Freebsd

Freebsd

509 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.22%
  • Veröffentlicht 25.05.2016 15:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer signedness error in the genkbd_commonioctl function in sys/dev/kbd/kbd.c in FreeBSD 9.3 before p42, 10.1 before p34, 10.2 before p17, and 10.3 before p3 allows local users to obtain sensitive information from kernel memory, cause a denial of ...

Exploit
  • EPSS 0.15%
  • Veröffentlicht 12.04.2016 02:00:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer signedness error in the amd64_set_ldt function in sys/amd64/amd64/sys_machdep.c in FreeBSD 9.3 before p39, 10.1 before p31, and 10.2 before p14 allows local users to cause a denial of service (kernel panic) via an i386_set_ldt system call, wh...

  • EPSS 0.47%
  • Veröffentlicht 29.01.2016 19:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9 allow remote attackers to cause a denial of service (kernel crash) via vectors related to creating a TCP connection with the TCP_MD5SIG and TCP_NOOPT socket options.

  • EPSS 19.79%
  • Veröffentlicht 29.01.2016 19:59:07
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Stream Control Transmission Protocol (SCTP) module in FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9, when the kernel is configured for IPv6, allows remote attackers to cause a denial of service (assertion failure or NULL pointer der...

  • EPSS 0.11%
  • Veröffentlicht 18.09.2015 10:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The __sflush function in fflush.c in stdio in libc in FreeBSD 10.1 and the kernel in Apple iOS before 9 mishandles failures of the write system call, which allows context-dependent attackers to execute arbitrary code or cause a denial of service (hea...

Exploit
  • EPSS 0.04%
  • Veröffentlicht 10.04.2015 15:00:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The bsdinstall installer in FreeBSD 10.x before 10.1 p9, when configuring full disk encrypted ZFS, uses world-readable permissions for the GELI keyfile (/boot/encryption.key), which allows local users to obtain sensitive key information by reading th...

  • EPSS 0.89%
  • Veröffentlicht 27.02.2015 15:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer overflow in FreeBSD before 8.4 p24, 9.x before 9.3 p10. 10.0 before p18, and 10.1 before p6 allows remote attackers to cause a denial of service (crash) via a crafted IGMP packet, which triggers an incorrect size calculation and allocation of...

  • EPSS 0.69%
  • Veröffentlicht 02.02.2015 16:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The sctp module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted RE_CONFIG chunk.

Exploit
  • EPSS 0.36%
  • Veröffentlicht 02.02.2015 16:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple array index errors in the Stream Control Transmission Protocol (SCTP) module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allow local users to (1) gain privileges via the stream id to the setsockopt function,...

Exploit
  • EPSS 0.85%
  • Veröffentlicht 02.02.2015 16:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denial of service (crash) and possibly gain privileges via a negative value in a VT_WAITACTIVE ioctl call,...