Vulnerability index

Browse CVEs

176 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

OpenBSD HIGH 7.5
CVE-2022-27882

slaacd in OpenBSD 6.9 and 7.0 before 2022-03-22 has an integer signedness error and resultant heap-based buffer overflow triggerable by a crafted IPv…

Patch available
Fix from $1,950 2022-03-25
OpenBSD HIGH 7.5
CVE-2022-27881

engine.c in slaacd in OpenBSD 6.9 and 7.0 before 2022-02-21 has a buffer overflow triggerable by an IPv6 router advertisement with more than seven na…

Patch available
Fix from $1,950 2022-03-25
Libressl MEDIUM 5.5
CVE-2021-41581

x509_constraints_parse_mailbox in lib/libcrypto/x509/x509_constraints.c in LibreSSL through 3.4.0 has a stack-based buffer over-read. When the input …

Fix: after 3.4.0
Fix from $1,600 2021-09-24
Openssh MEDIUM 5.3
CVE-2016-20012EPSS 5%

OpenSSH through 8.7 allows remote attackers, who have a suspicion that a certain combination of username and public key is known to an SSH server, to…

Fix: after 8.7
Fix from $1,600 2021-09-15
Libressl HIGH 7.1
CVE-2019-25048

LibreSSL 2.9.1 through 3.2.1 has a heap-based buffer over-read in do_print_ex (called from asn1_item_print_ctx and ASN1_item_print).

Fix: after 3.2.1
Fix from $1,950 2021-07-01
Libressl HIGH 7.1
CVE-2019-25049

LibreSSL 2.9.1 through 3.2.1 has an out-of-bounds read in asn1_item_print_ctx (called from asn1_template_print_ctx).

Fix: after 3.2.1
Fix from $1,950 2021-07-01
OpenBSD HIGH 7.5
CVE-2010-4816

It was found in FreeBSD 8.0, 6.3 and 4.9, and OpenBSD 4.6 that a null pointer dereference in ftpd/popen.c may lead to remote denial of service of the…

No fix yet
Fix from $1,950 2021-06-22
OpenBSD MEDIUM 5.3
CVE-2020-26142

An issue was discovered in the kernel in OpenBSD 6.6. The WEP, WPA, WPA2, and WPA3 implementations treat fragmented frames as full frames. An adversa…

Mitigation only
Fix from $1,600 2021-05-11
OpenBSD CRITICAL 9.8
CVE-2020-16088

iked in OpenIKED, as used in OpenBSD through 6.7, allows authentication bypass because ca.c has the wrong logic for checking whether a public key mat…

Fix: after 6.7
Fix from $2,300 2020-07-28
Openssh HIGH 7.4
CVE-2020-15778EPSS 13%

scp in OpenSSH through 8.3p1 allows command injection in the scp.c toremote function, as demonstrated by backtick characters in the destination argum…

Fix: 8.3+
Fix from $1,950 2020-07-24
Openssh MEDIUM 5.9
CVE-2020-14145

The client side in OpenSSH 5.7 through 8.4 has an Observable Discrepancy leading to an information leak in the algorithm negotiation. This allows man…

Fix: 8.4+
Fix from $1,600 2020-06-29
Openssh HIGH 7.5
CVE-2020-12062

The scp client in OpenSSH 8.2 incorrectly sends duplicate responses to the server upon a utimes system call failure, which allows a malicious unprivi…

Patch available
Fix from $1,950 2020-06-01
Libressl HIGH 7.5
CVE-2015-5333

Memory leak in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (memory consumption) via a larg…

Fix: 2.3.1+
Fix from $1,950 2020-01-23
Libressl CRITICAL 9.8
CVE-2015-5334

Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (program crash) or possibl…

Fix: 2.3.1+
Fix from $2,300 2020-01-23
Textproc\/isearch HIGH 7.5
CVE-2012-5663

The isearch package (textproc/isearch) before 1.47.01nb1 uses the tempnam() function to create insecure temporary files into a publicly-writable area…

