Lucene search

K

FreeBSD, NetBSD Security Vulnerabilities

nvd
nvd

CVE-2008-0177

The ipcomp6_input function in sys/netinet6/ipcomp_input.c in the KAME project before 20071201 does not properly check the return value of the m_pulldown function, which allows remote attackers to cause a denial of service (system crash) via an IPv6 packet with an IPComp...

6.4AI Score

0.47EPSS

2008-02-07 10:00 PM
cve
cve

CVE-2015-1793

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and...

6.5CVSS

6.1AI Score

0.105EPSS

2015-07-09 07:17 PM
56
4
cve
cve

CVE-2014-3568

OpenSSL before 0.9.8zc, 1.0.0 before 1.0.0o, and 1.0.1 before 1.0.1j does not properly enforce the no-ssl3 build option, which allows remote attackers to bypass intended access restrictions via an SSL 3.0 handshake, related to s23_clnt.c and...

4.5AI Score

0.005EPSS

2014-10-19 01:55 AM
95
nvd
nvd

CVE-2015-1793

The X509_verify_cert function in crypto/x509/x509_vfy.c in OpenSSL 1.0.1n, 1.0.1o, 1.0.2b, and 1.0.2c does not properly process X.509 Basic Constraints cA values during identification of alternative certificate chains, which allows remote attackers to spoof a Certification Authority role and...

6.5CVSS

6.1AI Score

0.105EPSS

2015-07-09 07:17 PM
1
nvd
nvd

CVE-2014-3568

OpenSSL before 0.9.8zc, 1.0.0 before 1.0.0o, and 1.0.1 before 1.0.1j does not properly enforce the no-ssl3 build option, which allows remote attackers to bypass intended access restrictions via an SSL 3.0 handshake, related to s23_clnt.c and...

4.3AI Score

0.005EPSS

2014-10-19 01:55 AM
cve
cve

CVE-2014-5139

The ssl_set_client_disabled function in t1_lib.c in OpenSSL 1.0.1 before 1.0.1i allows remote SSL servers to cause a denial of service (NULL pointer dereference and client application crash) via a ServerHello message that includes an SRP ciphersuite without the required negotiation of that...

3.7AI Score

0.05EPSS

2014-08-13 11:55 PM
59
cve
cve

CVE-2014-3513

Memory leak in d1_srtp.c in the DTLS SRTP extension in OpenSSL 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted handshake...

4.2AI Score

0.823EPSS

2014-10-19 01:55 AM
108
openvas
openvas

Operating System (OS) Detection (SMTP/POP3/IMAP)

SMTP/POP3/IMAP banner based Operating System (OS)...

7.2AI Score

2015-12-11 12:00 AM
120
cve
cve

CVE-2014-3507

Memory leak in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via zero-length DTLS fragments that trigger improper handling of the return value of a certain....

5.5AI Score

0.928EPSS

2014-08-13 11:55 PM
81
nvd
nvd

CVE-2014-3507

Memory leak in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via zero-length DTLS fragments that trigger improper handling of the return value of a certain....

7.2AI Score

0.928EPSS

2014-08-13 11:55 PM
cve
cve

CVE-2014-3505

Double free vulnerability in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (application crash) via crafted DTLS packets that trigger an error...

5.6AI Score

0.889EPSS

2014-08-13 11:55 PM
102
nvd
nvd

CVE-2014-3513

Memory leak in d1_srtp.c in the DTLS SRTP extension in OpenSSL 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted handshake...

4.2AI Score

0.823EPSS

2014-10-19 01:55 AM
1
nvd
nvd

CVE-2014-5139

The ssl_set_client_disabled function in t1_lib.c in OpenSSL 1.0.1 before 1.0.1i allows remote SSL servers to cause a denial of service (NULL pointer dereference and client application crash) via a ServerHello message that includes an SRP ciphersuite without the required negotiation of that...

4AI Score

0.05EPSS

2014-08-13 11:55 PM
1
nvd
nvd

CVE-2014-3505

Double free vulnerability in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (application crash) via crafted DTLS packets that trigger an error...

7.3AI Score

0.889EPSS

2014-08-13 11:55 PM
cve
cve

CVE-2014-3510

The ssl3_send_client_key_exchange function in s3_clnt.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote DTLS servers to cause a denial of service (NULL pointer dereference and client application crash) via a crafted handshake message in conjunction with.....

5.5AI Score

0.016EPSS

2014-08-13 11:55 PM
81
nvd
nvd

CVE-2014-3510

The ssl3_send_client_key_exchange function in s3_clnt.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote DTLS servers to cause a denial of service (NULL pointer dereference and client application crash) via a crafted handshake message in conjunction with.....

