Lucene search

K

FreeBSD Security Vulnerabilities

cve
cve

CVE-2001-0128

Zope before 2.2.4 does not properly compute local roles, which could allow users to bypass specified access restrictions and gain...

6.6AI Score

0.001EPSS

2001-05-07 04:00 AM
17
cve
cve

CVE-2001-0063

procfs in FreeBSD and possibly other operating systems allows local users to bypass access control restrictions for a jail environment and gain additional...

7AI Score

0.0004EPSS

2001-05-07 04:00 AM
19
cve
cve

CVE-2001-0062

procfs in FreeBSD and possibly other operating systems allows local users to cause a denial of service by calling mmap on the process' own mem file, which causes the kernel to...

6.6AI Score

0.0004EPSS

2001-05-07 04:00 AM
21
cve
cve

CVE-2000-0375

The kernel in FreeBSD 3.2 follows symbolic links when it creates core dump files, which allows local attackers to modify arbitrary...

6.7AI Score

0.001EPSS

2001-05-07 04:00 AM
25
cve
cve

CVE-2001-0061

procfs in FreeBSD and possibly other operating systems does not properly restrict access to per-process mem and ctl files, which allows local users to gain root privileges by forking a child process and executing a privileged process from the child, while the parent retains access to the child's...

7AI Score

0.0004EPSS

2001-05-07 04:00 AM
20
cve
cve

CVE-2000-0890

periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary files via a symlink...

6.5AI Score

0.0004EPSS

2001-05-07 04:00 AM
21
cve
cve

CVE-2001-0093

Vulnerability in telnetd in FreeBSD 1.5 allows local users to gain root privileges by modifying critical environmental variables that affect the behavior of...

7AI Score

0.0004EPSS

2001-02-12 05:00 AM
24
cve
cve

CVE-2000-0993

Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or...

6.9AI Score

0.0004EPSS

2001-01-22 05:00 AM
22
cve
cve

CVE-2000-0729

FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image...

6.6AI Score

0.0004EPSS

2001-01-22 05:00 AM
18
cve
cve

CVE-2000-1184

telnetd in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service by specifying an arbitrary large file in the TERMCAP environmental variable, which consumes resources as the server processes the...

7.3AI Score

0.008EPSS

2001-01-22 05:00 AM
27
cve
cve

CVE-2000-0749

Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file...

7.3AI Score

0.0004EPSS

2001-01-22 05:00 AM
24
cve
cve

CVE-2000-0915

fingerd in FreeBSD 4.1.1 allows remote attackers to read arbitrary files by specifying the target file name instead of a regular user...

6.7AI Score

0.007EPSS

2001-01-22 05:00 AM
20
cve
cve

CVE-2000-1011

Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental...

7.3AI Score

0.0004EPSS

2001-01-22 05:00 AM
18
cve
cve

CVE-2000-1167

ppp utility in FreeBSD 4.1.1 and earlier does not properly restrict access as specified by the "nat deny_incoming" command, which allows remote attackers to connect to the target...

7.1AI Score

0.009EPSS

2001-01-22 05:00 AM
30
cve
cve

CVE-2000-0852

Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root...

7.3AI Score

0.0004EPSS

2001-01-22 05:00 AM
29
cve
cve

CVE-2000-0916

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP...

7.6AI Score

0.003EPSS

2000-12-19 05:00 AM
58
cve
cve

CVE-2000-1013

The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental...

6.8AI Score

0.0004EPSS

2000-12-11 05:00 AM
20
cve
cve

CVE-2000-1012

The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental...

6.8AI Score

0.0004EPSS

2000-12-11 05:00 AM
27
cve
cve

CVE-2000-0998

Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice"...

7AI Score

0.0004EPSS

2000-12-11 05:00 AM
28
cve
cve

CVE-2000-1066

The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS...

7AI Score

0.008EPSS

2000-12-11 05:00 AM
26
cve
cve

CVE-2000-0752

Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line...

7.2AI Score

0.0004EPSS

2000-10-20 04:00 AM
25
cve
cve

CVE-2000-0440

NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP timestamp...

7AI Score

0.032EPSS

2000-10-13 04:00 AM
27
cve
cve

CVE-2000-0532

A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise...

7.2AI Score

0.009EPSS

2000-10-13 04:00 AM
19
cve
cve

CVE-2000-0594

BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting...

