Show filters
193 Total Results
Displaying 141-150 of 193
Sort by:
Attacker Value
Unknown

CVE-2002-0542

Disclosure Date: July 03, 2002 (last updated February 22, 2025)
mail in OpenBSD 2.9 and 3.0 processes a tilde (~) escape character in a message even when it is not in interactive mode, which could allow local users to gain root privileges via calls to mail in cron.
0
Attacker Value
Unknown

CVE-2002-0381

Disclosure Date: June 25, 2002 (last updated February 22, 2025)
The TCP implementation in various BSD operating systems (tcp_input.c) does not properly block connections to broadcast addresses, which could allow remote attackers to bypass intended filters via packets with a unicast link layer address and an IP broadcast address.
0
Attacker Value
Unknown

CVE-2001-1559

Disclosure Date: December 31, 2001 (last updated February 22, 2025)
The uipc system calls (uipc_syscalls.c) in OpenBSD 2.9 and 3.0 provide user mode return instead of versus rval kernel mode values to the fdrelease function, which allows local users to cause a denial of service and trigger a null dereference.
Attacker Value
Unknown

CVE-2001-1415

Disclosure Date: November 13, 2001 (last updated February 22, 2025)
vi.recover in OpenBSD before 3.1 allows local users to remove arbitrary zero-byte files such as device nodes.
0
Attacker Value
Unknown

CVE-2001-0670

Disclosure Date: October 03, 2001 (last updated February 22, 2025)
Buffer overflow in BSD line printer daemon (in.lpd or lpd) in various BSD-based operating systems allows remote attackers to execute arbitrary code via an incomplete print job followed by a request to display the printer queue.
0
Attacker Value
Unknown

CVE-2001-1145

Disclosure Date: August 17, 2001 (last updated February 22, 2025)
fts routines in FreeBSD 4.3 and earlier, NetBSD before 1.5.2, and OpenBSD 2.9 and earlier can be forced to change (chdir) into a different directory than intended when the directory above the current directory is moved, which could cause scripts to perform dangerous actions on the wrong directories.
0
Attacker Value
Unknown

CVE-2001-0554

Disclosure Date: August 14, 2001 (last updated February 22, 2025)
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
0
Attacker Value
Unknown

CVE-2001-1244

Disclosure Date: July 07, 2001 (last updated February 22, 2025)
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
0
Attacker Value
Unknown

CVE-2001-0378

Disclosure Date: June 27, 2001 (last updated February 22, 2025)
readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files.
0
Attacker Value
Unknown

CVE-2001-0402

Disclosure Date: June 18, 2001 (last updated February 22, 2025)
IPFilter 3.4.16 and earlier does not include sufficient session information in its cache, which allows remote attackers to bypass access restrictions by sending fragmented packets to a restricted port after sending unfragmented packets to an unrestricted port.
0