Lucene search

K

FreeBSD, NetBSD Security Vulnerabilities

nvd
nvd

CVE-2009-1379

Use-after-free vulnerability in the dtls1_retrieve_buffered_fragment function in ssl/d1_both.c in OpenSSL 1.0.0 Beta 2 allows remote attackers to cause a denial of service (openssl s_client crash) and possibly have unspecified other impact via a DTLS packet, as demonstrated by a packet from a...

7.7AI Score

0.117EPSS

2009-05-19 07:30 PM
nvd
nvd

CVE-2007-0493

Use-after-free vulnerability in ISC BIND 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (named daemon crash) via unspecified vectors that cause named to "dereference a freed fetch...

6.4AI Score

0.223EPSS

2007-01-25 08:28 PM
cve
cve

CVE-2007-0493

Use-after-free vulnerability in ISC BIND 9.3.0 up to 9.3.3, 9.4.0a1 up to 9.4.0a6, 9.4.0b1 up to 9.4.0b4, 9.4.0rc1, and 9.5.0a1 (Bind Forum only) allows remote attackers to cause a denial of service (named daemon crash) via unspecified vectors that cause named to "dereference a freed fetch...

7.2AI Score

0.223EPSS

2007-01-25 08:28 PM
42
openvas
openvas

openSUSE: Security Advisory for the (openSUSE-SU-2021:0075-1)

The remote host is missing an update for...

9.8CVSS

7.2AI Score

0.004EPSS

2021-04-16 12:00 AM
2
nvd
nvd

CVE-2015-1792

The do_free_upto function in crypto/cms/cms_smime.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (infinite loop) via vectors that trigger a NULL value of a BIO data structure, as demonstrated by an....

7.3AI Score

0.604EPSS

2015-06-12 07:59 PM
cve
cve

CVE-2015-1792

The do_free_upto function in crypto/cms/cms_smime.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (infinite loop) via vectors that trigger a NULL value of a BIO data structure, as demonstrated by an....

6.5AI Score

0.604EPSS

2015-06-12 07:59 PM
114
nvd
nvd

CVE-2015-1789

The X509_cmp_time function in crypto/x509/x509_vfy.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted length field in ASN1_TIME data, as...

7.5CVSS

7.3AI Score

0.332EPSS

2015-06-12 07:59 PM
cve
cve

CVE-2015-1789

The X509_cmp_time function in crypto/x509/x509_vfy.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted length field in ASN1_TIME data, as...

7.5CVSS

6.3AI Score

0.332EPSS

2015-06-12 07:59 PM
133
3
nessus
nessus

EulerOS 2.0 SP5 : kernel (EulerOS-SA-2021-2663)

According to the versions of the kernel packages installed, the EulerOS installation on the remote host is affected by the following vulnerabilities : The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that...

9.8CVSS

8AI Score

0.002EPSS

2021-11-11 12:00 AM
37
nessus
nessus

openSUSE Security Update : the Linux Kernel (openSUSE-2021-75)

The openSUSE Leap 15.1 kernel was updated to receive various security and bugfixes. The following security bugs were fixed : CVE-2020-29568: An issue was discovered in Xen through 4.14.x. Some OSes (such as Linux, FreeBSD, and NetBSD) are processing watch events using a single thread....

9.8CVSS

8.9AI Score

0.004EPSS

2021-01-25 12:00 AM
221
prion
prion

Code injection

The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then....

3.7CVSS

6.8AI Score

0.974EPSS

2015-05-21 12:59 AM
18
veracode
veracode

Man-in-the-Middle (MitM)

openssl is vulnerable to man-in-the-middle (MitM) attacks. The vulnerability exists as the TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct...

3.7CVSS

4.8AI Score

0.974EPSS

2019-01-15 09:06 AM
12
cve
cve

CVE-2015-4000

The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then....

3.7CVSS

4.8AI Score

0.974EPSS

2015-05-21 12:59 AM
874
In Wild
2
nvd
nvd

CVE-2015-4000

The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then....

3.7CVSS

4.5AI Score

0.974EPSS

2015-05-21 12:59 AM
github
github

crossbeam-utils Race Condition vulnerability

Impact The affected version of this crate incorrectly assumed that the alignment of {i,u}64 was always the same as Atomic{I,U}64. However, the alignment of {i,u}64 on a 32-bit target can be smaller than Atomic{I,U}64. This can cause the following problems: Unaligned memory accesses Data race ...

8.1CVSS

0.3AI Score

0.003EPSS

2022-02-16 10:36 PM
16
nessus
nessus

openSUSE 15 Security Update : kernel (openSUSE-SU-2021:1975-1)

The remote SUSE Linux SUSE15 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2021:1975-1 advisory. An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in...

9.8CVSS

9.6AI Score

0.006EPSS

2021-07-16 12:00 AM
17
nessus
nessus

openSUSE 15 Security Update : kernel (openSUSE-SU-2021:1977-1)

The remote SUSE Linux SUSE15 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2021:1977-1 advisory. An issue was discovered in the Linux kernel through 5.3.9. There is a use-after-free when aa_label_parse() fails in...

