Netbsd

Netbsd

168 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 26.12.2006 23:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

OpenBSD and NetBSD permit usermode code to kill the display server and write to the X.Org /dev/xf86 device, which allows local users with root privileges to reduce securelevel by replacing the System Management Mode (SMM) handler via a write to an SM...

  • EPSS 33.35%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute ...

  • EPSS 0.06%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The accept function in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029 allows local users to cause a denial of service (socket consumption) via an invalid (1) name or (2) namelen parameter, which m...

  • EPSS 0.48%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The sendmsg function in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029, when run on a 64-bit architecture, allows attackers to cause a denial of service (kernel panic) via an invalid msg_controlle...

  • EPSS 0.06%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The procfs implementation in NetBSD-current before 20061023, NetBSD 3.0 and 3.0.1 before 20061024, and NetBSD 2.x before 20061029 allows local users to cause a denial of service (kernel panic) by attempting to access /emul/linux/proc/0/stat on a proc...

  • EPSS 0.06%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in ptrace in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read kernel memory and obtain sensitive information via certain manipulations of a PT_LW...

  • EPSS 0.06%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The if_clone_list function in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read potentially sensitive, uninitialized stack memory via unspecified vectors.

  • EPSS 0.15%
  • Veröffentlicht 08.12.2006 01:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in banner/banner.c in FreeBSD, NetBSD, and OpenBSD might allow local users to modify memory via a long banner. NOTE: CVE and multiple third parties dispute this issue. Since banner is not setuid, an exploit would not cross privilege...

  • EPSS 0.14%
  • Veröffentlicht 29.11.2006 01:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, which allows local users to gain privileges by passing certain environment variables to loading processes. NOTE: this issue has bee...

  • EPSS 0.08%
  • Veröffentlicht 21.11.2006 23:07:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer signedness error in the fw_ioctl (FW_IOCTL) function in the FireWire (IEEE-1394) drivers (dev/firewire/fwdev.c) in various BSD kernels, including DragonFlyBSD, FreeBSD 5.5, MidnightBSD 0.1-CURRENT before 20061115, NetBSD-current before 200611...