Show filters
23 Total Results
Displaying 1-10 of 23
Sort by:
Attacker Value
Unknown
CVE-2012-4576
Disclosure Date: December 02, 2019 (last updated November 27, 2024)
FreeBSD: Input Validation Flaw allows local users to gain elevated privileges
0
Attacker Value
Unknown
CVE-2018-6923
Disclosure Date: September 04, 2018 (last updated November 27, 2024)
In FreeBSD before 11.1-STABLE, 11.2-RELEASE-p2, 11.1-RELEASE-p13, ip fragment reassembly code is vulnerable to a denial of service due to excessive system resource consumption. This issue can allow a remote attacker who is able to send an arbitrary ip fragments to cause the machine to consume excessive resources.
0
Attacker Value
Unknown
CVE-2016-5766
Disclosure Date: August 07, 2016 (last updated November 25, 2024)
Integer overflow in the _gd2GetHeader function in gd_gd2.c in the GD Graphics Library (aka libgd) before 2.2.3, as used in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via crafted chunk dimensions in an image.
0
Attacker Value
Unknown
CVE-2014-3000
Disclosure Date: May 02, 2014 (last updated October 05, 2023)
The TCP reassembly function in the inet module in FreeBSD 8.3 before p16, 8.4 before p9, 9.1 before p12, 9.2 before p5, and 10.0 before p2 allows remote attackers to cause a denial of service (undefined memory access and system crash) or possibly read system memory via multiple crafted packets, related to moving a reassemble queue entry to the segment list when the queue is full.
0
Attacker Value
Unknown
CVE-2014-1453
Disclosure Date: April 16, 2014 (last updated October 05, 2023)
The NFS server (nfsserver) in FreeBSD 8.3 through 10.0 does not acquire locks in the proper order when converting a directory file handle to a vnode, which allows remote authenticated users to cause a denial of service (deadlock) via vectors involving a thread that uses the correct locking order.
0
Attacker Value
Unknown
CVE-2014-1452
Disclosure Date: January 21, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted GETBULK PDU request.
0
Attacker Value
Unknown
CVE-2013-6834
Disclosure Date: November 21, 2013 (last updated October 05, 2023)
The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call.
0
Attacker Value
Unknown
CVE-2013-6832
Disclosure Date: November 21, 2013 (last updated October 05, 2023)
The nand_ioctl function in sys/dev/nand/nand_geom.c in the nand driver in the kernel in FreeBSD 10 and earlier does not properly initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call.
0
Attacker Value
Unknown
CVE-2013-6833
Disclosure Date: November 21, 2013 (last updated October 05, 2023)
The qls_eioctl function in sys/dev/qlxge/qls_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call.
0
Attacker Value
Unknown
CVE-2013-5710
Disclosure Date: September 23, 2013 (last updated October 05, 2023)
The nullfs implementation in sys/fs/nullfs/null_vnops.c in the kernel in FreeBSD 8.3 through 9.2 allows local users with certain permissions to bypass access restrictions via a hardlink in a nullfs instance to a file in a different instance.
0