VYPR

FreeBSD

by FreeBSD

Source repositories

CVEs (510)

  • CVE-1999-0782Nov 18, 1998
    risk 0.00cvss epss 0.00

    KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable.

  • CVE-1999-0780Nov 18, 1998
    risk 0.00cvss epss 0.00

    KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.

  • CVE-1999-0053Oct 13, 1998
    risk 0.00cvss epss 0.02

    TCP RST denial of service in FreeBSD.

  • CVE-1999-0796May 1, 1998
    risk 0.00cvss epss 0.01

    FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks.

  • CVE-1999-0323Feb 20, 1998
    risk 0.00cvss epss 0.01

    FreeBSD mmap function allows users to modify append-only or immutable files.

  • CVE-1999-0305Feb 1, 1998
    risk 0.00cvss epss 0.01

    The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote…

  • CVE-1999-0304Feb 1, 1998
    risk 0.00cvss epss 0.00

    mmap function in BSD allows local attackers in the kmem group to modify memory through devices.

  • CVE-1999-0017Dec 10, 1997
    risk 0.00cvss epss 0.02

    FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.

  • CVE-1999-0322Oct 29, 1997
    risk 0.00cvss epss 0.00

    The open() function in FreeBSD allows local attackers to write to arbitrary files.

  • CVE-1999-0061Oct 2, 1997
    risk 0.00cvss epss 0.02

    File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).

  • CVE-1999-1214Sep 15, 1997
    risk 0.00cvss epss 0.00

    The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID.

  • CVE-1999-0628Jul 1, 1997
    risk 0.00cvss epss 0.01

    The rwho/rwhod service is running, which exposes machine status and user information.

  • CVE-1999-0037May 21, 1997
    risk 0.00cvss epss 0.04

    Arbitrary command execution via metamail package using message headers, when user processes attacker's message using metamail.

  • CVE-1999-1298Apr 7, 1997
    risk 0.00cvss epss 0.01

    Sysinstall in FreeBSD 2.2.1 and earlier, when configuring anonymous FTP, creates the ftp user without a password and with /bin/date as the shell, which could allow attackers to gain access to certain system resources.

  • CVE-1999-0299Mar 5, 1997
    risk 0.00cvss epss 0.01

    Buffer overflow in FreeBSD lpd through long DNS hostnames.

  • CVE-1999-0345Jan 1, 1997
    risk 0.00cvss epss 0.01

    Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.

  • CVE-1999-1385Dec 19, 1996
    risk 0.00cvss epss 0.00

    Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environment variable.

  • CVE-1999-0297Dec 12, 1996
    risk 0.00cvss epss 0.00

    Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.

  • CVE-1999-0096Dec 10, 1996
    risk 0.00cvss epss 0.01

    Sendmail decode alias can be used to overwrite sensitive files.

  • CVE-1999-0129Dec 3, 1996
    risk 0.00cvss epss 0.01

    Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.

Page 25 of 26