Vulnerabilities
Vulnerable Software
Freebsd:  >> Freebsd  >> 4.0  Security Vulnerabilities
The getnameinfo function in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows a remote attacker to cause a denial of service via a long DNS hostname.
CVSS Score
5.0
EPSS Score
0.007
Published
2000-12-11
Multiple buffer overflows in eject on FreeBSD and possibly other OSes allows local users to gain root privileges.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-11-14
FreeBSD 5.x, 4.x, and 3.x allows local users to cause a denial of service by executing a program with a malformed ELF image header.
CVSS Score
2.1
EPSS Score
0.001
Published
2000-10-20
Buffer overflow in the Linux binary compatibility module in FreeBSD 3.x through 5.x allows local users to gain root privileges via long filenames in the linux shadow file system.
CVSS Score
7.2
EPSS Score
0.001
Published
2000-10-20
Buffer overflows in brouted in FreeBSD and possibly other OSes allows local users to gain root privileges via long command line arguments.
CVSS Score
7.2
EPSS Score
0.0
Published
2000-10-20
libedit searches for the .editrc file in the current directory instead of the user's home directory, which may allow local users to execute arbitrary commands by installing a modified .editrc in another directory.
CVSS Score
4.6
EPSS Score
0.001
Published
2000-07-05
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
CVSS Score
5.0
EPSS Score
0.12
Published
2000-07-04
OpenSSL 0.9.4 and OpenSSH for FreeBSD do not properly check for the existence of the /dev/random or /dev/urandom devices, which are absent on FreeBSD Alpha systems, which causes them to produce weak keys which may be more easily broken.
CVSS Score
5.0
EPSS Score
0.004
Published
2000-06-12
A FreeBSD patch for SSH on 2000-01-14 configures ssh to listen on port 722 as well as port 22, which might allow remote attackers to access SSH through port 722 even if port 22 is otherwise filtered.
CVSS Score
7.5
EPSS Score
0.009
Published
2000-06-07
The undocumented semconfig system call in BSD freezes the state of semaphores, which allows local users to cause a denial of service of the semaphore system by using the semconfig call.
CVSS Score
2.1
EPSS Score
0.001
Published
2000-05-29


Contact Us

Shodan ® - All rights reserved