Vulnerability index

Browse CVEs

179 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

FreeBSD HIGH 7.5
CVE-2016-1888

The telnetd service in FreeBSD 9.3, 10.1, 10.2, 10.3, and 11.0 allows remote attackers to inject arguments to login and bypass authentication via vec…

Mitigation only
Fix from $1,950 2017-02-15
FreeBSD HIGH 7.8
CVE-2016-1887

Integer signedness error in the sockargs function in sys/kern/uipc_syscalls.c in FreeBSD 10.1 before p34, 10.2 before p17, and 10.3 before p3 allows …

No fix yet
Fix from $1,950 2016-05-25
FreeBSD MEDIUM 6.2
CVE-2016-1885

Integer signedness error in the amd64_set_ldt function in sys/amd64/amd64/sys_machdep.c in FreeBSD 9.3 before p39, 10.1 before p31, and 10.2 before p…

No fix yet
Fix from $1,600 2016-04-12
FreeBSD HIGH 7.5
CVE-2016-1879EPSS 13%

The Stream Control Transmission Protocol (SCTP) module in FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9, when the kernel is configured …

No fix yet
Fix from $1,950 2016-01-29
FreeBSD HIGH 7.8
CVE-2014-8613

The sctp module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allows remote attackers to cause a denial of service (N…

Mitigation only
Fix from $1,950 2015-02-02
FreeBSD HIGH 7.2
CVE-2014-0998

Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denia…

No fix yet
Fix from $1,950 2015-02-02
FreeBSD MEDIUM 5.0
CVE-2014-7250

The TCP stack in 4.3BSD Net/2, as used in FreeBSD 5.4, NetBSD possibly 2.0, and OpenBSD possibly 3.6, does not properly implement the session timer, …

Mitigation only
Fix from $1,600 2014-12-12
FreeBSD MEDIUM 5.0
CVE-2014-3951

The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (NULL …

Mitigation only
Fix from $1,600 2014-08-21
FreeBSD MEDIUM 5.0
CVE-2014-5384

The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out…

Mitigation only
Fix from $1,600 2014-08-21
FreeBSD HIGH 7.8
CVE-2014-3000EPSS 13%

The TCP reassembly function in the inet module in FreeBSD 8.3 before p16, 8.4 before p9, 9.1 before p12, 9.2 before p5, and 10.0 before p2 allows rem…

Mitigation only
Fix from $1,950 2014-05-02
FreeBSD MEDIUM 5.8
CVE-2014-3001

The device file system (aka devfs) in FreeBSD 10.0 before p2 does not load default rulesets when booting, which allows context-dependent attackers to…

Mitigation only
Fix from $1,600 2014-05-02
FreeBSD MEDIUM 5.8
CVE-2014-1452

Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers to cause a denial of service (…

Mitigation only
Fix from $1,600 2014-01-21
FreeBSD MEDIUM 6.4
CVE-2013-4851

The vfs_hang_addrlist function in sys/kern/vfs_export.c in the NFS server implementation in the kernel in FreeBSD 8.3 and 9.x through 9.1-RELEASE-p5 …

Mitigation only
Fix from $1,600 2013-07-29
FreeBSD HIGH 7.8
CVE-2013-4854EPSS 34%

The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3…

Mitigation only
Fix from $1,950 2013-07-29
FreeBSD MEDIUM 6.9
CVE-2013-2171EPSS 7%

The vm_map_lookup function in sys/vm/vm_map.c in the mmap implementation in the kernel in FreeBSD 9.0 through 9.1-RELEASE-p4 does not properly determ…

Mitigation only
Fix from $1,600 2013-07-02
FreeBSD HIGH 7.8
CVE-2012-3549EPSS 8%

The SCTP implementation in FreeBSD 8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted…

No fix yet
Fix from $1,950 2012-10-09
Libarchive HIGH 7.5
CVE-2010-4666

Buffer overflow in libarchive 3.0 pre-release code allows remote attackers to cause a denial of service (application crash) or possibly have unspecif…

Mitigation only
Fix from $1,950 2012-04-13
Libarchive HIGH 7.5
CVE-2011-1779

Multiple use-after-free vulnerabilities in libarchive 2.8.4 and 2.8.5 allow remote attackers to cause a denial of service (application crash) or poss…

Mitigation only
Fix from $1,950 2012-04-13
FreeBSD HIGH 7.8
CVE-2011-2393

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD, NetBSD, and possibly other BSD-based operating systems allows remot…

Mitigation only
Fix from $1,950 2012-02-02
FreeBSD MEDIUM 6.9
CVE-2011-4122

Directory traversal vulnerability in openpam_configure.c in OpenPAM before r478 on FreeBSD 8.1 allows local users to load arbitrary DSOs and gain pri…

No fix yet
Fix from $1,600 2011-11-17
FreeBSD MEDIUM 6.9
CVE-2010-2020

sys/nfsclient/nfs_vfsops.c in the NFS client in the kernel in FreeBSD 7.2 through 8.1-PRERELEASE, when vfs.usermount is enabled, does not validate th…

No fix yet
Fix from $1,600 2010-05-28
FreeBSD HIGH 7.2
CVE-2009-1041

The ktimer feature (sys/kern/kern_time.c) in FreeBSD 7.0, 7.1, and 7.2 allows local users to overwrite arbitrary kernel memory via an out-of-bounds t…

No fix yet
Fix from $1,950 2009-03-26
FreeBSD HIGH 7.2
CVE-2008-5736

Multiple unspecified vulnerabilities in FreeBSD 6 before 6.4-STABLE, 6.3 before 6.3-RELEASE-p7, 6.4 before 6.4-RELEASE-p1, 7.0 before 7.0-RELEASE-p7,…

No fix yet
Fix from $1,950 2008-12-26
Freebsd Sendpr MEDIUM 6.9
CVE-2008-5142

sendbug in freebsd-sendpr 3.113+5.3 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on a /tmp/pr.##### tempo…

Mitigation only
Fix from $1,600 2008-11-18
FreeBSD HIGH 7.5
CVE-2008-4247

ftpd in OpenBSD 4.3, FreeBSD 7.0, NetBSD 4.0, Solaris, and possibly other operating systems interprets long commands from an FTP client as multiple c…

No fix yet
Fix from $1,950 2008-09-25
FreeBSD HIGH 7.1
CVE-2008-2464

The mld_input function in sys/netinet6/mld6.c in the kernel in NetBSD 4.0, FreeBSD, and KAME, when INET6 is enabled, allows remote attackers to cause…

No fix yet
Fix from $1,950 2008-09-11
FreeBSD HIGH 7.2
CVE-2008-3890

The kernel in FreeBSD 6.3 through 7.0 on amd64 platforms can make an extra swapgs call after a General Protection Fault (GPF), which allows local use…

Mitigation only
Fix from $1,950 2008-09-05
FreeBSD HIGH 7.5
CVE-2008-1391EPSS 19%

Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent atta…

No fix yet
Fix from $1,950 2008-03-27
FreeBSD MEDIUM 6.6
CVE-2007-0267

The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly co…

Mitigation only
Fix from $1,600 2007-01-17
FreeBSD HIGH 7.2
CVE-2007-0229

Integer overflow in the ffs_mountfs function in Mac OS X 10.4.8 and FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly …

No fix yet
Fix from $1,950 2007-01-13