Netbsd

Netbsd

171 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.47%
  • Veröffentlicht 23.11.2004 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:05:16

OpenBSD 3.4 and NetBSD 1.6 and 1.6.1 allow remote attackers to cause a denial of service (crash) by sending an IPv6 packet with a small MTU to a listening port and then issuing a TCP connect to that port.

Exploit
  • EPSS 80.29%
  • Veröffentlicht 18.08.2004 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:05:12

TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that u...

  • EPSS 0.72%
  • Veröffentlicht 03.03.2004 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:04:58

The shmat system call in the System V Shared Memory interface for FreeBSD 5.2 and earlier, NetBSD 1.3 and earlier, and OpenBSD 2.6 and earlier, does not properly decrement a shared memory segment's reference count when the vm_map_find function fails,...

  • EPSS 3.16%
  • Veröffentlicht 15.12.2003 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:03:10

ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value.

  • EPSS 5.85%
  • Veröffentlicht 20.10.2003 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:02:43

Multiple integer overflows in the font libraries for XFree86 4.3.0 allow local or remote attackers to cause a denial of service or execute arbitrary code via heap-based and stack-based buffer overflow attacks.

  • EPSS 22.36%
  • Veröffentlicht 06.10.2003 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:02:38

A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.

  • EPSS 66.18%
  • Veröffentlicht 06.10.2003 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:02:39

The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.

Exploit
  • EPSS 78.12%
  • Veröffentlicht 27.08.2003 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:02:15

Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to tr...

  • EPSS 1.27%
  • Veröffentlicht 27.08.2003 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:02:35

The OSI networking kernel (sys/netiso) in NetBSD 1.6.1 and earlier does not use a BSD-required "PKTHDR" mbuf when sending certain error responses to the sender of an OSI packet, which allows remote attackers to cause a denial of service (kernel panic...

  • EPSS 0.44%
  • Veröffentlicht 22.04.2003 04:00:00
  • Zuletzt bearbeitet 16.06.2026 21:59:23

Buffer overflow in setlocale in libc on NetBSD 1.4.x through 1.6, and possibly other operating systems, when called with the LC_ALL category, allows local attackers to execute arbitrary code via a user-controlled locale string that has more than 6 el...