Show filters
531 Total Results
Displaying 141-150 of 531
Sort by:
Attacker Value
Unknown
CVE-2018-17160
Disclosure Date: December 04, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r341486) and 11.2-RELEASE-p6, insufficient bounds checking in one of the device models provided by bhyve can permit a guest operating system to overwrite memory in the bhyve host possibly permitting arbitrary code execution. A guest OS using a firmware image can cause the bhyve process to crash, or possibly execute arbitrary code on the host as root.
0
Attacker Value
Unknown
CVE-2018-17158
Disclosure Date: December 04, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error can occur when handling the client address length field in an NFSv4 request. Unprivileged remote users with access to the NFS server can crash the system by sending a specially crafted NFSv4 request.
0
Attacker Value
Unknown
CVE-2018-17157
Disclosure Date: December 04, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error when handling opcodes can cause memory corruption by sending a specially crafted NFSv4 request. Unprivileged remote users with access to the NFS server may be able to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2018-17159
Disclosure Date: December 04, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, the NFS server lacks a bounds check in the READDIRPLUS NFS request. Unprivileged remote users with access to the NFS server can cause a resource exhaustion by forcing the server to allocate an arbitrarily large memory allocation.
0
Attacker Value
Unknown
CVE-2018-17156
Disclosure Date: November 28, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r340268) and 11.2-RELEASE-p5, due to incorrectly accounting for padding on 64-bit platforms, a buffer underwrite could occur when constructing an ICMP reply packet when using a non-standard value for the net.inet.icmp.quotelen sysctl.
0
Attacker Value
Unknown
CVE-2018-17154
Disclosure Date: September 28, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to insufficient memory checking in the freebsd4_getfsstat system call, a NULL pointer dereference can occur. Unprivileged authenticated local users may be able to cause a denial of service.
0
Attacker Value
Unknown
CVE-2018-17155
Disclosure Date: September 28, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r338983), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338984), and 10.4-RELEASE-p13, due to insufficient initialization of memory copied to userland in the getcontext and swapcontext system calls, small amounts of kernel memory may be disclosed to userland processes. Unprivileged authenticated local users may be able to access small amounts privileged kernel data.
0
Attacker Value
Unknown
CVE-2018-6925
Disclosure Date: September 28, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of IPv6 protocol control block flags through various failure paths, an unprivileged authenticated local user may be able to cause a NULL pointer dereference causing the kernel to crash.
0
Attacker Value
Unknown
CVE-2017-1083
Disclosure Date: September 12, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-RELEASE, a stack guard-page is available but is disabled by default. This results in the possibility a poorly written process could be cause a stack overflow.
0
Attacker Value
Unknown
CVE-2017-1084
Disclosure Date: September 12, 2018 (last updated November 27, 2024)
In FreeBSD before 11.2-RELEASE, multiple issues with the implementation of the stack guard-page reduce the protections afforded by the guard-page. This results in the possibility a poorly written process could be cause a stack overflow.
0