Skip to content
Noroxi

OpenBSD records

360 published records for vendor openbsd.

Researcher profile

Entered KEV
1 · 0.3%
Weaponized
7 · 1.9%
Pre-auth RCE
44
With a fix record
42.2%
Median publish → KEV
786 days

All records

360 records
  • smtp_mailaddr in smtp_session.c in OpenSMTPD 6.6, as used in OpenBSD 6.6 and other products, allows remote attackers to execute arbitrary co

    CriticalCVSS 9.8KEVWeaponizedEPSS 99%

    openbsd · opensmtpdJan 29, 2020

  • CVE-2023-38408
    63This week

    The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if

    CriticalCVSS 9.8Proof of conceptEPSS 80%

    openbsd · opensshJul 19, 2023

  • CVE-2024-6387
    62This week

    Openssh: regresshion - race condition in ssh allows rce/dos

    HighCVSS 8.1Proof of conceptEPSS 100%

    sonicwall · sma 6200 firmwareJul 1, 2024

  • CVE-2003-0466
    62This week

    Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code,

    CriticalCVSS 9.8Proof of conceptEPSS 78%

    redhat · wu ftpdAug 27, 2003

  • Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including di

    CriticalCVSS 9.8No exploitEPSS 58%

    sun · solarisAug 12, 2002

  • OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling.

    MediumCVSS 6.5Proof of conceptEPSS 90%

    openbsd · opensshFeb 3, 2023

  • Stack-based buffer overflow in the cons_options function in options.c in dhcpd in OpenBSD 4.0 through 4.2, and some other dhcpd implementati

    HighCVSS 7.2Proof of conceptEPSS 80%

    openbsd · openbsdOct 11, 2007

  • Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a

    CriticalCVSS 10.0Proof of conceptEPSS 39%

    mit · kerberosAug 14, 2001

  • OpenSSH through 7.7 is prone to a user enumeration vulnerability due to not delaying bailout for an invalid authenticating user until after

    MediumCVSS 5.3WeaponizedEPSS 99%

    openbsd · opensshAug 17, 2018

  • The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remote attackers to bypas

    MediumCVSS 5.9Proof of conceptEPSS 93%

    ssh · sshDec 18, 2023

  • sshd in OpenSSH before 7.3, when SHA256 or SHA512 are used for user password hashing, uses BLOWFISH hashing on a static password when the us

    MediumCVSS 5.9WeaponizedEPSS 89%

    openbsd · opensshFeb 13, 2017

  • Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (pr

    CriticalCVSS 10.0No exploitEPSS 34%

    apache · http serverAug 6, 2004

  • CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an in

    CriticalCVSS 10.0Proof of conceptEPSS 32%

    ssh · sshMar 12, 2001

  • The auth_password function in auth-passwd.c in sshd in OpenSSH before 7.3 does not limit password lengths for password authentication, which

    HighCVSS 7.5Proof of conceptEPSS 59%

    openbsd · opensshAug 7, 2016

  • Buffer overflow in sshd in OpenSSH 2.3.1 through 3.3 may allow remote attackers to execute arbitrary code via a large number of responses du

    CriticalCVSS 10.0Proof of conceptEPSS 27%

    openbsd · opensshJul 3, 2002

  • Buffer overflow in the ReadFontAlias function in XFree86 4.1.0 to 4.3.0, when using the CopyISOLatin1Lowered function, allows local or remot

    CriticalCVSS 10.0Proof of conceptEPSS 25%

    xfree86 project · x11r6Mar 3, 2004

  • Buffer overflow in ReadFontAlias from dirfile.c of XFree86 4.1.0 through 4.3.0 allows local users and remote attackers to execute arbitrary

    CriticalCVSS 10.0Proof of conceptEPSS 21%

    xfree86 project · x11r6Mar 3, 2004

  • Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} se

    CriticalCVSS 10.0Proof of conceptEPSS 19%

    mit · kerberos 5Jun 18, 2001

  • Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attacke

    MediumCVSS 5.0Proof of conceptEPSS 83%

    cisco · agent desktopMay 31, 2005

  • The resend_bytes function in roaming_common.c in the client in OpenSSH 5.x, 6.x, and 7.x before 7.1p2 allows remote servers to obtain sensit

    MediumCVSS 6.5Proof of conceptEPSS 63%

    sophos · unified threat management softwareJan 14, 2016

  • Signal handler race condition in OpenSSH before 4.4 allows remote attackers to cause a denial of service (crash), and possibly execute arbit

    HighCVSS 8.1Proof of conceptEPSS 45%

    openbsd · opensshSep 27, 2006

  • One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.

    CriticalCVSS 10.0Proof of conceptEPSS 18%

    david madore · ftpd-bsdFeb 12, 2001

  • Buffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets du

    CriticalCVSS 10.0Proof of conceptEPSS 18%

    openbsd · openbsdMar 10, 2007

  • Integer overflow in sshd in OpenSSH 2.9.9 through 3.3 allows remote attackers to execute arbitrary code during challenge response authentica

    CriticalCVSS 9.8No exploitEPSS 18%

    openbsd · opensshJul 3, 2002

  • Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attacker

    CriticalCVSS 10.0Proof of conceptEPSS 13%

    cvs · cvsAug 6, 2004