Show filters
29 Total Results
Displaying 11-20 of 29
Sort by:
Attacker Value
Unknown
CVE-2003-0653
Disclosure Date: August 27, 2003 (last updated February 22, 2025)
The OSI networking kernel (sys/netiso) in NetBSD 1.6.1 and earlier does not use a BSD-required "PKTHDR" mbuf when sending certain error responses to the sender of an OSI packet, which allows remote attackers to cause a denial of service (kernel panic or crash) via certain OSI packets.
0
Attacker Value
Unknown
CVE-2002-1476
Disclosure Date: April 22, 2003 (last updated February 22, 2025)
Buffer overflow in setlocale in libc on NetBSD 1.4.x through 1.6, and possibly other operating systems, when called with the LC_ALL category, allows local attackers to execute arbitrary code via a user-controlled locale string that has more than 6 elements, which exceeds the boundaries of the new_categories category array, as exploitable through programs such as xterm and zsh.
0
Attacker Value
Unknown
CVE-2002-1500
Disclosure Date: April 02, 2003 (last updated February 22, 2025)
Buffer overflow in (1) mrinfo, (2) mtrace, and (3) pppd in NetBSD 1.4.x through 1.6 allows local users to gain privileges by executing the programs after filling the file descriptor tables, which produces file descriptors larger than FD_SETSIZE, which are not checked by FD_SET().
0
Attacker Value
Unknown
CVE-2002-1490
Disclosure Date: April 02, 2003 (last updated February 22, 2025)
NetBSD 1.4 through 1.6 beta allows local users to cause a denial of service (kernel panic) via a series of calls to the TIOCSCTTY ioctl, which causes an integer overflow in a structure counter and sets the counter to zero, which frees memory that is still in use by other processes.
0
Attacker Value
Unknown
CVE-2002-1543
Disclosure Date: March 31, 2003 (last updated February 22, 2025)
Buffer overflow in trek on NetBSD 1.5 through 1.5.3 allows local users to gain privileges via long keyboard input.
0
Attacker Value
Unknown
CVE-2003-0102
Disclosure Date: March 18, 2003 (last updated February 22, 2025)
Buffer overflow in tryelf() in readelf.c of the file command allows attackers to execute arbitrary code as the user running file, possibly via a large entity size value in an ELF header (elfhdr.e_shentsize).
0
Attacker Value
Unknown
CVE-2002-1337
Disclosure Date: March 07, 2003 (last updated February 22, 2025)
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
0
Attacker Value
Unknown
CVE-2003-0001
Disclosure Date: January 17, 2003 (last updated February 22, 2025)
Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain information from previous packets or kernel memory by using malformed packets, as demonstrated by Etherleak.
0
Attacker Value
Unknown
CVE-2002-2092
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Race condition in exec in OpenBSD 4.0 and earlier, NetBSD 1.5.2 and earlier, and FreeBSD 4.4 and earlier allows local users to gain privileges by attaching a debugger to a process before the kernel has determined that the process is setuid or setgid.
0
Attacker Value
Unknown
CVE-2002-1915
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
tip on multiple BSD-based operating systems allows local users to cause a denial of service (execution prevention) by using flock() to lock the /var/log/acculog file.
0