Page 17 of 192 results (0.004 seconds)

CVSS: 7.5EPSS: 4%CPEs: 20EXPL: 2

15 Jul 1999 — Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rlimits) using mmap or shmget to allocate memory and cause page faults. • https://www.exploit-db.com/exploits/19423 •

CVSS: 7.8EPSS: 0%CPEs: 28EXPL: 2

18 Feb 1999 — A buffer overflow in lsof allows local users to obtain root privilege. • https://www.exploit-db.com/exploits/19373 •

CVSS: 7.5EPSS: 1%CPEs: 13EXPL: 0

04 Nov 1998 — IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash. • http://www.osvdb.org/908 • CWE-476: NULL Pointer Dereference •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

16 Jun 1998 — FreeBSD allows local users to conduct a denial of service by creating a hard link from a device special file to a file on an NFS file system. • http://www.ciac.org/ciac/bulletins/i-057.shtml • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

01 May 1998 — FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks. • http://www.osvdb.org/6089 •

CVSS: 10.0EPSS: 0%CPEs: 4EXPL: 0

20 Feb 1998 — FreeBSD mmap function allows users to modify append-only or immutable files. • ftp://ftp.NetBSD.ORG/pub/NetBSD/misc/security/advisories/NetBSD-SA1998-003.txt.asc •

CVSS: 7.2EPSS: 0%CPEs: 4EXPL: 0

01 Feb 1998 — mmap function in BSD allows local attackers in the kmem group to modify memory through devices. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0304 •

CVSS: 7.5EPSS: 0%CPEs: 6EXPL: 0

01 Feb 1998 — The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections. • http://www.openbsd.org/advisories/sourceroute.txt •

CVSS: 7.5EPSS: 25%CPEs: 33EXPL: 1

05 Jan 1998 — ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service. • https://www.exploit-db.com/exploits/19117 •

CVSS: 9.1EPSS: 1%CPEs: 32EXPL: 0

10 Dec 1997 — FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0017 •