- EPSS 2.16%
- Veröffentlicht 15.07.1999 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Operating systems with shared memory implementations based on BSD 4.4 code allow a user to conduct a denial of service and bypass memory limits (e.g., as specified with rlimits) using mmap or shmget to allocate memory and cause page faults.
CVE-1999-0763
- EPSS 0.49%
- Veröffentlicht 01.05.1999 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
NetBSD on a multi-homed host allows ARP packets on one network to modify ARP entries on another connected network.
CVE-1999-0764
- EPSS 0.49%
- Veröffentlicht 01.05.1999 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
NetBSD allows ARP packets to overwrite static ARP entries.
CVE-1999-0466
- EPSS 0.06%
- Veröffentlicht 21.04.1999 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The SVR4 /dev/wabi special device file in NetBSD 1.3.3 and earlier allows a local user to read or write arbitrary files on the disk associated with that device.
CVE-1999-0446
- EPSS 0.08%
- Veröffentlicht 12.04.1999 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS.
CVE-1999-0434
- EPSS 0.43%
- Veröffentlicht 30.03.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
XFree86 xfs command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.
CVE-1999-0433
- EPSS 0.17%
- Veröffentlicht 21.03.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
XFree86 startx command is vulnerable to a symlink attack, allowing local users to create files in restricted directories, possibly allowing them to gain privileges or cause a denial of service.
CVE-1999-0422
- EPSS 0.07%
- Veröffentlicht 17.03.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
In some cases, NetBSD 1.3.3 mount allows local users to execute programs in some file systems that have the "noexec" flag set.
CVE-1999-0396
- EPSS 0.66%
- Veröffentlicht 17.02.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
A race condition between the select() and accept() calls in NetBSD TCP servers allows remote attackers to cause a denial of service.
CVE-1999-0367
- EPSS 0.12%
- Veröffentlicht 09.02.1999 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
NetBSD netstat command allows local users to access kernel memory.