Search: "openbsd"

165 CVEs found

Format string vulnerability in OpenBSD su program (and possibly other BSD-based operating systems) allows local attackers to gain root privileges via a malformed shell.

Published: 2000-12-19
Products: 1
Vendors:
openbsd

Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges.

Published: 2000-12-19
Products: 8
Vendors:
netbsd openbsd

The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a denial of service.

Published: 2001-03-12
Products: 1
Vendors:
openbsd
CVE-2000-0310
5.0 MEDIUM

IP fragment assembly in OpenBSD 2.4 allows a remote attacker to cause a denial of service by sending a large number of fragmented packets.

Published: 2001-03-12
Products: 1
Vendors:
openbsd

cron in OpenBSD 2.5 allows local users to gain root privileges via an argv[] that is not NULL terminated, which is passed to cron's fake popen function.

Published: 2001-03-12
Products: 1
Vendors:
openbsd
CVE-2000-0313
4.6 MEDIUM

Vulnerability in OpenBSD 2.6 allows a local user to change interface media configurations.

Published: 2001-03-12
Products: 1
Vendors:
openbsd

The i386_set_ldt system call in NetBSD 1.5 and earlier, and OpenBSD 2.8 and earlier, when the USER_LDT kernel option is enabled, does not validate a call gate target, which allows local users to gain ...

Published: 2001-05-03
Products: 2
Vendors:
netbsd openbsd
CVE-2001-0284
10.0 HIGH

Buffer overflow in IPSEC authentication mechanism for OpenBSD 2.8 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a malformed Authenticatio...

Published: 2001-05-03
Products: 1
Vendors:
openbsd

Race condition in OpenBSD VFS allows local users to cause a denial of service (kernel panic) by (1) creating a pipe in one thread and causing another thread to set one of the file descriptors to NULL ...

Published: 2001-06-02
Products: 4
Vendors:
openbsd

readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history file...

Published: 2001-06-27
Products: 1
Vendors:
openbsd
CVE-2001-1145
6.2 MEDIUM

fts routines in FreeBSD 4.3 and earlier, NetBSD before 1.5.2, and OpenBSD 2.9 and earlier can be forced to change (chdir) into a different directory than intended when the directory above the current ...

Published: 2001-08-17
Products: 4
Vendors:
netbsd freebsd openbsd
CVE-2001-1415
4.6 MEDIUM

vi.recover in OpenBSD before 3.1 allows local users to remove arbitrary zero-byte files such as device nodes.

Published: 2001-11-13
Products: 2
Vendors:
openbsd
CVE-2001-1559
5.5 MEDIUM

The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mode values to the fdrelease function, which allows local users to cause a denial ...

Published: 2001-12-31
Products: 2
Vendors:
openbsd

mail in OpenBSD 2.9 and 3.0 processes a tilde (~) escape character in a message even when it is not in interactive mode, which could allow local users to gain root privileges via calls to mail in cron...

Published: 2002-07-03
Products: 2
Vendors:
openbsd

Vulnerability in OpenBSD 3.0, when using YP with netgroups in the password database, causes (1) rexec or (2) rsh to run another user's shell, or (3) atrun to change to a different user's directory, po...

Published: 2002-07-03
Products: 1
Vendors:
openbsd
CVE-2002-0640
10.0 HIGH

Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large number of responses during challenge response authentication when OpenBSD is using...

Published: 2002-07-03
Products: 26
Vendors:
openbsd
CVE-2002-0514
5.0 MEDIUM

PF in OpenBSD 3.0 with the return-rst rule sets the TTL to 128 in the RST packet, which allows remote attackers to determine if a port is being filtered because the TTL is different than the default T...

Published: 2002-08-12
Products: 1
Vendors:
openbsd

OpenBSD 2.9 through 3.1 allows local users to cause a denial of service (resource exhaustion) and gain root privileges by filling the kernel's file descriptor table and closing file descriptors 0, 1, ...

Published: 2002-08-12
Products: 3
Vendors:
openbsd

Race condition in exec in OpenBSD 4.0 and earlier, NetBSD 1.5.2 and earlier, and FreeBSD 4.4 and earlier allows local users to gain privileges by attaching a debugger to a process before the kernel ha...

Published: 2002-12-31
Products: 52
Vendors:
netbsd freebsd openbsd
CVE-2002-2180
6.8 MEDIUM

The setitimer(2) system call in OpenBSD 2.0 through 3.1 does not properly check certain arguments, which allows local users to write to kernel memory and possibly gain root privileges, possibly via an...

Published: 2002-12-31
Products: 12
Vendors:
openbsd