- EPSS 0.76%
- Published 06.12.2001 05:00:00
- Last modified 03.04.2025 01:03:51
SGI IRIX 6.5 through 6.5.12f and possibly earlier versions, and FreeBSD 3.0, allows remote attackers to cause a denial of service via a malformed IGMP multicast packet with a small response delay.
CVE-2001-0670
- EPSS 16.16%
- Published 03.10.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in BSD line printer daemon (in.lpd or lpd) in various BSD-based operating systems allows remote attackers to execute arbitrary code via an incomplete print job followed by a request to display the printer queue.
CVE-2001-1034
- EPSS 0.05%
- Published 23.09.2001 04:00:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter.
- EPSS 0.92%
- Published 20.09.2001 04:00:00
- Last modified 03.04.2025 01:03:51
NetBSD 1.5 and earlier and FreeBSD 4.3 and earlier allows a remote attacker to cause a denial of service by sending a large number of IP fragments to the machine, exhausting the mbuf pool.
CVE-2001-1029
- EPSS 0.11%
- Published 20.09.2001 04:00:00
- Last modified 03.04.2025 01:03:51
libutil in OpenSSH on FreeBSD 4.4 and earlier does not drop privileges before verifying the capabilities for reading the copyright and welcome files, which allows local users to bypass the capabilities checks and read arbitrary files by specifying al...
CVE-2001-1017
- EPSS 0.04%
- Published 04.09.2001 04:00:00
- Last modified 03.04.2025 01:03:51
rmuser utility in FreeBSD 4.2 and 4.3 creates a copy of the master.passwd file with world-readable permissions while updating the original file, which could allow local users to gain privileges by reading the copied file while rmuser is running, obta...
- EPSS 0.43%
- Published 31.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
ipfw in FreeBSD does not properly handle the use of "me" in its rules when point to point interfaces are used, which causes ipfw to allow connections from arbitrary remote hosts.
CVE-2001-1155
- EPSS 0.14%
- Published 23.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
TCP Wrappers (tcp_wrappers) in FreeBSD 4.1.1 through 4.3 with the PARANOID ACL option enabled does not properly check the result of a reverse DNS lookup, which could allow remote attackers to bypass intended access restrictions via DNS spoofing.
- EPSS 0.59%
- Published 21.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
linprocfs on FreeBSD 4.3 and earlier does not properly restrict access to kernel memory, which allows one process with debugging rights on a privileged process to read restricted memory from that process.
CVE-2001-1145
- EPSS 0.06%
- Published 17.08.2001 04:00:00
- Last modified 03.04.2025 01:03:51
fts routines in FreeBSD 4.3 and earlier, NetBSD before 1.5.2, and OpenBSD 2.9 and earlier can be forced to change (chdir) into a different directory than intended when the directory above the current directory is moved, which could cause scripts to p...