Page 6 of 82 results (0.003 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — IP fragment assembly in OpenBSD 2.4 allows a remote attacker to cause a denial of service by sending a large number of fragmented packets. • http://www.openbsd.org/errata24.html#maxqueue •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

12 Mar 2001 — Vulnerability in OpenBSD 2.6 allows a local user to change interface media configurations. • http://www.openbsd.org/errata.html#ifmedia •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 0

14 Feb 2001 — cron in OpenBSD 2.5 allows local users to gain root privileges via an argv[] that is not NULL terminated, which is passed to cron's fake popen function. • http://www.openbsd.org/errata25.html#cron •

CVSS: 10.0EPSS: 15%CPEs: 10EXPL: 3

12 Feb 2001 — One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges. • https://www.exploit-db.com/exploits/234 •

CVSS: 7.5EPSS: 6%CPEs: 7EXPL: 3

19 Dec 2000 — OpenBSD 2.6 and earlier allows remote attackers to cause a denial of service by flooding the server with ARP requests. • https://www.exploit-db.com/exploits/20271 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

19 Dec 2000 — The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service. • http://archives.neohapsis.com/archives/bugtraq/2000-09/0299.html •

CVSS: 7.8EPSS: 0%CPEs: 13EXPL: 2

19 Dec 2000 — Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd. • https://www.exploit-db.com/exploits/243 •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 2

19 Dec 2000 — Format string vulnerability in OpenBSD fstat program (and possibly other BSD-based operating systems) allows local users to gain root privileges via the PWD environmental variable. • https://www.exploit-db.com/exploits/20256 •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 0

11 Dec 2000 — Format string vulnerability in OpenBSD photurisd allows local users to execute arbitrary commands via a configuration file directory name that contains formatting characters. • http://marc.info/?l=bugtraq&m=97068555106135&w=2 •

CVSS: 10.0EPSS: 2%CPEs: 10EXPL: 0

11 Dec 2000 — Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters. • http://www.securityfocus.com/archive/1/137890 •