Vulnerability index

Browse CVEs

387 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

FreeBSD MEDIUM 5.0
CVE-2001-0796

SGI IRIX 6.5 through 6.5.12f and possibly earlier versions, and FreeBSD 3.0, allows remote attackers to cause a denial of service via a malformed IGM…

Fix: after 6.5.12f
Fix from $1,600 2001-12-06
FreeBSD HIGH 7.5
CVE-2001-0670EPSS 7%

Buffer overflow in BSD line printer daemon (in.lpd or lpd) in various BSD-based operating systems allows remote attackers to execute arbitrary code v…

Fix: after 4.3
Fix from $1,950 2001-10-03
FreeBSD HIGH 7.2
CVE-2001-1034

Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for …

Mitigation only
Fix from $1,950 2001-09-23
FreeBSD MEDIUM 5.0
CVE-2001-0710

NetBSD 1.5 and earlier and FreeBSD 4.3 and earlier allows a remote attacker to cause a denial of service by sending a large number of IP fragments to…

Fix: after 4.3
Fix from $1,600 2001-09-20
FreeBSD HIGH 7.2
CVE-2001-1017

rmuser utility in FreeBSD 4.2 and 4.3 creates a copy of the master.passwd file with world-readable permissions while updating the original file, whic…

Patch available
Fix from $1,950 2001-09-04
FreeBSD HIGH 10.0
CVE-2001-0969

ipfw in FreeBSD does not properly handle the use of "me" in its rules when point to point interfaces are used, which causes ipfw to allow connections…

Patch available
Fix from $1,950 2001-08-31
FreeBSD CRITICAL 9.8
CVE-2001-1155

TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS loo…

Fix: after 4.3
Fix from $2,300 2001-08-23
FreeBSD MEDIUM 5.0
CVE-2001-1166

linprocfs on FreeBSD 4.3 and earlier does not properly restrict access to kernel memory, which allows one process with debugging rights on a privileg…

Patch available
Fix from $1,600 2001-08-21
FreeBSD MEDIUM 6.2
CVE-2001-1145

fts routines in FreeBSD 4.3 and earlier, NetBSD before 1.5.2, and OpenBSD 2.9 and earlier can be forced to change (chdir) into a different directory …

Fix: after 2.9
Fix from $1,600 2001-08-17
FreeBSD HIGH 10.0
CVE-2001-0554EPSS 38%

Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of op…

Patch available
Fix from $1,950 2001-08-14
FreeBSD HIGH 7.2
CVE-2001-1180

FreeBSD 4.3 does not properly clear shared signal handlers when executing a process, which allows local users to gain privileges by calling rfork wit…

Patch available
Fix from $1,950 2001-07-10
FreeBSD MEDIUM 5.0
CVE-2001-1244EPSS 21%

Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment …

No fix yet
Fix from $1,600 2001-07-07
FreeBSD HIGH 7.2
CVE-2001-0424

BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kme…

Patch available
Fix from $1,950 2001-07-02
FreeBSD HIGH 10.0
CVE-2001-0388

time server daemon timed allows remote attackers to cause a denial of service via malformed packets.

Fix: after 4.1
Fix from $1,950 2001-06-27
FreeBSD MEDIUM 5.0
CVE-2001-0469

rwho daemon rwhod in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service via malforme…

Fix: after 4.2
Fix from $1,600 2001-06-27
FreeBSD HIGH 10.0
CVE-2001-0247EPSS 19%

Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, a…

Patch available
Fix from $1,950 2001-06-18
FreeBSD HIGH 7.5
CVE-2001-0402

IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers to bypass access restrictions…

Fix: after 4.1
Fix from $1,950 2001-06-18
FreeBSD MEDIUM 6.2
CVE-2001-0371

Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to u…

Fix: after 4.2
Fix from $1,600 2001-06-18
Ja Xklock HIGH 7.2
CVE-2001-0221

Buffer overflow in ja-xklock 2.7.1 and earlier allows local users to gain root privileges.

Fix: after 2.7.1
Fix from $1,950 2001-06-02
FreeBSD MEDIUM 5.0
CVE-2001-0196

inetd ident server in FreeBSD 4.x and earlier does not properly set group permissions, which allows remote attackers to read the first 16 bytes of fi…

Patch available
Fix from $1,600 2001-05-03
FreeBSD HIGH 7.5
CVE-2001-0183EPSS 8%

ipfw and ip6fw in FreeBSD 4.2 and earlier allows remote attackers to bypass access restrictions by setting the ECE flag in a TCP packet, which makes …

Patch available
Fix from $1,950 2001-03-26
FreeBSD HIGH 7.2
CVE-2001-0061

procfs in FreeBSD and possibly other operating systems does not properly restrict access to per-process mem and ctl files, which allows local users t…

Patch available
Fix from $1,950 2001-02-12
FreeBSD HIGH 7.2
CVE-2001-0063

procfs in FreeBSD and possibly other operating systems allows local users to bypass access control restrictions for a jail environment and gain addit…

Patch available
Fix from $1,950 2001-02-12
FreeBSD HIGH 7.2
CVE-2001-0093

Vulnerability in telnetd in FreeBSD 1.5 allows local users to gain root privileges by modifying critical environmental variables that affect the beha…

Mitigation only
Fix from $1,950 2001-02-12
FreeBSD HIGH 7.2
CVE-2001-0094

Buffer overflow in kdc_reply_cipher of libkrb (Kerberos 4 authentication library) in NetBSD 1.5 and FreeBSD 4.2 and earlier, as used in Kerberised ap…

Patch available
Fix from $1,950 2001-02-12
FreeBSD HIGH 7.5
CVE-2000-1167

ppp utility in FreeBSD 4.1.1 and earlier does not properly restrict access as specified by the "nat deny_incoming" command, which allows remote attac…

Patch available
Fix from $1,950 2001-01-09
FreeBSD MEDIUM 5.0
CVE-2000-1184

telnetd in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service by specifying an arbit…

Patch available
Fix from $1,600 2001-01-09
FreeBSD HIGH 7.5
CVE-2000-0916EPSS 6%

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (…

Patch available
Fix from $1,950 2000-12-19
FreeBSD HIGH 7.2
CVE-2000-0963

Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.

Fix: 5.6+
Fix from $1,950 2000-12-19
FreeBSD HIGH 7.2
CVE-2000-0993

Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in comman…

Patch available
Fix from $1,950 2000-12-19