Show filters
24 Total Results
Displaying 11-20 of 24
Sort by:
Attacker Value
Unknown

CVE-2001-1091

Disclosure Date: August 23, 2001 (last updated February 22, 2025)
The (1) dump and (2) dump_lfs commands in NetBSD 1.4.x through 1.5.1 do not properly drop privileges, which could allow local users to gain privileges via the RCMD_CMD environment variable.
0
Attacker Value
Unknown

CVE-2001-0554

Disclosure Date: August 14, 2001 (last updated February 22, 2025)
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
0
Attacker Value
Unknown

CVE-2001-0993

Disclosure Date: July 24, 2001 (last updated February 22, 2025)
sendmsg function in NetBSD 1.3 through 1.5 allows local users to cause a denial of service (kernel trap or panic) via a msghdr structure with a large msg_controllen length.
0
Attacker Value
Unknown

CVE-2001-0247

Disclosure Date: June 18, 2001 (last updated February 22, 2025)
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buffer as used in the glob functions glob2 and glob3.
0
Attacker Value
Unknown

CVE-2001-0053

Disclosure Date: February 12, 2001 (last updated February 22, 2025)
One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.
0
Attacker Value
Unknown

CVE-2000-0997

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Format string vulnerabilities in eeprom program in OpenBSD, NetBSD, and possibly other operating systems allows local attackers to gain root privileges.
0
Attacker Value
Unknown

CVE-2000-0993

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password in commands such as chpass or passwd.
0
Attacker Value
Unknown

CVE-2000-0751

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
mopd (Maintenance Operations Protocol loader daemon) does not properly cleanse user-injected format strings, which allows remote attackers to execute arbitrary commands.
0
Attacker Value
Unknown

CVE-2000-0750

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.
0
Attacker Value
Unknown

CVE-2000-0461

Disclosure Date: May 29, 2000 (last updated February 22, 2025)
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
0