Search: "openbsd"

165 CVEs found

CVE-1999-0305
5.0 MEDIUM

The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the...

Published: 1998-02-01
Products: 6
Vendors:
bsdi freebsd openbsd

The chpass command in OpenBSD allows a local user to gain root access through file descriptor leakage.

Published: 1998-08-03
Products: 1
Vendors:
openbsd
CVE-1999-0798
10.0 HIGH

Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.

Published: 1998-12-04
Products: 9
Vendors:
bsdi openbsd redhat sco freebsd

Remote attackers can cause a system crash through ipintr() in ipq in OpenBSD.

Published: 1999-02-19
Products: 1
Vendors:
openbsd

Buffer overflow in OpenBSD ping.

Published: 1999-02-23
Products: 1
Vendors:
openbsd

OpenBSD crash using nlink value in FFS and EXT2FS filesystems.

Published: 1999-02-25
Products: 1
Vendors:
openbsd
CVE-1999-0482
5.0 MEDIUM

OpenBSD kernel crash through TSS handling, as caused by the crashme program.

Published: 1999-03-21
Products: 1
Vendors:
openbsd
CVE-1999-0481
5.0 MEDIUM

Denial of service in "poll" in OpenBSD.

Published: 1999-03-22
Products: 1
Vendors:
openbsd

OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block devices.

Published: 1999-08-03
Products: 3
Vendors:
bsdi freebsd openbsd
CVE-1999-0727
5.0 MEDIUM

A kernel leak in the OpenBSD kernel allows IPsec packets to be sent unencrypted.

Published: 1999-08-06
Products: 1
Vendors:
openbsd
CVE-1999-0724
4.6 MEDIUM

Buffer overflow in OpenBSD procfs and fdescfs file systems via uio_offset in the readdir() function.

Published: 1999-08-12
Products: 1
Vendors:
openbsd

FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then w...

Published: 1999-09-05
Products: 20
Vendors:
netbsd freebsd openbsd
CVE-2000-0574
5.0 MEDIUM

FTP servers such as OpenBSD ftpd, NetBSD ftpd, ProFTPd and Opieftpd do not properly cleanse untrusted format strings that are used in the setproctitle function (sometimes called by set_proc_title), wh...

Published: 2000-07-07
Products: 20
Vendors:
washington_university openbsd
CVE-2000-0999
10.0 HIGH

Format string vulnerabilities in OpenBSD ssh program (and possibly other BSD-based operating systems) allow attackers to gain root privileges.

Published: 2000-12-11
Products: 1
Vendors:
openbsd
CVE-2000-1004
4.6 MEDIUM

Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters.

Published: 2000-12-11
Products: 5
Vendors:
openbsd
CVE-2000-1010
10.0 HIGH

Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.

Published: 2000-12-11
Products: 10
Vendors:
redhat openbsd
CVE-2000-0914
5.0 MEDIUM

OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests.

Published: 2000-12-19
Products: 7
Vendors:
openbsd
CVE-2000-0962
5.0 MEDIUM

The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service.

Published: 2000-12-19
Products: 1
Vendors:
openbsd

Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable.

Published: 2000-12-19
Products: 5
Vendors:
openbsd

Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name.

Published: 2000-12-19
Products: 1
Vendors:
openbsd