CVE-2000-0584 – Canna Canna 3.5 b2 - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0584
Buffer overflow in Canna input system allows remote attackers to execute arbitrary commands via an SR_INIT command with a long user name or group name. • https://www.exploit-db.com/exploits/20061 ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:31.canna.asc.v1.1 http://shadowpenguin.backsection.net/advisories/advisory038.html http://www.securityfocus.com/bid/1445 https://exchange.xforce.ibmcloud.com/vulnerabilities/4912 •
CVE-2000-0535
https://notcve.org/view.php?id=CVE-2000-0535
OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken. • http://archives.neohapsis.com/archives/freebsd/2000-06/0083.html http://www.securityfocus.com/bid/1340 •
CVE-2000-0532
https://notcve.org/view.php?id=CVE-2000-0532
A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise filtered. • http://archives.neohapsis.com/archives/freebsd/2000-06/0031.html http://www.osvdb.org/1387 http://www.securityfocus.com/bid/1323 https://exchange.xforce.ibmcloud.com/vulnerabilities/4638 •
CVE-2000-0461
https://notcve.org/view.php?id=CVE-2000-0461
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call. • ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:19.semconfig.asc ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-004.txt.asc http://www.openbsd.org/errata26.html#semconfig http://www.securityfocus.com/bid/1270 •
CVE-2000-0440 – FreeBSD 3.4/4.0/5.0 / NetBSD 1.4 - Unaligned IP Option Denial of Service
https://notcve.org/view.php?id=CVE-2000-0440
NetBSD 1.4.2 and earlier allows remote attackers to cause a denial of service by sending a packet with an unaligned IP timestamp option. • https://www.exploit-db.com/exploits/19896 ftp://ftp.netbsd.org/pub/NetBSD/misc/security/advisories/NetBSD-SA2000-002.txt.asc http://archives.neohapsis.com/archives/bugtraq/2000-05/0088.html http://www.securityfocus.com/bid/1173 •