-writable permissions on the iodbctest and iodbctestw programs within the libiodbc package, which could allow local users to use RPATH information to execute arbitrary code with root privileges.

  9. CVE-2018-9336

    HIGH · openvpnserv.exe (aka the interactive service helper) in OpenVPN 2.4.x before 2.4.6 allows a local attacker to cause a double-free of memory by sending a malformed request to the interactive service. This could cause a denial-of-service through memory corruption or possibly have unspecified other impact including privilege escalation.