CVE-2024-6387
- EPSS 38.58%
- Published 01.07.2024 13:15:06
- Last modified 30.09.2025 13:52:23
A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to aut...
CVE-2021-45484
- EPSS 0.32%
- Published 25.12.2021 02:15:06
- Last modified 21.11.2024 06:32:18
In NetBSD through 9.2, the IPv6 fragment ID generation algorithm employs a weak cryptographic PRNG.
CVE-2021-45487
- EPSS 0.32%
- Published 25.12.2021 02:15:06
- Last modified 21.11.2024 06:32:19
In NetBSD through 9.2, the IPv4 ID generation algorithm does not use appropriate cryptographic measures.
CVE-2021-45488
- EPSS 0.32%
- Published 25.12.2021 02:15:06
- Last modified 21.11.2024 06:32:19
In NetBSD through 9.2, there is an information leak in the TCP ISN (ISS) generation algorithm.
CVE-2021-45489
- EPSS 0.32%
- Published 25.12.2021 02:15:06
- Last modified 21.11.2024 06:32:19
In NetBSD through 9.2, the IPv6 Flow Label generation algorithm employs a weak cryptographic PRNG.
CVE-2020-26139
- EPSS 0.41%
- Published 11.05.2021 20:15:08
- Last modified 21.11.2024 05:19:20
An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denia...
CVE-2012-5363
- EPSS 0.94%
- Published 20.02.2020 15:15:11
- Last modified 21.11.2024 01:44:35
The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Neighbor Solicitation messages, a different vulnerability than CVE-2011-2393.
CVE-2012-5365
- EPSS 0.94%
- Published 20.02.2020 15:15:11
- Last modified 21.11.2024 01:44:36
The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Router Advertisement packets containing multiple Routing entries.
CVE-2011-2480
- EPSS 0.42%
- Published 27.11.2019 19:15:11
- Last modified 21.11.2024 01:28:22
Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local unprivileged user to cause the kernel t...
CVE-2017-1000374
- EPSS 2.72%
- Published 19.06.2017 16:29:00
- Last modified 20.04.2025 01:37:25
A flaw exists in NetBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution using certain setuid binaries. This affects NetBSD 7.1 and possibly earlier versions.