Show filters
531 Total Results
Displaying 191-200 of 531
Sort by:
Attacker Value
Unknown
CVE-2016-1881
Disclosure Date: February 15, 2017 (last updated November 26, 2024)
The kernel in FreeBSD 9.3, 10.1, and 10.2 allows local users to cause a denial of service (crash) or potentially gain privilege via a crafted Linux compatibility layer setgroups system call.
0
Attacker Value
Unknown
CVE-2016-1889
Disclosure Date: February 15, 2017 (last updated November 26, 2024)
Integer overflow in the bhyve hypervisor in FreeBSD 10.1, 10.2, 10.3, and 11.0 when configured with a large amount of guest memory, allows local users to gain privilege via a crafted device descriptor.
0
Attacker Value
Unknown
CVE-2015-5677
Disclosure Date: February 07, 2017 (last updated November 26, 2024)
bsnmpd, as used in FreeBSD 9.3, 10.1, and 10.2, uses world-readable permissions on the snmpd.config file, which allows local users to obtain the secret key for USM authentication by reading the file.
0
Attacker Value
Unknown
CVE-2016-2518
Disclosure Date: January 30, 2017 (last updated November 25, 2024)
The MATCH_ASSOC function in NTP before version 4.2.8p9 and 4.3.x before 4.3.92 allows remote attackers to cause an out-of-bounds reference via an addpeer request with a large hmode value.
0
Attacker Value
Unknown
CVE-2015-7973
Disclosure Date: January 30, 2017 (last updated November 25, 2024)
NTP before 4.2.8p6 and 4.3.x before 4.3.90, when configured in broadcast mode, allows man-in-the-middle attackers to conduct replay attacks by sniffing the network.
0
Attacker Value
Unknown
CVE-2015-7977
Disclosure Date: January 30, 2017 (last updated November 25, 2024)
ntpd in NTP before 4.2.8p6 and 4.3.x before 4.3.90 allows remote attackers to cause a denial of service (NULL pointer dereference) via a ntpdc reslist command.
0
Attacker Value
Unknown
CVE-2016-5766
Disclosure Date: August 07, 2016 (last updated November 25, 2024)
Integer overflow in the _gd2GetHeader function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via crafted chunk dimensions in an image.
0
Attacker Value
Unknown
CVE-2016-1887
Disclosure Date: May 25, 2016 (last updated November 25, 2024)
Integer signedness error in the sockargs function in sys/kern/uipc_syscalls.c in FreeBSD 10.1 before p34, 10.2 before p17, and 10.3 before p3 allows local users to cause a denial of service (memory overwrite and kernel panic) or gain privileges via a negative buflen argument, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2016-1886
Disclosure Date: May 25, 2016 (last updated November 25, 2024)
Integer signedness error in the genkbd_commonioctl function in sys/dev/kbd/kbd.c in FreeBSD 9.3 before p42, 10.1 before p34, 10.2 before p17, and 10.3 before p3 allows local users to obtain sensitive information from kernel memory, cause a denial of service (memory overwrite and kernel crash), or gain privileges via a negative value in the flen structure member in the arg argument in a SETFKEY ioctl call, which triggers a "two way heap and stack overflow."
0
Attacker Value
Unknown
CVE-2016-1885
Disclosure Date: April 12, 2016 (last updated November 25, 2024)
Integer signedness error in the amd64_set_ldt function in sys/amd64/amd64/sys_machdep.c in FreeBSD 9.3 before p39, 10.1 before p31, and 10.2 before p14 allows local users to cause a denial of service (kernel panic) via an i386_set_ldt system call, which triggers a heap-based buffer overflow.
0