7.2AI Score

0.016EPSS

2014-08-13 11:55 PM
cve
cve

CVE-2014-3509

Race condition in the ssl_parse_serverhello_tlsext function in t1_lib.c in OpenSSL 1.0.0 before 1.0.0n and 1.0.1 before 1.0.1i, when multithreading and session resumption are used, allows remote SSL servers to cause a denial of service (memory overwrite and client application crash) or possibly...

6.4AI Score

0.024EPSS

2014-08-13 11:55 PM
83
cve
cve

CVE-2014-3506

d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via crafted DTLS handshake messages that trigger memory allocations corresponding to large length...

5.6AI Score

0.887EPSS

2014-08-13 11:55 PM
112
nvd
nvd

CVE-2014-3506

d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via crafted DTLS handshake messages that trigger memory allocations corresponding to large length...

7.2AI Score

0.887EPSS

2014-08-13 11:55 PM
1
nvd
nvd

CVE-2014-3509

Race condition in the ssl_parse_serverhello_tlsext function in t1_lib.c in OpenSSL 1.0.0 before 1.0.0n and 1.0.1 before 1.0.1i, when multithreading and session resumption are used, allows remote SSL servers to cause a denial of service (memory overwrite and client application crash) or possibly...

6.3AI Score

0.024EPSS

2014-08-13 11:55 PM
1
cve
cve

CVE-2014-3567

Memory leak in the tls_decrypt_ticket function in t1_lib.c in OpenSSL before 0.9.8zc, 1.0.0 before 1.0.0o, and 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted session ticket that triggers an integrity-check...

4.4AI Score

0.937EPSS

2014-10-19 01:55 AM
157
nvd
nvd

CVE-2014-3567

Memory leak in the tls_decrypt_ticket function in t1_lib.c in OpenSSL before 0.9.8zc, 1.0.0 before 1.0.0o, and 1.0.1 before 1.0.1j allows remote attackers to cause a denial of service (memory consumption) via a crafted session ticket that triggers an integrity-check...

4AI Score

0.937EPSS

2014-10-19 01:55 AM
1
nvd
nvd

CVE-2014-3511

The ssl23_get_client_hello function in s23_srvr.c in OpenSSL 1.0.1 before 1.0.1i allows man-in-the-middle attackers to force the use of TLS 1.0 by triggering ClientHello message fragmentation in communication between a client and server that both support later TLS versions, related to a "protocol.....

5.4AI Score

0.007EPSS

2014-08-13 11:55 PM
cve
cve

CVE-2014-3511

The ssl23_get_client_hello function in s23_srvr.c in OpenSSL 1.0.1 before 1.0.1i allows man-in-the-middle attackers to force the use of TLS 1.0 by triggering ClientHello message fragmentation in communication between a client and server that both support later TLS versions, related to a "protocol.....

5.5AI Score

0.007EPSS

2014-08-13 11:55 PM
86
nvd
nvd

CVE-2014-3508

The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process...

5.5AI Score

0.47EPSS

2014-08-13 11:55 PM
cve
cve

CVE-2014-3508

The OBJ_obj2txt function in crypto/objects/obj_dat.c in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i, when pretty printing is used, does not ensure the presence of '\0' characters, which allows context-dependent attackers to obtain sensitive information from process...

5.5AI Score

0.47EPSS

2014-08-13 11:55 PM
86
cert
cert

Multiple BGP implementations are vulnerable to improperly formatted BGP updates

Overview Multiple BGP implementations have been identified as vulnerable to specially crafted Path Attributes of a BGP UPDATE. Instead of ignoring invalid updates they reset the underlying TCP connection for the BGP session and de-peer the router. This is undesirable because a session reset...

7.5CVSS

6.7AI Score

EPSS

2023-09-12 12:00 AM
37
nessus
nessus

EulerOS Virtualization 3.0.2.0 : kernel (EulerOS-SA-2022-1681)

According to the versions of the kernel packages installed, the EulerOS Virtualization installation on the remote host is affected by the following vulnerabilities : The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't...

7.8CVSS

7.1AI Score

0.004EPSS

2022-05-07 12:00 AM
44
cve
cve

CVE-2023-45198

ftpd before "NetBSD-ftpd 20230930" can leak information about the host filesystem before authentication via an MLSD or MLST command. tnftpd (the portable version of NetBSD ftpd) before 20231001 is also...

7.5CVSS

7.5AI Score

0.001EPSS

2023-10-05 05:15 AM
25
prion
prion

Authentication flaw

ftpd before "NetBSD-ftpd 20230930" can leak information about the host filesystem before authentication via an MLSD or MLST command. tnftpd (the portable version of NetBSD ftpd) before 20231001 is also...

7.5CVSS

7.6AI Score

0.001EPSS

2023-10-05 05:15 AM
2
openvas
openvas

ICMP 'Etherleak' Information Disclosure

The remote host is prone to an information disclosure vulnerability over ICMP...

