|
201
|
-
4.9
|
MEDIUM
|
FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize certain data structures, which allows local users to obtain sensitive information from kernel m…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3953
|
cpe:2.3:o:freebsd:freebsd:9.2:- cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:8.4:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 11:09
2014-07-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
202
|
-
4.9
|
MEDIUM
|
FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer between the header and data of a control message, which allows local users to obtain…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3952
|
cpe:2.3:o:freebsd:freebsd:9.2:- cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:8.4:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 11:09
2014-07-15
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
203
|
-
4.9
|
MEDIUM
|
The (1) execve and (2) fexecve system calls in the FreeBSD kernel 8.4 before p11, 9.1 before p14, 9.2 before p7, and 10.0 before p4 destroys the virtual memory address space and mappings for a proces…
|
CWE-20
Improper Input Validation
|
CVE-2014-3880
|
cpe:2.3:o:freebsd:freebsd:9.2:- cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:8.4:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 11:09
2014-06-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
204
|
-
2.1
|
LOW
|
The ktrace utility in the FreeBSD kernel 8.4 before p11, 9.1 before p14, 9.2 before p7, and 9.3-BETA1 before p1 uses an incorrect page fault kernel trace entry size, which allows local users to obtai…
|
CWE-20
Improper Input Validation
|
CVE-2014-3873
|
cpe:2.3:o:freebsd:freebsd:9.3:beta1 cpe:2.3:o:freebsd:freebsd:9.2:- cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:…
|
|
|
|
|
2024-11-21 11:09
2014-06-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
205
|
-
1.9
|
LOW
|
The sm_close_on_exec function in conf.c in sendmail before 8.14.9 has arguments in the wrong order, and consequently skips setting expected FD_CLOEXEC flags, which allows local users to access uninte…
|
CWE-200
Information Exposure
|
CVE-2014-3956
|
cpe:2.3:o:freebsd:freebsd:*:-
|
|
9.2
|
|
|
2024-11-21 11:09
2014-06-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
206
|
-
5.8
|
MEDIUM
|
The device file system (aka devfs) in FreeBSD 10.0 before p2 does not load default rulesets when booting, which allows context-dependent attackers to bypass intended restrictions by leveraging a jail…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-3001
|
cpe:2.3:o:freebsd:freebsd:10.0:*
|
|
|
|
|
2024-11-21 11:07
2014-05-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
207
|
-
7.8
|
HIGH
|
The TCP reassembly function in the inet module in FreeBSD 8.3 before p16, 8.4 before p9, 9.1 before p12, 9.2 before p5, and 10.0 before p2 allows remote attackers to cause a denial of service (undefi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3000
|
cpe:2.3:o:freebsd:freebsd:9.2:- cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:8.4:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 11:07
2014-05-2
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208
|
-
4.0
|
MEDIUM
|
The NFS server (nfsserver) in FreeBSD 8.3 through 10.0 does not acquire locks in the proper order when converting a directory file handle to a vnode, which allows remote authenticated users to cause …
|
CWE-399
Resource Management Errors
|
CVE-2014-1453
|
cpe:2.3:o:freebsd:freebsd:9.2:rc2 cpe:2.3:o:freebsd:freebsd:9.2:rc1 cpe:2.3:o:freebsd:freebsd:9.2:prerelease c…
|
|
|
|
|
2024-11-21 11:04
2014-04-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
209
|
-
5.8
|
MEDIUM
|
Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-1452
|
cpe:2.3:o:freebsd:freebsd:9.2:rc2 cpe:2.3:o:freebsd:freebsd:9.2:rc1 cpe:2.3:o:freebsd:freebsd:9.2:prerelease c…
|
|
|
|
|
2024-11-21 11:04
2014-01-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210
|
-
4.9
|
MEDIUM
|
The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from k…
|
CWE-20
Improper Input Validation
|
CVE-2013-6834
|
cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:9.0:* cpe:2.3:o:free…
|
|
10.0
|
|
|
2024-11-21 10:59
2013-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|