Vulnerabilities
Vulnerable Software
Freebsd:  >> Freebsd  >> 5.0  Security Vulnerabilities
Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "routines for moving the physical cursor and scrolling."
CVSS Score
7.2
EPSS Score
0.002
Published
2002-03-08
Buffer overflow in catopen() function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to gain root privileges via a long environmental variable.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-12-11
The catopen function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.
CVSS Score
7.2
EPSS Score
0.0
Published
2000-12-11
The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG environmental variable.
CVSS Score
7.2
EPSS Score
0.0
Published
2000-12-11
Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-11-14
FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header.
CVSS Score
2.1
EPSS Score
0.001
Published
2000-10-20
Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-10-20
Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments.
CVSS Score
7.2
EPSS Score
0.0
Published
2000-10-20
OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.
CVSS Score
5.0
EPSS Score
0.004
Published
2000-06-12
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
CVSS Score
2.1
EPSS Score
0.001
Published
2000-05-29


Contact Us

Shodan ® - All rights reserved