CVE-2001-0093
- EPSS 0.38%
- Published 12.02.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Vulnerability in telnetd in FreeBSD 1.5 allows local users to gain root privileges by modifying critical environmental variables that affect the behavior of telnetd.
CVE-2001-0094
- EPSS 0.05%
- Published 12.02.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in kdc_reply_cipher of libkrb (Kerberos 4 authentication library) in NetBSD 1.5 and FreeBSD 4.2 and earlier, as used in Kerberised applications such as telnetd and login, allows local users to gain root privileges.
CVE-2000-1167
- EPSS 0.74%
- Published 09.01.2001 05:00:00
- Last modified 03.04.2025 01:03:51
ppp utility in FreeBSD 4.1.1 and earlier does not properly restrict access as specified by the "nat deny_incoming" command, which allows remote attackers to connect to the target system.
- EPSS 0.74%
- Published 09.01.2001 05:00:00
- Last modified 03.04.2025 01:03:51
telnetd in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service by specifying an arbitrary large file in the TERMCAP environmental variable, which consumes resources as the server process...
- EPSS 0.9%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
fingerd in FreeBSD 4.1.1 allows remote attackers to read arbitrary files by specifying the target file name instead of a regular user name.
CVE-2000-0916
- EPSS 8.35%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.
CVE-2000-0963
- EPSS 0.16%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.
CVE-2000-0993
- EPSS 0.23%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd.
CVE-2000-0998
- EPSS 0.26%
- Published 11.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function.
CVE-2000-1011
- EPSS 0.05%
- Published 11.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental variable.