Page 16 of 82 results (0.003 seconds)

CVSS: 5.0EPSS: 0%CPEs: 23EXPL: 0

ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets. ip_input.c en implementaciones de TCP/IP derivadas de BSD permiten a atacantes remotos causar una denegación de servicio (cuelgue o caída) mediante paquetes artesanales. • http://www.openbsd.org/errata23.html#tcpfix http://www.osvdb.org/5707 • CWE-20: Improper Input Validation •

CVSS: 5.0EPSS: 0%CPEs: 20EXPL: 2

Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rlimits) using mmap or shmget to allocate memory and cause page faults. • https://www.exploit-db.com/exploits/19423 http://marc.info/?l=bugtraq&m=93207728118694&w=2 http://www.securityfocus.com/bid/526 https://exchange.xforce.ibmcloud.com/vulnerabilities/2351 •

CVSS: 7.2EPSS: 0%CPEs: 28EXPL: 2

A buffer overflow in lsof allows local users to obtain root privilege. • https://www.exploit-db.com/exploits/19373 https://www.exploit-db.com/exploits/19374 http://www.osvdb.org/3163 •

CVSS: 7.5EPSS: 0%CPEs: 13EXPL: 0

IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash. • http://www.osvdb.org/908 https://exchange.xforce.ibmcloud.com/vulnerabilities/1389 • CWE-476: NULL Pointer Dereference •

CVSS: 5.0EPSS: 0%CPEs: 6EXPL: 0

The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections. • http://www.openbsd.org/advisories/sourceroute.txt http://www.osvdb.org/11502 https://exchange.xforce.ibmcloud.com/vulnerabilities/736 •