9.8CVSS

9.6AI Score

0.006EPSS

2021-07-16 12:00 AM
30
prion
prion

Design/Logic Flaw

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state....

6.5AI Score

0.045EPSS

2008-10-20 05:59 PM
25
cve
cve

CVE-2008-4609

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state....

8.8AI Score

0.045EPSS

2008-10-20 05:59 PM
439
12
mageia
mageia

Updated netkit-telnet packages fix security vulnerability

2-byte DoS in netkit-telnetd....

7.5CVSS

2AI Score

0.002EPSS

2022-12-14 01:09 AM
37
veracode
veracode

Denial Of Service (DoS) Through Memory Consumption And Application Crash

OpenSSL is vulnerable to denial of service (DoS) attacks through memory consumption and application crash. This is caused because the dtls1_clear_queues function in d1_lib.c frees data not taking into account that application data could arrive between the ChangeCipherSpec message and the Finished.....

7.2AI Score

0.05EPSS

2017-02-06 05:19 AM
14
prion
prion

Memory corruption

The dtls1_clear_queues function in ssl/d1_lib.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h frees data structures without considering that application data can arrive between a ChangeCipherSpec message and a Finished message, which allows remote DTLS peers to cause a...

7.9AI Score

0.05EPSS

2015-06-12 07:59 PM
6
veracode
veracode

Denial Of Service (DoS) Through Memory Consumption And Application Crash

OpenSSL is vulnerable to denial of service (DoS). It is possible due to not properly handling application data in the dtls1_clear_queues function in d1_lib.c. allowing the data to arrive between the ChangeCipherSpec message and the Finished message and subsequently allowing DTLS peer to buffer the....

7.2AI Score

0.05EPSS

2019-01-15 09:06 AM
10
veracode
veracode

Denial Of Service (DoS) Through An Infinite Loop

OpenSSL is vulnerable to denial of service (DoS) attacks. These attacks are possible because it does not correctly handle ECParameter structures where the curve is over a malformed binary polynomial field. These attacks can be triggered through a session that uses an Elliptic Curve...

7.1AI Score

0.567EPSS

2017-02-10 05:44 AM
24
prion
prion

Authentication flaw

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a.....

6.9AI Score

0.567EPSS

2015-06-12 07:59 PM
6
nvd
nvd

CVE-2014-8176

The dtls1_clear_queues function in ssl/d1_lib.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h frees data structures without considering that application data can arrive between a ChangeCipherSpec message and a Finished message, which allows remote DTLS peers to cause a...

8.2AI Score

0.05EPSS

2015-06-12 07:59 PM
cve
cve

CVE-2014-8176

The dtls1_clear_queues function in ssl/d1_lib.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h frees data structures without considering that application data can arrive between a ChangeCipherSpec message and a Finished message, which allows remote DTLS peers to cause a...

7.4AI Score

0.05EPSS

2015-06-12 07:59 PM
120
prion
prion

Race condition

Race condition in the ssl3_get_new_session_ticket function in ssl/s3_clnt.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b, when used for a multi-threaded client, allows remote attackers to cause a denial of service (double free and application crash).....

7.9AI Score

0.394EPSS

2015-06-12 07:59 PM
9
veracode
veracode

Denial Of Service (DoS)

OpenSSL is vulnerable to denial of service (DoS) attacks and possibly other attacks. A malicious user can pass a reused session ticket to the system that can cause a double free that can lead to the system...

7.3AI Score

0.394EPSS

2017-02-10 06:46 AM
21
veracode
veracode

Denial Of Service (DoS) Through Null Pointer Dereference

OpenSSL is vulnerable to denial of service (DoS) attacks. A malicious user can pass PKCS#7 blob to the system to cause a null pointer dereference that can cause the system to...

7.2AI Score

0.433EPSS

2017-02-10 07:01 AM
19
prion
prion

Null pointer dereference

The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a PKCS#7 blob that uses ASN.1 encoding and.....

6.9AI Score

0.433EPSS

2015-06-12 07:59 PM
9
cvelist
cvelist

CVE-2014-8176

The dtls1_clear_queues function in ssl/d1_lib.c in OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h frees data structures without considering that application data can arrive between a ChangeCipherSpec message and a Finished message, which allows remote DTLS peers to cause a...

7.4AI Score

0.05EPSS

2015-06-12 12:00 AM
1
nvd
nvd

CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a.....

7.3AI Score

0.567EPSS

2015-06-12 07:59 PM
1
cve
cve

CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a.....

6AI Score

0.567EPSS

2015-06-12 07:59 PM
152
nvd
nvd

CVE-2015-1791

Race condition in the ssl3_get_new_session_ticket function in ssl/s3_clnt.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b, when used for a multi-threaded client, allows remote attackers to cause a denial of service (double free and application crash).....

