CVE-2018-6920
- EPSS 0.06%
- Veröffentlicht 08.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE(r332303), 11.1-RELEASE-p10, 10.4-STABLE(r332321), and 10.4-RELEASE-p9, due to insufficient initialization of memory copied to userland in the Linux subsystem and Atheros wireless driver, small amounts of kernel memory ma...
CVE-2018-6921
- EPSS 0.06%
- Veröffentlicht 08.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE(r332066) and 11.1-RELEASE-p10, due to insufficient initialization of memory copied to userland in the network subsystem, small amounts of kernel memory may be disclosed to userland processes. Unprivileged authenticated l...
CVE-2018-8897
- EPSS 23.21%
- Veröffentlicht 08.05.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:33
A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the development of some or all operating-system kernels, resulting in unexpected behavior for #DB exceptions that ...
CVE-2017-1081
- EPSS 2.21%
- Veröffentlicht 10.04.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:21:18
In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using "keep state" or "keep frags" options can cause a kernel panic when fed specially crafted packet fragments due to incorrect memory handling.
CVE-2018-6917
- EPSS 0.96%
- Veröffentlicht 04.04.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, insufficient validation of user-provided font parameters can result in an integer overflow, leading to the use of arbitrary kernel memory as glyph data...
CVE-2018-6918
- EPSS 2.75%
- Veröffentlicht 04.04.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, the length field of the ipsec option header does not count the size of the option header itself, causing an infinite loop when the length is zero. This...
CVE-2018-6919
- EPSS 0.31%
- Veröffentlicht 04.04.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, due to insufficient initialization of memory copied to userland, small amounts of kernel memory may be disclosed to userland processes. Unprivileged us...
CVE-2018-6916
- EPSS 0.5%
- Veröffentlicht 09.03.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:25
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host. Additionally, a use-after-free vulnerability exists in the IPsec AH ha...
CVE-2018-7183
- EPSS 19.62%
- Veröffentlicht 08.03.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:44
Buffer overflow in the decodearr function in ntpq in ntp 4.2.8p6 through 4.2.8p10 allows remote attackers to execute arbitrary code by leveraging an ntpq query and sending a response with a crafted array.
CVE-2015-1416
- EPSS 0.88%
- Veröffentlicht 05.02.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 02:25:22
Larry Wall's patch; patch in FreeBSD 10.2-RC1 before 10.2-RC1-p1, 10.2 before 10.2-BETA2-p2, and 10.1 before 10.1-RELEASE-p16; Bitrig; GNU patch before 2.2.5; and possibly other patch variants allow remote attackers to execute arbitrary shell command...