4.3CVSS

7.4AI Score

0.026EPSS

2021-08-23 12:00 AM
5
nvd
nvd

CVE-2023-45198

ftpd before "NetBSD-ftpd 20230930" can leak information about the host filesystem before authentication via an MLSD or MLST command. tnftpd (the portable version of NetBSD ftpd) before 20231001 is also...

7.5CVSS

7.6AI Score

0.001EPSS

2023-10-05 05:15 AM
cvelist
cvelist

CVE-2023-45198

ftpd before "NetBSD-ftpd 20230930" can leak information about the host filesystem before authentication via an MLSD or MLST command. tnftpd (the portable version of NetBSD ftpd) before 20231001 is also...

7.8AI Score

0.001EPSS

2023-10-05 12:00 AM
prion
prion

Null pointer dereference

telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In a typical installation, the telnetd application would crash but the telnet service would remain available through inetd. However, if the telnetd...

7.5CVSS

7.2AI Score

0.002EPSS

2022-08-30 05:15 AM
7
prion
prion

Code injection

The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE"...

3.4CVSS

6.3AI Score

0.975EPSS

2014-10-15 12:55 AM
12
nvd
nvd

CVE-2022-39028

telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In a typical installation, the telnetd application would crash but the telnet service would remain available through inetd. However, if the telnetd...

7.5CVSS

0.002EPSS

2022-08-30 05:15 AM
1
cve
cve

CVE-2022-39028

telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In a typical installation, the telnetd application would crash but the telnet service would remain available through inetd. However, if the telnetd...

7.5CVSS

7.3AI Score

0.002EPSS

2022-08-30 05:15 AM
57
9
cve
cve

CVE-2014-3566

The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE"...

3.4CVSS

4.4AI Score

0.975EPSS

2014-10-15 12:55 AM
651
5
nessus
nessus

Oracle Linux 5 : ELSA-2012-0721-1: / kernel (ELSA-2012-07211)

The remote Oracle Linux 5 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2012-07211 advisory. The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle...

7.2AI Score

0.001EPSS

2023-09-07 12:00 AM
9
nessus
nessus

Amazon Linux 2 : kernel (ALASKERNEL-5.4-2022-019)

The version of kernel installed on the remote host is prior to 5.4.91-41.139. It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2KERNEL-5.4-2022-019 advisory. A flaw was found in the JFS filesystem code in the Linux Kernel which allows a local attacker with the ...

8.8CVSS

8.2AI Score

0.004EPSS

2022-05-02 12:00 AM
103
nessus
nessus

Oracle Linux 6 / 7 : php55 (ELSA-2015-1053)

The remote Oracle Linux 6 / 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2015-1053 advisory. Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before...

9.8CVSS

10.8AI Score

0.955EPSS

2023-09-07 12:00 AM
5
nessus
nessus

Oracle Linux 6 / 7 : php54 (ELSA-2015-1066)

The remote Oracle Linux 6 / 7 host has packages installed that are affected by multiple vulnerabilities as referenced in the ELSA-2015-1066 advisory. Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.36, 5.5.x before...

9.8CVSS

10.8AI Score

0.955EPSS

2023-09-07 12:00 AM
11
nvd
nvd

CVE-2014-3566

The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE"...

3.4CVSS

4.2AI Score

0.975EPSS

2014-10-15 12:55 AM
1
prion
prion

Code injection

In NetBSD through 9.2, the IPv6 fragment ID generation algorithm employs a weak cryptographic...

7.5CVSS

7.5AI Score

0.002EPSS

2021-12-25 02:15 AM
4
prion
prion

Code injection

In NetBSD through 9.2, the IPv4 ID generation algorithm does not use appropriate cryptographic...

7.5CVSS

7.6AI Score

0.002EPSS

2021-12-25 02:15 AM
7
prion
prion

Information disclosure

In NetBSD through 9.2, there is an information leak in the TCP ISN (ISS) generation...

7.5CVSS

7.4AI Score

0.001EPSS

2021-12-25 02:15 AM
5
cve
cve

CVE-2021-45487

In NetBSD through 9.2, the IPv4 ID generation algorithm does not use appropriate cryptographic...

7.5CVSS

7.5AI Score

0.002EPSS

2021-12-25 02:15 AM
39
cve
cve

CVE-2021-45484

In NetBSD through 9.2, the IPv6 fragment ID generation algorithm employs a weak cryptographic...

7.5CVSS

7.5AI Score

0.002EPSS

2021-12-25 02:15 AM
30
cve
cve

CVE-2021-45488

In NetBSD through 9.2, there is an information leak in the TCP ISN (ISS) generation...

7.5CVSS

7.3AI Score

0.001EPSS

2021-12-25 02:15 AM
34
nvd
nvd

CVE-2021-45488

In NetBSD through 9.2, there is an information leak in the TCP ISN (ISS) generation...

7.5CVSS

0.001EPSS

2021-12-25 02:15 AM
Total number of security vulnerabilities2307