- EPSS 0.22%
- Veröffentlicht 05.01.2007 11:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in sys/dev/pci/vga_pci.c in the VGA graphics driver for wscons in OpenBSD 3.9 and 4.0, when the kernel is compiled with the PCIAGP option and a non-AGP device is being used, allows local users to gain privileges via unspecif...
CVE-2006-6730
- EPSS 0.05%
- Veröffentlicht 26.12.2006 23:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
OpenBSD and NetBSD permit usermode code to kill the display server and write to the X.Org /dev/xf86 device, which allows local users with root privileges to reduce securelevel by replacing the System Management Mode (SMM) handler via a write to an SM...
CVE-2006-6397
- EPSS 0.15%
- Veröffentlicht 08.12.2006 01:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in banner/banner.c in FreeBSD, NetBSD, and OpenBSD might allow local users to modify memory via a long banner. NOTE: CVE and multiple third parties dispute this issue. Since banner is not setuid, an exploit would not cross privilege...
CVE-2006-6164
- EPSS 0.05%
- Veröffentlicht 29.11.2006 01:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The _dl_unsetenv function in loader.c in the ELF ld.so in OpenBSD 3.9 and 4.0 does not properly remove duplicate environment variables, which allows local users to pass dangerous variables such as LD_PRELOAD to loading processes, which might be lever...
CVE-2006-5550
- EPSS 0.18%
- Veröffentlicht 26.10.2006 17:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kernel in FreeBSD 6.1 and OpenBSD 4.0 allows local users to cause a denial of service via unspecified vectors involving certain ioctl requests to /dev/crypto.
CVE-2006-5218
- EPSS 0.08%
- Veröffentlicht 10.10.2006 04:06:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the systrace_preprepl function (STRIOCREPLACE) in systrace in OpenBSD 3.9 and NetBSD 3 allows local users to cause a denial of service (crash), gain privileges, or read arbitrary kernel memory via large numeric arguments to the sy...
CVE-2006-4435
- EPSS 0.06%
- Veröffentlicht 29.08.2006 00:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
OpenBSD 3.8, 3.9, and possibly earlier versions allows context-dependent attackers to cause a denial of service (kernel panic) by allocating more semaphores than the default.
- EPSS 0.67%
- Veröffentlicht 29.08.2006 00:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
isakmpd in OpenBSD 3.8, 3.9, and possibly earlier versions, creates Security Associations (SA) with a replay window of size 0 when isakmpd acts as a responder during SA negotiation, which allows remote attackers to replay IPSec packets and bypass the...
- EPSS 4.19%
- Veröffentlicht 24.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in the sppp driver in FreeBSD 4.11 through 6.1, NetBSD 2.0 through 4.0 beta before 20060823, and OpenBSD 3.8 and 3.9 before 20060902 allows remote attackers to cause a denial of service (panic), obtain sensitive information, and possi...
CVE-2006-0098
- EPSS 0.08%
- Veröffentlicht 06.01.2006 11:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The dupfdopen function in sys/kern/kern_descrip.c in OpenBSD 3.7 and 3.8 allows local users to re-open arbitrary files by using setuid programs to access file descriptors using /dev/fd/.