NetBSD records
180 published records for vendor netbsd.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 5 · 2.8%
- Pre-auth RCE
- 22
- With a fix record
- 15.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-189 Numeric Errors8
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer8
- CWE-20 Improper Input Validation6
- CWE-399 Resource Management Errors5
- CWE-264 Permissions, Privileges, and Access Controls4
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
The weakness classes this vendor ships most often: where to look.
CWEAll records
180 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
62This week | CVE-2024-6387Proof of concept | Openssh: regresshion - race condition in ssh allows rce/dossonicwall · sma 6200 firmware · CWE-364 | High8.1 | — | 99.5% | Jul 1, 2024 |
62This week | CVE-2003-0466Proof of concept | Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code,redhat · wu ftpd · CWE-193 | Critical9.8 | — | 78.1% | Aug 27, 2003 |
62This week | CVE-2002-1337Proof of concept | Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related tsendmail · sendmail · CWE-120 | Critical10.0 | — | 72.6% | Mar 7, 2003 |
60This week | CVE-2003-0694Weaponized | The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated usingsendmail · advanced message server | Critical10.0 | — | 66.2% | Oct 6, 2003 |
56Plan | CVE-1999-0046Proof of concept | Buffer overflow of rlogin program using TERM environmental variable.bsdi · bsd os · CWE-120 | Critical10.0 | — | 51.9% | Feb 6, 1997 |
52Plan | CVE-2001-0554Proof of concept | Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a mit · kerberos · CWE-120 | Critical10.0 | — | 38.7% | Aug 14, 2001 |
51Plan | CVE-2014-8517Weaponized | The fetch_url function in usr.bin/ftp/fetch.c in tnftp, as used in NetBSD 5.1 through 5.1.4, 5.2 through 5.2.2, 6.0 through 6.0.6, and 6.1 tnetbsd · netbsd · CWE-77 | High7.5 | — | 69.1% | Nov 17, 2014 |
49Plan | CVE-1999-0016Proof of concept | Land IP denial of service.cisco · ios | Medium5.0 | — | 95.7% | Dec 1, 1997 |
49Plan | CVE-1999-0009Proof of concept | Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.data general · dg ux | Critical10.0 | — | 29.0% | Apr 8, 1998 |
46Plan | CVE-2001-0247Proof of concept | Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} semit · kerberos 5 | Critical10.0 | — | 19.3% | Jun 18, 2001 |
45Plan | CVE-2017-1000375Proof of concept | NetBSD maps the run-time link-editor ld.so directly below the stack region, even if ASLR is enabled, this allows attackers to more easily manetbsd · netbsd · CWE-119 | Critical9.8 | — | 18.9% | Jun 19, 2017 |
45Plan | CVE-2001-0053Proof of concept | One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.david madore · ftpd-bsd | Critical10.0 | — | 17.9% | Feb 12, 2001 |
44Plan | CVE-2004-0230Proof of concept | TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connectiojuniper · junos | Medium5.0 | — | 80.3% | Aug 18, 2004 |
44Plan | CVE-2006-4304No exploit | Buffer overflow in the sppp driver in FreeBSD 4.11 through 6.1, NetBSD 2.0 through 4.0 beta before 20060823, and OpenBSD 3.8 and 3.9 before freebsd · freebsd | Critical10.0 | — | 11.9% | Aug 23, 2006 |
43Plan | CVE-2014-3566Weaponized | The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for manopenssl · openssl · CWE-310 | Low3.4 | — | 100.0% | Oct 14, 2014 |
42Plan | CVE-2006-6652Proof of concept | Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Appleapple · mac os x · CWE-119 | Critical9.0 | — | 20.0% | Dec 19, 2006 |
41Plan | CVE-1999-0513Proof of concept | ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.digital · unix | Medium5.0 | — | 70.9% | Jan 5, 1998 |
41Plan | CVE-2003-0001Proof of concept | Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain inffreebsd · freebsd · CWE-200 | Medium5.0 | — | 70.2% | Jan 17, 2003 |
40Plan | CVE-2012-0217Weaponized | The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracxen · xen · CWE-119 | High7.2 | — | 39.8% | Jun 12, 2012 |
40Plan | CVE-2011-2895No exploit | The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compressx · libxfont · CWE-119 | Critical9.3 | — | 8.4% | Aug 19, 2011 |
40Plan | CVE-2017-1000378No exploit | The NetBSD qsort() function is recursive, and not randomized, an attacker can construct a pathological input array of N elements that causesnetbsd · netbsd · CWE-400 | Critical9.8 | — | 4.1% | Jun 19, 2017 |
40Plan | CVE-2017-1000374No exploit | A flaw exists in NetBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution usnetbsd · netbsd | Critical9.8 | — | 3.4% | Jun 19, 2017 |
40Plan | CVE-2015-8212No exploit | CGI handling flaw in bozohttpd in NetBSD 6.0 through 6.0.6, 6.1 through 6.1.5, and 7.0 allows remote attackers to execute arbitrary code vianetbsd · netbsd · CWE-20 | Critical9.8 | — | 3.2% | Jan 19, 2017 |
40Plan | CVE-1999-0323No exploit | FreeBSD mmap function allows users to modify append-only or immutable files.freebsd · freebsd | Critical10.0 | — | 1.4% | Feb 20, 1998 |
39Monitor | CVE-2008-2476No exploit | The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 Fforce10 · ftos · CWE-20 | Critical9.3 | — | 7.4% | Oct 3, 2008 |
- CVE-2024-638762This week
Openssh: regresshion - race condition in ssh allows rce/dos
HighCVSS 8.1Proof of conceptEPSS 100%sonicwall · sma 6200 firmwareJul 1, 2024
- CVE-2003-046662This week
Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code,
CriticalCVSS 9.8Proof of conceptEPSS 78%redhat · wu ftpdAug 27, 2003
- CVE-2002-133762This week
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related t
CriticalCVSS 10.0Proof of conceptEPSS 73%sendmail · sendmailMar 7, 2003
- CVE-2003-069460This week
The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using
CriticalCVSS 10.0WeaponizedEPSS 66%sendmail · advanced message serverOct 6, 2003
- CVE-1999-004656Plan
Buffer overflow of rlogin program using TERM environmental variable.
