CVE-2008-3531
- EPSS 1.03%
- Veröffentlicht 05.09.2008 16:08:00
- Zuletzt bearbeitet 16.06.2026 22:55:59
Stack-based buffer overflow in sys/kern/vfs_mount.c in the kernel in FreeBSD 7.0 and 7.1, when vfs.usermount is enabled, allows local users to gain privileges via a crafted (1) mount or (2) nmount system call, related to copying of "user defined data...
CVE-2008-3890
- EPSS 0.31%
- Veröffentlicht 05.09.2008 16:08:00
- Zuletzt bearbeitet 16.06.2026 22:56:44
The kernel in FreeBSD 6.3 through 7.0 on amd64 platforms can make an extra swapgs call after a General Protection Fault (GPF), which allows local users to gain privileges by triggering a GPF during the kernel's return from (1) an interrupt, (2) a tra...
CVE-2008-1391
- EPSS 18.8%
- Veröffentlicht 27.03.2008 17:44:00
- Zuletzt bearbeitet 16.06.2026 22:51:38
Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values of certain integer fields in the format argument to ...
CVE-2008-1215
- EPSS 0.79%
- Veröffentlicht 09.03.2008 02:44:00
- Zuletzt bearbeitet 16.06.2026 22:51:14
Stack-based buffer overflow in the command_Expand_Interpret function in command.c in ppp (aka user-ppp), as distributed in FreeBSD 6.3 and 7.0, OpenBSD 4.1 and 4.2, and the net/userppp package for NetBSD, allows local users to gain privileges via lon...
CVE-2008-0777
- EPSS 0.41%
- Veröffentlicht 15.02.2008 02:00:00
- Zuletzt bearbeitet 16.06.2026 22:50:19
The sendfile system call in FreeBSD 5.5 through 7.0 does not check the access flags of the file descriptor used for sending a file, which allows local users to read the contents of write-only files.
CVE-2008-0216
- EPSS 0.31%
- Veröffentlicht 16.01.2008 02:00:00
- Zuletzt bearbeitet 16.06.2026 22:49:09
The ptsname function in FreeBSD 6.0 through 7.0-PRERELEASE does not properly verify that a certain portion of a device name is associated with a pty of a user who is calling the pt_chown function, which might allow local users to read data from the p...
CVE-2008-0217
- EPSS 0.3%
- Veröffentlicht 16.01.2008 02:00:00
- Zuletzt bearbeitet 16.06.2026 22:49:09
The script program in FreeBSD 5.0 through 7.0-PRERELEASE invokes openpty, which creates a pseudo-terminal with world-readable and world-writable permissions when it is not run as root, which allows local users to read data from the terminal of the us...
CVE-2007-6150
- EPSS 0.33%
- Veröffentlicht 30.11.2007 01:46:00
- Zuletzt bearbeitet 16.06.2026 22:47:30
The "internal state tracking" code for the random and urandom devices in FreeBSD 5.5, 6.1 through 6.3, and 7.0 beta 4 allows local users to obtain portions of previously-accessed random values, which could be leveraged to bypass protection mechanisms...
CVE-2007-3798
- EPSS 70.39%
- Veröffentlicht 16.07.2007 22:30:00
- Zuletzt bearbeitet 16.06.2026 22:42:45
Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value.
CVE-2007-3721
- EPSS 0.26%
- Veröffentlicht 12.07.2007 16:30:00
- Zuletzt bearbeitet 16.06.2026 22:42:35
The ULE process scheduler in the FreeBSD kernel gives preference to "interactive" processes that perform voluntary sleeps, which allows local users to cause a denial of service (CPU consumption), as described in "Secretly Monopolizing the CPU Without...