Page 13 of 188 results (0.009 seconds)

CVSS: 7.2EPSS: 0%CPEs: 12EXPL: 0

29 Nov 2000 — The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc •

CVSS: 7.5EPSS: 0%CPEs: 5EXPL: 0

29 Nov 2000 — The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname. • ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:63.getnameinfo.asc •

CVSS: 7.8EPSS: 0%CPEs: 4EXPL: 0

14 Nov 2000 — Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root privileges. • http://archives.neohapsis.com/archives/freebsd/2000-09/0110.html •

CVSS: 7.8EPSS: 0%CPEs: 9EXPL: 0

20 Oct 2000 — Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system. • http://archives.neohapsis.com/archives/freebsd/2000-08/0338.html •

CVSS: 5.5EPSS: 0%CPEs: 11EXPL: 0

20 Oct 2000 — FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header. • http://archives.neohapsis.com/archives/freebsd/2000-08/0337.html •

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 0

21 Sep 2000 — Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments. • http://archives.neohapsis.com/archives/freebsd/2000-08/0339.html •

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 2

05 Jul 2000 — libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory. • http://archives.neohapsis.com/archives/freebsd/2000-07/0035.html •

CVSS: 7.5EPSS: 12%CPEs: 7EXPL: 1

04 Jul 2000 — BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters. • https://www.exploit-db.com/exploits/20060 •

CVSS: 10.0EPSS: 4%CPEs: 2EXPL: 1

02 Jul 2000 — Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name. • https://www.exploit-db.com/exploits/20061 •

CVSS: 7.5EPSS: 0%CPEs: 3EXPL: 0

12 Jun 2000 — OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken. • http://archives.neohapsis.com/archives/freebsd/2000-06/0083.html •