CriticalCVSS 10.0Proof of conceptEPSS 52%bsdi · bsd osFeb 6, 1997
- CVE-2001-055452Plan
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a
CriticalCVSS 10.0Proof of conceptEPSS 39%mit · kerberosAug 14, 2001
- CVE-2014-851751Plan
The fetch_url function in usr.bin/ftp/fetch.c in tnftp, as used in NetBSD 5.1 through 5.1.4, 5.2 through 5.2.2, 6.0 through 6.0.6, and 6.1 t
HighCVSS 7.5WeaponizedEPSS 69%netbsd · netbsdNov 17, 2014
- CVE-1999-001649Plan
Land IP denial of service.
MediumCVSS 5.0Proof of conceptEPSS 96%cisco · iosDec 1, 1997
- CVE-1999-000949Plan
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
CriticalCVSS 10.0Proof of conceptEPSS 29%data general · dg uxApr 8, 1998
- CVE-2001-024746Plan
Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} se
CriticalCVSS 10.0Proof of conceptEPSS 19%mit · kerberos 5Jun 18, 2001
- CVE-2017-100037545Plan
NetBSD maps the run-time link-editor ld.so directly below the stack region, even if ASLR is enabled, this allows attackers to more easily ma
CriticalCVSS 9.8Proof of conceptEPSS 19%netbsd · netbsdJun 19, 2017
- CVE-2001-005345Plan
One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.
CriticalCVSS 10.0Proof of conceptEPSS 18%david madore · ftpd-bsdFeb 12, 2001
- CVE-2004-023044Plan
TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connectio
MediumCVSS 5.0Proof of conceptEPSS 80%juniper · junosAug 18, 2004
- CVE-2006-430444Plan
Buffer overflow in the sppp driver in FreeBSD 4.11 through 6.1, NetBSD 2.0 through 4.0 beta before 20060823, and OpenBSD 3.8 and 3.9 before
CriticalCVSS 10.0No exploitEPSS 12%freebsd · freebsdAug 23, 2006
- CVE-2014-356643Plan
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man
LowCVSS 3.4WeaponizedEPSS 100%openssl · opensslOct 14, 2014
- CVE-2006-665242Plan
Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple
CriticalCVSS 9.0Proof of conceptEPSS 20%apple · mac os xDec 19, 2006
- CVE-1999-051341Plan
ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.
MediumCVSS 5.0Proof of conceptEPSS 71%digital · unixJan 5, 1998
- CVE-2003-000141Plan
Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain inf
MediumCVSS 5.0Proof of conceptEPSS 70%freebsd · freebsdJan 17, 2003
- CVE-2012-021740Plan
The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Orac
HighCVSS 7.2WeaponizedEPSS 40%xen · xenJun 12, 2012
- CVE-2011-289540Plan
The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compress
CriticalCVSS 9.3No exploitEPSS 8%x · libxfontAug 19, 2011
- CVE-2017-100037840Plan
The NetBSD qsort() function is recursive, and not randomized, an attacker can construct a pathological input array of N elements that causes
CriticalCVSS 9.8No exploitEPSS 4%netbsd · netbsdJun 19, 2017
- CVE-2017-100037440Plan
A flaw exists in NetBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution us
CriticalCVSS 9.8No exploitEPSS 3%netbsd · netbsdJun 19, 2017
- CVE-2015-821240Plan
CGI handling flaw in bozohttpd in NetBSD 6.0 through 6.0.6, 6.1 through 6.1.5, and 7.0 allows remote attackers to execute arbitrary code via
CriticalCVSS 9.8No exploitEPSS 3%netbsd · netbsdJan 19, 2017
- CVE-1999-032340Plan
FreeBSD mmap function allows users to modify append-only or immutable files.
CriticalCVSS 10.0No exploitEPSS 1%freebsd · freebsdFeb 20, 1998
- CVE-2008-247639Monitor
The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 F
CriticalCVSS 9.3No exploitEPSS 7%force10 · ftosOct 3, 2008