Skip to main content

Vendor archive

freebsd CVEs

Beta · best-effort

542 CVEs tagged to vendor freebsd55 Critical, 224 High, 204 Medium, 59 Low, 0 Unrated.

CVE-2008-5142

Published Nov 18, 2008

sendbug in freebsd-sendpr 3.113+5.3 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on a /tmp/pr.##### temporary file.

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2464

Published Sep 11, 2008

The mld_input function in sys/netinet6/mld6.c in the kernel in NetBSD 4.0, FreeBSD, and KAME, when INET6 is enabled, allows remote attackers to cause a denial of service (divide-b…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3530

Published Sep 5, 2008

sys/netinet6/icmp6.c in the kernel in FreeBSD 6.3 through 7.1, NetBSD 3.0 through 4.0, and possibly other operating systems does not properly check the proposed new MTU in an ICMP…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3531

Published Sep 5, 2008

Stack-based buffer overflow in sys/kern/vfs_mount.c in the kernel in FreeBSD 7.0 and 7.1, when vfs.usermount is enabled, allows local users to gain privileges via a crafted (1) mo…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3890

Published Sep 5, 2008

The kernel in FreeBSD 6.3 through 7.0 on amd64 platforms can make an extra swapgs call after a General Protection Fault (GPF), which allows local users to gain privileges by trigg…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-1391

Published Mar 27, 2008

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary cod…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0777

Published Feb 15, 2008

The sendfile system call in FreeBSD 5.5 through 7.0 does not check the access flags of the file descriptor used for sending a file, which allows local users to read the contents o…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0122

Published Jan 16, 2008

Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers t…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-0216

Published Jan 16, 2008

The ptsname function in FreeBSD 6.0 through 7.0-PRERELEASE does not properly verify that a certain portion of a device name is associated with a pty of a user who is calling the p…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-0217

Published Jan 16, 2008

The script program in FreeBSD 5.0 through 7.0-PRERELEASE invokes openpty, which creates a pseudo-terminal with world-readable and world-writable permissions when it is not run as…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6150

Published Nov 30, 2007

The "internal state tracking" code for the random and urandom devices in FreeBSD 5.5, 6.1 through 6.3, and 7.0 beta 4 allows local users to obtain portions of previously-accessed…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2007-4303

Published Aug 13, 2007

Multiple race conditions in (1) certain rules and (2) argument copying during VM protection, in CerbNG for FreeBSD 4.8 allow local users to defeat system call interposition and po…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4304

Published Aug 13, 2007

CerbNG for FreeBSD 4.8 does not properly implement VM protection when attempting to prevent system call wrapper races, which allows local users to have an unknown impact related t…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-3645

Published Jul 15, 2007

archive_read_support_format_tar.c in libarchive before 2.2.4 allows user-assisted remote attackers to cause a denial of service (crash) via (1) an end-of-file condition within a t…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-3641

Published Jul 14, 2007

archive_read_support_format_tar.c in libarchive before 2.2.4 does not properly compute the length of a certain buffer when processing a malformed pax extension header, which allow…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 326-350 of 542 CVEsPage 14 of 22