7AI Score

0.137EPSS

2000-10-13 04:00 AM
29
cve
cve

CVE-1999-0912

FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of...

6.6AI Score

0.0004EPSS

2000-10-13 04:00 AM
29
cve
cve

CVE-2000-0584

Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group...

7.9AI Score

0.084EPSS

2000-10-13 04:00 AM
18
cve
cve

CVE-2000-0595

libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another...

7.5AI Score

0.0004EPSS

2000-10-13 04:00 AM
25
cve
cve

CVE-1999-0823

Buffer overflow in FreeBSD xmindpath allows local users to gain privileges via -f...

7.2AI Score

0.0004EPSS

2000-10-13 04:00 AM
39
cve
cve

CVE-1999-0826

Buffer overflow in FreeBSD angband allows local users to gain...

7.2AI Score

0.0004EPSS

2000-10-13 04:00 AM
25
cve
cve

CVE-1999-0761

Buffer overflow in FreeBSD fts library routines allows local user to modify arbitrary files via the periodic...

7.1AI Score

0.0004EPSS

2000-09-16 04:00 AM
21
cve
cve

CVE-2000-0461

The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig...

6.6AI Score

0.0004EPSS

2000-07-12 04:00 AM
19
cve
cve

CVE-2000-0535

OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily...

6.5AI Score

0.003EPSS

2000-07-12 04:00 AM
25
cve
cve

CVE-2000-0092

The BSD make program allows local users to modify files via a symlink attack when the -j option is being...

6.6AI Score

0.0004EPSS

2000-07-12 04:00 AM
20
cve
cve

CVE-1999-0820

FreeBSD seyon allows users to gain privileges via a modified PATH variable for finding the xterm and seyon-emu...

7.1AI Score

0.0004EPSS

2000-07-12 04:00 AM
25
cve
cve

CVE-2000-0235

Buffer overflow in the huh program in the orville-write package allows local users to gain root...

7.2AI Score

0.0004EPSS

2000-06-02 04:00 AM
23
cve
cve

CVE-1999-1008

xsoldier program allows local users to gain root access via a long...

6.9AI Score

0.0004EPSS

2000-05-17 04:00 AM
27
cve
cve

CVE-2000-0186

Buffer overflow in the dump utility in the Linux ext2fs backup package allows local users to gain privileges via a long command line...

7.3AI Score

0.0004EPSS

2000-04-10 04:00 AM
24
cve
cve

CVE-1999-0964

Buffer overflow in FreeBSD setlocale in the libc module allows attackers to execute arbitrary code via a long PATH_LOCALE environment...

8.1AI Score

0.0004EPSS

2000-03-22 05:00 AM
27
cve
cve

CVE-2000-0163

asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration...

7AI Score

0.0004EPSS

2000-02-23 05:00 AM
21
cve
cve

CVE-1999-0855

Buffer overflow in FreeBSD gdc...

7.3AI Score

0.0004EPSS

2000-02-04 05:00 AM
30
cve
cve

CVE-1999-0863

Buffer overflow in FreeBSD seyon via HOME environmental variable, -emulator argument, -modems argument, or the...

7.3AI Score

0.0004EPSS

2000-02-04 05:00 AM
27
cve
cve

CVE-1999-0001

ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted...

9.2AI Score

0.004EPSS

2000-02-04 05:00 AM
172
3
cve
cve

CVE-1999-0857

FreeBSD gdc program allows local users to modify files via a symlink...

6.6AI Score

0.0004EPSS

2000-02-04 05:00 AM
22
cve
cve

CVE-1999-0821

FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator...

6.9AI Score

0.0004EPSS

2000-02-04 05:00 AM
24
cve
cve

CVE-1999-0703

OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block...

6.9AI Score

0.001EPSS

2000-01-04 05:00 AM
20
cve
cve

CVE-1999-0704

Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and...

7.3AI Score

0.01EPSS

2000-01-04 05:00 AM
24
cve
cve

CVE-1999-0963

FreeBSD mount_union command allows local users to gain root privileges via a symlink...

7.1AI Score

0.0004EPSS

2000-01-04 05:00 AM
26
cve
cve

CVE-1999-0405

A buffer overflow in lsof allows local users to obtain root...

7.1AI Score

0.0004EPSS

1999-09-29 04:00 AM
30
Total number of security vulnerabilities498