Netbsd

Netbsd

171 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.75%
  • Veröffentlicht 21.08.2014 22:55:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted argument to the iconv_open function. NOTE: this issue was SPLIT p...

  • EPSS 1.77%
  • Veröffentlicht 21.08.2014 22:55:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out-of-bounds array access) via a crafted argument to the iconv_open function. NOTE: this issue was SPL...

  • EPSS 1.74%
  • Veröffentlicht 24.07.2014 14:55:09
  • Zuletzt bearbeitet 06.05.2026 22:30:45

bozotic HTTP server (aka bozohttpd) before 20140708, as used in NetBSD, truncates paths when checking .htpasswd restrictions, which allows remote attackers to bypass the HTTP authentication scheme and access restrictions via a long path.

  • EPSS 1.1%
  • Veröffentlicht 25.07.2012 19:55:01
  • Zuletzt bearbeitet 16.06.2026 22:34:39

Integer overflow in the calloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD makes it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which tr...

  • EPSS 1.1%
  • Veröffentlicht 25.07.2012 19:55:01
  • Zuletzt bearbeitet 16.06.2026 22:48:42

The ipalloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD does not properly allocate memory, which makes it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a larg...

  • EPSS 37.47%
  • Veröffentlicht 12.06.2012 22:55:01
  • Zuletzt bearbeitet 16.06.2026 23:36:54

The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos before r13724; Joyent SmartOS before 20120614T184600Z; FreeBSD before 9.0-R...

  • EPSS 1.98%
  • Veröffentlicht 02.02.2012 17:55:00
  • Zuletzt bearbeitet 16.06.2026 23:31:14

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD, NetBSD, and possibly other BSD-based operating systems allows remote attackers to cause a denial of service (CPU consumption and device hang) by sending many Router Adv...

  • EPSS 8.36%
  • Veröffentlicht 19.08.2011 17:55:03
  • Zuletzt bearbeitet 16.06.2026 23:32:12

The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compress.c in 4.3BSD, as used in zopen.c in OpenBSD before 3.8, FreeBSD, NetBSD 4.0.x and 5.0.x before 5.0.3 and 5.1.x...

Exploit
  • EPSS 7.26%
  • Veröffentlicht 24.05.2011 23:55:01
  • Zuletzt bearbeitet 16.06.2026 23:27:18

The glob implementation in Pure-FTPd before 1.0.32, and in libc in NetBSD 5.1, does not properly expand expressions containing curly brackets, which allows remote authenticated users to cause a denial of service (memory consumption) via a crafted FTP...

Exploit
  • EPSS 0.44%
  • Veröffentlicht 23.05.2011 22:55:01
  • Zuletzt bearbeitet 16.06.2026 23:30:22

The make include files in NetBSD before 1.6.2, as used in pmake 1.111 and other products, allow local users to overwrite arbitrary files via a symlink attack on a /tmp/_depend##### temporary file, related to (1) bsd.lib.mk and (2) bsd.prog.mk.