- EPSS 1.39%
- Veröffentlicht 21.08.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:55:42
linprocfs on FreeBSD 4.3 and earlier does not properly restrict access to kernel memory, which allows one process with debugging rights on a privileged process to read restricted memory from that process.
CVE-2001-1145
- EPSS 0.3%
- Veröffentlicht 17.08.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:55:40
fts routines in FreeBSD 4.3 and earlier, NetBSD before 1.5.2, and OpenBSD 2.9 and earlier can be forced to change (chdir) into a different directory than intended when the directory above the current directory is moved, which could cause scripts to p...
- EPSS 38.49%
- Veröffentlicht 14.08.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:54:31
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
CVE-2001-1180
- EPSS 0.6%
- Veröffentlicht 10.07.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:55:44
FreeBSD 4.3 does not properly clear shared signal handlers when executing a process, which allows local users to gain privileges by calling rfork with a shared signal handler, having the child process execute a setuid program, and sending a signal to...
- EPSS 20.73%
- Veröffentlicht 07.07.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:55:53
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets ...
CVE-2001-0424
- EPSS 0.39%
- Veröffentlicht 02.07.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:54:17
BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.
CVE-2001-0439
- EPSS 2.41%
- Veröffentlicht 02.07.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:54:18
licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.
- EPSS 2.75%
- Veröffentlicht 27.06.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:54:12
time server daemon timed allows remote attackers to cause a denial of service via malformed packets.
- EPSS 1.61%
- Veröffentlicht 27.06.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:54:21
rwho daemon rwhod in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of service via malformed packets with a short length.
- EPSS 19.32%
- Veröffentlicht 18.06.2001 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:53:57
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functi...