Перейти к содержимому
Noroxi

Записи NetBSD

180 опубликованных записей вендора netbsd.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
5 · 2,8 %
Pre-auth RCE
22
С записью об исправлении
15,6 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

180 записей
  • CVE-2024-6387
    62На этой неделе

    Openssh: regresshion - race condition in ssh allows rce/dos

    ВысокаяCVSS 8,1Proof of conceptEPSS 100 %

    sonicwall · sma 6200 firmware1 июл. 2024 г.

  • CVE-2003-0466
    62На этой неделе

    Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code,

    КритическаяCVSS 9,8Proof of conceptEPSS 78 %

    redhat · wu ftpd27 авг. 2003 г.

  • CVE-2002-1337
    62На этой неделе

    Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related t

    КритическаяCVSS 10,0Proof of conceptEPSS 73 %

    sendmail · sendmail7 мар. 2003 г.

  • CVE-2003-0694
    60На этой неделе

    The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using

    КритическаяCVSS 10,0Готовый эксплойтEPSS 66 %

    sendmail · advanced message server6 окт. 2003 г.

  • CVE-1999-0046
    56В плане

    Buffer overflow of rlogin program using TERM environmental variable.

    КритическаяCVSS 10,0Proof of conceptEPSS 52 %

    bsdi · bsd os6 февр. 1997 г.

  • CVE-2001-0554
    52В плане

    Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a

    КритическаяCVSS 10,0Proof of conceptEPSS 39 %

    mit · kerberos14 авг. 2001 г.

  • CVE-2014-8517
    51В плане

    The fetch_url function in usr.bin/ftp/fetch.c in tnftp, as used in NetBSD 5.1 through 5.1.4, 5.2 through 5.2.2, 6.0 through 6.0.6, and 6.1 t

    ВысокаяCVSS 7,5Готовый эксплойтEPSS 69 %

    netbsd · netbsd17 нояб. 2014 г.

  • CVE-1999-0016
    49В плане

    Land IP denial of service.

    СредняяCVSS 5,0Proof of conceptEPSS 96 %

    cisco · ios1 дек. 1997 г.

  • CVE-1999-0009
    49В плане

    Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.

    КритическаяCVSS 10,0Proof of conceptEPSS 29 %

    data general · dg ux8 апр. 1998 г.

  • CVE-2001-0247
    46В плане

    Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} se

    КритическаяCVSS 10,0Proof of conceptEPSS 19 %

    mit · kerberos 518 июн. 2001 г.

  • CVE-2017-1000375
    45В плане

    NetBSD maps the run-time link-editor ld.so directly below the stack region, even if ASLR is enabled, this allows attackers to more easily ma

    КритическаяCVSS 9,8Proof of conceptEPSS 19 %

    netbsd · netbsd19 июн. 2017 г.

  • CVE-2001-0053
    45В плане

    One-byte buffer overflow in replydirname function in BSD-based ftpd allows remote attackers to gain root privileges.

    КритическаяCVSS 10,0Proof of conceptEPSS 18 %

    david madore · ftpd-bsd12 февр. 2001 г.

  • CVE-2004-0230
    44В плане

    TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connectio

    СредняяCVSS 5,0Proof of conceptEPSS 80 %

    juniper · junos18 авг. 2004 г.

  • CVE-2006-4304
    44В плане

    Buffer overflow in the sppp driver in FreeBSD 4.11 through 6.1, NetBSD 2.0 through 4.0 beta before 20060823, and OpenBSD 3.8 and 3.9 before

    КритическаяCVSS 10,0Эксплойта нетEPSS 12 %

    freebsd · freebsd23 авг. 2006 г.

  • CVE-2014-3566
    43В плане

    The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man

    НизкаяCVSS 3,4Готовый эксплойтEPSS 100 %

    openssl · openssl14 окт. 2014 г.

  • CVE-2006-6652
    42В плане

    Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple

    КритическаяCVSS 9,0Proof of conceptEPSS 20 %

    apple · mac os x19 дек. 2006 г.

  • CVE-1999-0513
    41В плане

    ICMP messages to broadcast addresses are allowed, allowing for a Smurf attack that can cause a denial of service.

    СредняяCVSS 5,0Proof of conceptEPSS 71 %

    digital · unix5 янв. 1998 г.

  • CVE-2003-0001
    41В плане

    Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain inf

    СредняяCVSS 5,0Proof of conceptEPSS 70 %

    freebsd · freebsd17 янв. 2003 г.

  • CVE-2012-0217
    40В плане

    The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Orac

    ВысокаяCVSS 7,2Готовый эксплойтEPSS 40 %

    xen · xen12 июн. 2012 г.

  • CVE-2011-2895
    40В плане

    The LZW decompressor in (1) the BufCompressedFill function in fontfile/decompress.c in X.Org libXfont before 1.4.4 and (2) compress/compress

    КритическаяCVSS 9,3Эксплойта нетEPSS 8 %

    x · libxfont19 авг. 2011 г.

  • CVE-2017-1000378
    40В плане

    The NetBSD qsort() function is recursive, and not randomized, an attacker can construct a pathological input array of N elements that causes

    КритическаяCVSS 9,8Эксплойта нетEPSS 4 %

    netbsd · netbsd19 июн. 2017 г.

  • CVE-2017-1000374
    40В плане

    A flaw exists in NetBSD's implementation of the stack guard page that allows attackers to bypass it resulting in arbitrary code execution us

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    netbsd · netbsd19 июн. 2017 г.

  • CVE-2015-8212
    40В плане

    CGI handling flaw in bozohttpd in NetBSD 6.0 through 6.0.6, 6.1 through 6.1.5, and 7.0 allows remote attackers to execute arbitrary code via

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    netbsd · netbsd19 янв. 2017 г.

  • CVE-1999-0323
    40В плане

    FreeBSD mmap function allows users to modify append-only or immutable files.

    КритическаяCVSS 10,0Эксплойта нетEPSS 1 %

    freebsd · freebsd20 февр. 1998 г.

  • CVE-2008-2476
    39Наблюдать

    The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 F

    КритическаяCVSS 9,3Эксплойта нетEPSS 7 %

    force10 · ftos3 окт. 2008 г.