CVE-2018-6919
- EPSS 0.32%
- Published 04.04.2018 14:29:00
- Last modified 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, due to insufficient initialization of memory copied to userland, small amounts of kernel memory may be disclosed to userland processes. Unprivileged us...
CVE-2018-6916
- EPSS 0.5%
- Published 09.03.2018 15:29:00
- Last modified 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host. Additionally, a use-after-free vulnerability exists in the IPsec AH ha...
CVE-2018-7183
- EPSS 14.25%
- Published 08.03.2018 20:29:00
- Last modified 21.11.2024 04:11:44
Buffer overflow in the decodearr function in ntpq in ntp 4.2.8p6 through 4.2.8p10 allows remote attackers to execute arbitrary code by leveraging an ntpq query and sending a response with a crafted array.
CVE-2015-1416
- EPSS 0.88%
- Published 05.02.2018 16:29:00
- Last modified 21.11.2024 02:25:22
Larry Wall's patch; patch in FreeBSD 10.2-RC1 before 10.2-RC1-p1, 10.2 before 10.2-BETA2-p2, and 10.1 before 10.1-RELEASE-p16; Bitrig; GNU patch before 2.2.5; and possibly other patch variants allow remote attackers to execute arbitrary shell command...
CVE-2015-1418
- EPSS 2.92%
- Published 05.02.2018 16:29:00
- Last modified 21.11.2024 02:25:22
The do_ed_script function in pch.c in GNU patch through 2.7.6, and patch in FreeBSD 10.1 before 10.1-RELEASE-p17, 10.2 before 10.2-BETA2-p3, 10.2-RC1 before 10.2-RC1-p2, and 0.2-RC2 before 10.2-RC2-p1, allows remote attackers to execute arbitrary com...
CVE-2015-5674
- EPSS 0.75%
- Published 05.02.2018 16:29:00
- Last modified 21.11.2024 02:33:36
The routed daemon in FreeBSD 9.3 before 9.3-RELEASE-p22, 10.2-RC2 before 10.2-RC2-p1, 10.2-RC1 before 10.2-RC1-p2, 10.2 before 10.2-BETA2-p3, and 10.1 before 10.1-RELEASE-p17 allows remote authenticated users to cause a denial of service (assertion f...
CVE-2017-1086
- EPSS 0.08%
- Published 16.11.2017 20:29:00
- Last modified 20.04.2025 01:37:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p4, 11.0-RELEASE-p15, 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24, not all information in the struct ptrace_lwpinfo is relevant for the state of any thread, and the kernel does not fill the irrelevan...
CVE-2017-1087
- EPSS 0.05%
- Published 16.11.2017 20:29:00
- Last modified 20.04.2025 01:37:25
In FreeBSD 10.x before 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24 named paths are globally scoped, meaning a process located in one jail can read and modify the content of POSIX shared memory objects created by a process in another jail or th...
CVE-2017-1088
- EPSS 0.08%
- Published 16.11.2017 20:29:00
- Last modified 20.04.2025 01:37:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p4, 11.0-RELEASE-p15, 10.4-STABLE, 10.4-RELEASE-p3, and 10.3-RELEASE-p24, the kernel does not properly clear the memory of the kld_file_stat structure before filling the data. Since the structure filled by ...
CVE-2017-13078
- EPSS 0.81%
- Published 17.10.2017 13:29:00
- Last modified 20.04.2025 01:37:25
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the four-way handshake, allowing an attacker within radio range to replay frames from access points to clients.