8.1AI Score

0.394EPSS

2015-06-12 07:59 PM
1
cve
cve

CVE-2015-1791

Race condition in the ssl3_get_new_session_ticket function in ssl/s3_clnt.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b, when used for a multi-threaded client, allows remote attackers to cause a denial of service (double free and application crash).....

7.2AI Score

0.394EPSS

2015-06-12 07:59 PM
139
4
cve
cve

CVE-2015-1790

The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a PKCS#7 blob that uses ASN.1 encoding and.....

6.2AI Score

0.433EPSS

2015-06-12 07:59 PM
129
nvd
nvd

CVE-2015-1790

The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a PKCS#7 blob that uses ASN.1 encoding and.....

7.3AI Score

0.433EPSS

2015-06-12 07:59 PM
1
cvelist
cvelist

CVE-2015-1788

The BN_GF2m_mod_inv function in crypto/bn/bn_gf2m.c in OpenSSL before 0.9.8s, 1.0.0 before 1.0.0e, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b does not properly handle ECParameters structures in which the curve is over a malformed binary polynomial field, which allows remote attackers to cause a.....

7.4AI Score

0.567EPSS

2015-06-12 12:00 AM
cvelist
cvelist

CVE-2015-1792

The do_free_upto function in crypto/cms/cms_smime.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (infinite loop) via vectors that trigger a NULL value of a BIO data structure, as demonstrated by an....

6.6AI Score

0.604EPSS

2015-06-12 12:00 AM
cvelist
cvelist

CVE-2015-1791

Race condition in the ssl3_get_new_session_ticket function in ssl/s3_clnt.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b, when used for a multi-threaded client, allows remote attackers to cause a denial of service (double free and application crash).....

7.3AI Score

0.394EPSS

2015-06-12 12:00 AM
1
cvelist
cvelist

CVE-2015-1789

The X509_cmp_time function in crypto/x509/x509_vfy.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted length field in ASN1_TIME data, as...

6.5AI Score

0.332EPSS

2015-06-12 12:00 AM
cvelist
cvelist

CVE-2015-1790

The PKCS7_dataDecodefunction in crypto/pkcs7/pk7_doit.c in OpenSSL before 0.9.8zg, 1.0.0 before 1.0.0s, 1.0.1 before 1.0.1n, and 1.0.2 before 1.0.2b allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a PKCS#7 blob that uses ASN.1 encoding and.....

6.4AI Score

0.433EPSS

2015-06-12 12:00 AM
2
cvelist
cvelist

CVE-2015-4000

The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then....

4.9AI Score

0.974EPSS

2015-05-21 12:00 AM
2
cvelist
cvelist

CVE-2022-39028

telnetd in GNU Inetutils through 2.3, MIT krb5-appl through 1.0.3, and derivative works has a NULL pointer dereference via 0xff 0xf7 or 0xff 0xf8. In a typical installation, the telnetd application would crash but the telnet service would remain available through inetd. However, if the telnetd...

7.7AI Score

0.002EPSS

2022-08-30 12:00 AM
3
cvelist
cvelist

CVE-2002-2245

ftpd in NetBSD 1.5 through 1.5.3 and 1.6 does not properly quote a digit in response to a STAT command for a filename that contains a carriage return followed by a digit, which can cause firewalls and other intermediary devices to lose proper track of the FTP...

6.7AI Score

0.001EPSS

2022-10-03 04:23 PM
cve
cve

CVE-2002-2245

ftpd in NetBSD 1.5 through 1.5.3 and 1.6 does not properly quote a digit in response to a STAT command for a filename that contains a carriage return followed by a digit, which can cause firewalls and other intermediary devices to lose proper track of the FTP...

7.1AI Score

0.001EPSS

2022-10-03 04:23 PM
23
cve
cve

CVE-2005-2134

The (1) clcs and (2) emuxki drivers in NetBSD 1.6 through 2.0.2 allow local users to cause a denial of service (kernel crash) by using the set-parameters ioctl on an audio device to change the block size and set the pause state to "unpaused" in the same ioctl, which causes a divide-by-zero...

6.6AI Score

0.0004EPSS

2022-10-03 04:22 PM
20
cvelist
cvelist

CVE-2005-2134

The (1) clcs and (2) emuxki drivers in NetBSD 1.6 through 2.0.2 allow local users to cause a denial of service (kernel crash) by using the set-parameters ioctl on an audio device to change the block size and set the pause state to "unpaused" in the same ioctl, which causes a divide-by-zero...

6.3AI Score

0.0004EPSS

2022-10-03 04:22 PM
cve
cve

CVE-2005-4741

NetBSD 1.6, NetBSD 2.0 through 2.1, and NetBSD-current before 20051031 allows local users to gain privileges by attaching a debugger to a setuid/setgid (P_SUGID) process that performs an exec without a reset of real...

7AI Score

0.004EPSS

2022-10-03 04:22 PM
23
Total number of security vulnerabilities2307