Fix: 1.47.01nb1+
Fix from $1,950 2019-12-30
OpenBSD HIGH 7.8
CVE-2019-19726

OpenBSD through 6.6 allows local users to escalate to root because a check for LD_LIBRARY_PATH in setuid programs can be defeated by setting a very s…

Fix: after 6.6
Fix from $1,950 2019-12-12
OpenBSD CRITICAL 9.8
CVE-2019-19521

libc in OpenBSD 6.6 allows authentication bypass via the -schallenge username, as demonstrated by smtpd, ldapd, or radiusd. This is related to gen/au…

No fix yet
Fix from $2,300 2019-12-05
OpenBSD HIGH 7.8
CVE-2019-19519

In OpenBSD 6.6, local users can use the su -L option to achieve any login class (often excluding root) because there is a logic error in the main fun…

No fix yet
Fix from $1,950 2019-12-05
OpenBSD HIGH 7.8
CVE-2019-19520

xlock in OpenBSD 6.6 allows local users to gain the privileges of the auth group by providing a LIBGL_DRIVERS_PATH environment variable, because xeno…

No fix yet
Fix from $1,950 2019-12-05
OpenBSD HIGH 7.8
CVE-2019-19522

OpenBSD 6.6, in a non-default configuration where S/Key or YubiKey authentication is enabled, allows local users to become root by leveraging members…

No fix yet
Fix from $1,950 2019-12-05
Openssh HIGH 7.8
CVE-2019-16905

OpenSSH 7.7 through 7.9 and 8.x before 8.1, when compiled with an experimental key type, has a pre-authentication integer overflow if a client or ser…

Fix: 3.2.7 / 8.1+
Fix from $1,950 2019-10-09
OpenBSD HIGH 7.5
CVE-2019-8460

OpenBSD kernel version <= 6.5 can be forced to create long chains of TCP SACK holes that causes very expensive calls to tcp_sack_option() for every i…

Fix: after 6.5
Fix from $1,950 2019-08-26
Openssh MEDIUM 6.8
CVE-2019-6110EPSS 21%

In OpenSSH 7.9, due to accepting and displaying arbitrary stderr output from the server, a malicious server (or Man-in-The-Middle attacker) can manip…

Fix: 3.2.7+
Fix from $1,600 2019-01-31
Openssh MEDIUM 5.3
CVE-2018-15919

Remotely observable behaviour in auth-gss2.c in OpenSSH through 7.8 could be used by remote attackers to detect existence of users on a target system…

Fix: after 7.8
Fix from $1,600 2018-08-28
OpenBSD MEDIUM 5.5
CVE-2018-14775

tss_alloc in sys/arch/i386/i386/gdt.c in OpenBSD 6.2 and 6.3 has a Local Denial of Service (system crash) due to incorrect I/O port access control on…

Patch available
Fix from $1,600 2018-08-01
Libressl HIGH 7.4
CVE-2018-8970

The int_x509_param_set_hosts function in lib/libcrypto/x509/x509_vpm.c in LibreSSL 2.7.0 before 2.7.1 does not support a certain special case of a ze…

Patch available
Fix from $1,950 2018-03-24
OpenBSD CRITICAL 9.8
CVE-2017-1000372

A flaw exists in OpenBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution using setu…

Fix: after 6.1
Fix from $2,300 2017-06-19
OpenBSD MEDIUM 6.5
CVE-2017-1000373EPSS 13%

The OpenBSD qsort() function is recursive, and not randomized, an attacker can construct a pathological input array of N elements that causes qsort()…

Fix: after 6.1
Fix from $1,600 2017-06-19
Libressl MEDIUM 5.3
CVE-2017-8301

LibreSSL 2.5.1 to 2.5.3 lacks TLS certificate verification if SSL_get_verify_result is relied upon for a later check of a verification result, in a u…

Patch available
Fix from $1,600 2017-04-27
OpenBSD HIGH 7.5
CVE-2017-5850EPSS 17%

httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via a series of requests for a large file using an HTTP Ra…

Patch available
Fix from $1,950 2017-03-27