Freebsd

Freebsd

515 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.47%
  • Veröffentlicht 04.12.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:59

In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error can occur when handling the client address length field in an NFSv4 request. Unprivileged remote users with access to the NFS server can crash the system by sending...

  • EPSS 4.47%
  • Veröffentlicht 04.12.2018 15:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:59

In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, the NFS server lacks a bounds check in the READDIRPLUS NFS request. Unprivileged remote users with access to the NFS server can cause a resource exhaustion by forcing the server to allocate ...

Exploit
  • EPSS 0.38%
  • Veröffentlicht 28.11.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:58

In FreeBSD before 11.2-STABLE(r340268) and 11.2-RELEASE-p5, due to incorrectly accounting for padding on 64-bit platforms, a buffer underwrite could occur when constructing an ICMP reply packet when using a non-standard value for the net.inet.icmp.qu...

  • EPSS 0.04%
  • Veröffentlicht 28.09.2018 13:29:01
  • Zuletzt bearbeitet 21.11.2024 04:11:26

In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of IPv6 protocol control block flags through various failure paths, an unprivileged authenticated local...

  • EPSS 0.04%
  • Veröffentlicht 28.09.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:58

In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to insufficient memory checking in the freebsd4_getfsstat system call, a NULL pointer dereference can occur. Unprivileged authenticated local users may be able to caus...

  • EPSS 0.05%
  • Veröffentlicht 28.09.2018 13:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:58

In FreeBSD before 11.2-STABLE(r338983), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338984), and 10.4-RELEASE-p13, due to insufficient initialization of memory copied to userland in the getcontext and swapcontext system calls, small amounts of ke...

  • EPSS 0.06%
  • Veröffentlicht 12.09.2018 14:29:01
  • Zuletzt bearbeitet 21.11.2024 04:11:26

In FreeBSD before 11.1-STABLE, 11.2-RELEASE-p3, 11.1-RELEASE-p14, 10.4-STABLE, and 10.4-RELEASE-p12, insufficient validation in the ELF header parser could allow a malicious ELF binary to cause a kernel crash or disclose kernel memory.

Exploit
  • EPSS 0.54%
  • Veröffentlicht 12.09.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 03:21:18

In FreeBSD 11.x before 11.1-RELEASE and 10.x before 10.4-RELEASE, the qsort algorithm has a deterministic recursion pattern. Feeding a pathological input to the algorithm can lead to excessive stack usage and potential overflow. Applications that use...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 12.09.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 03:21:18

In FreeBSD before 11.2-RELEASE, a stack guard-page is available but is disabled by default. This results in the possibility a poorly written process could be cause a stack overflow.

Exploit
  • EPSS 24.45%
  • Veröffentlicht 12.09.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 03:21:18

In FreeBSD before 11.2-RELEASE, multiple issues with the implementation of the stack guard-page reduce the protections afforded by the guard-page. This results in the possibility a poorly written process could be cause a stack overflow.