|
191
|
-
4.6
|
MEDIUM
|
Multiple array index errors in the Stream Control Transmission Protocol (SCTP) module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allow local users to (1) gain privi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-8612
|
cpe:2.3:o:freebsd:freebsd:9.3:* cpe:2.3:o:freebsd:freebsd:8.4:* cpe:2.3:o:freebsd:freebsd:10.1:* cpe:2.3:o:fre…
|
|
|
|
|
2024-11-21 11:19
2015-02-3
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
192
|
-
7.2
|
HIGH
|
Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denial of service (crash) and possibly gain privileges …
|
CWE-189
Numeric Errors
|
CVE-2014-0998
|
cpe:2.3:o:freebsd:freebsd:10.1:*
|
|
|
|
|
2024-11-21 11:03
2015-02-3
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
193
|
-
5.0
|
MEDIUM
|
The TCP stack in 4.3BSD Net/2, as used in FreeBSD 5.4, NetBSD possibly 2.0, and OpenBSD possibly 3.6, does not properly implement the session timer, which allows remote attackers to cause a denial of…
|
CWE-399
Resource Management Errors
|
CVE-2014-7250
|
cpe:2.3:o:freebsd:freebsd:5.4:*
|
|
|
|
|
2024-11-21 11:16
2014-12-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
194
|
-
4.3
|
MEDIUM
|
FreeBSD 9.1, 9.2, and 10.0, when compiling OpenSSH with Kerberos support, uses incorrect library ordering when linking sshd, which causes symbols to be resolved incorrectly and allows remote attacker…
|
CWE-17
Code
|
CVE-2014-8475
|
cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:10.0:*
|
|
|
|
|
2024-11-21 11:19
2014-11-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195
|
-
2.1
|
LOW
|
The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a ca…
|
CWE-200
Information Exposure
|
CVE-2014-8476
|
cpe:2.3:o:freebsd:freebsd:9.3:* cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 11:19
2014-11-14
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196
|
-
5.0
|
MEDIUM
|
routed in FreeBSD 8.4 through 10.1-RC2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an RIP request from a source not on a directly connected network.
|
CWE-20
Improper Input Validation
|
CVE-2014-3955
|
cpe:2.3:o:freebsd:freebsd:9.3:rc2 cpe:2.3:o:freebsd:freebsd:9.3:rc1 cpe:2.3:o:freebsd:freebsd:9.3:* cpe:2.3:o:…
|
|
|
|
|
2024-11-21 11:09
2014-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197
|
-
10.0
|
HIGH
|
Stack-based buffer overflow in rtsold in FreeBSD 9.1 through 10.1-RC2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted DNS parameters in a r…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3954
|
cpe:2.3:o:freebsd:freebsd:9.3:rc2 cpe:2.3:o:freebsd:freebsd:9.3:rc1 cpe:2.3:o:freebsd:freebsd:9.3:* cpe:2.3:o:…
|
|
|
|
|
2024-11-21 11:09
2014-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198
|
-
5.0
|
MEDIUM
|
namei in FreeBSD 9.1 through 10.1-RC2 allows remote attackers to cause a denial of service (memory exhaustion) via vectors that trigger a sandboxed process to look up a large number of nonexistent pa…
|
CWE-399
Resource Management Errors
|
CVE-2014-3711
|
cpe:2.3:o:freebsd:freebsd:9.3:rc2 cpe:2.3:o:freebsd:freebsd:9.3:rc1 cpe:2.3:o:freebsd:freebsd:9.3:* cpe:2.3:o:…
|
|
|
|
|
2024-11-21 11:08
2014-10-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199
|
-
5.0
|
MEDIUM
|
The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out-of-bounds array access) via a crafted argument to…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-5384
|
cpe:2.3:o:freebsd:freebsd:10.0:*
|
|
|
|
|
2024-11-21 11:11
2014-08-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200
|
-
5.0
|
MEDIUM
|
The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted argument to the…
|
NVD-CWE-Other
|
CVE-2014-3951
|
cpe:2.3:o:freebsd:freebsd:10.0:*
|
|
|
|
|
2024-11-21 11:09
2014-08-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|