|
211
|
-
4.9
|
MEDIUM
|
The qls_eioctl function in sys/dev/qlxge/qls_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from …
|
CWE-20
Improper Input Validation
|
CVE-2013-6833
|
cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:9.0:* cpe:2.3:o:free…
|
|
10.0
|
|
|
2024-11-21 10:59
2013-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
212
|
-
4.9
|
MEDIUM
|
The nand_ioctl function in sys/dev/nand/nand_geom.c in the nand driver in the kernel in FreeBSD 10 and earlier does not properly initialize a certain data structure, which allows local users to obtai…
|
CWE-200
Information Exposure
|
CVE-2013-6832
|
cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:9.0:* cpe:2.3:o:free…
|
|
10.0
|
|
|
2024-11-21 10:59
2013-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
213
|
-
5.0
|
MEDIUM
|
Integer signedness error in the archive_write_zip_data function in archive_write_set_format_zip.c in libarchive 3.1.2 and earlier, when running on 64-bit machines, allows context-dependent attackers …
|
CWE-189
Numeric Errors
|
CVE-2013-0211
|
cpe:2.3:o:freebsd:freebsd:9.3:*
|
|
|
|
|
2024-11-21 10:47
2013-10-1
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
214
|
-
3.7
|
LOW
|
The nullfs implementation in sys/fs/nullfs/null_vnops.c in the kernel in FreeBSD 8.3 through 9.2 allows local users with certain permissions to bypass access restrictions via a hardlink in a nullfs i…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5710
|
cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:9.0:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 10:57
2013-09-24
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
215
|
-
4.7
|
MEDIUM
|
The sendfile system-call implementation in sys/kern/uipc_syscalls.c in the kernel in FreeBSD 9.2-RC1 and 9.2-RC2 does not properly pad transmissions, which allows local users to obtain sensitive info…
|
CWE-200
Information Exposure
|
CVE-2013-5666
|
cpe:2.3:o:freebsd:freebsd:9.2:rc2 cpe:2.3:o:freebsd:freebsd:9.2:rc1
|
|
|
|
|
2024-11-21 10:57
2013-09-24
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
216
|
-
6.9
|
MEDIUM
|
The (1) IPv6 and (2) ATM ioctl request handlers in the kernel in FreeBSD 8.3 through 9.2-STABLE do not validate SIOCSIFADDR, SIOCSIFBRDADDR, SIOCSIFDSTADDR, and SIOCSIFNETMASK requests, which allows …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-5691
|
cpe:2.3:o:freebsd:freebsd:9.2:* cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:freebsd:freebsd:9.0:* cpe:2.3:o:free…
|
|
|
|
|
2024-11-21 10:57
2013-09-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
217
|
-
7.8
|
HIGH
|
The sctp_send_initiate_ack function in sys/netinet/sctp_output.c in the SCTP implementation in the kernel in FreeBSD 8.3 through 9.2-PRERELEASE does not properly initialize the state-cookie data stru…
|
CWE-200
Information Exposure
|
CVE-2013-5209
|
cpe:2.3:o:freebsd:freebsd:9.2:prerelease cpe:2.3:o:freebsd:freebsd:9.1:p5 cpe:2.3:o:freebsd:freebsd:9.1:p4 cpe…
|
|
|
|
|
2024-11-21 10:57
2013-08-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
218
|
-
7.2
|
HIGH
|
Multiple integer overflows in the IP_MSFILTER and IPV6_MSFILTER features in (1) sys/netinet/in_mcast.c and (2) sys/netinet6/in6_mcast.c in the multicast implementation in the kernel in FreeBSD 8.3 th…
|
CWE-189
Numeric Errors
|
CVE-2013-3077
|
cpe:2.3:o:freebsd:freebsd:9.2:prerelease cpe:2.3:o:freebsd:freebsd:9.1:p5 cpe:2.3:o:freebsd:freebsd:9.1:p4 cpe…
|
|
|
|
|
2024-11-21 10:52
2013-08-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219
|
-
6.4
|
MEDIUM
|
The vfs_hang_addrlist function in sys/kern/vfs_export.c in the NFS server implementation in the kernel in FreeBSD 8.3 and 9.x through 9.1-RELEASE-p5 controls authorization for host/subnet export entr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4851
|
cpe:2.3:o:freebsd:freebsd:9.1:p5 cpe:2.3:o:freebsd:freebsd:9.1:p4 cpe:2.3:o:freebsd:freebsd:9.1:* cpe:2.3:o:fr…
|
|
|
|
|
2024-11-21 10:56
2013-07-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
220
|
-
7.8
|
HIGH
|
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remo…
|
NVD-CWE-noinfo
|
CVE-2013-4854
|
cpe:2.3:o:freebsd:freebsd:9.2:rc2 cpe:2.3:o:freebsd:freebsd:9.2:rc1 cpe:2.3:o:freebsd:freebsd:9.2:prerelease c…
|
|
|
|
|
2024-11-21 10:56
2013-07-29
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|