Vulnerabilities > Freebsd

DATE CVE VULNERABILITY TITLE RISK
2007-07-12 CVE-2007-3721 Denial-Of-Service vulnerability in FreeBSD
The ULE process scheduler in the FreeBSD kernel gives preference to "interactive" processes that perform voluntary sleeps, which allows local users to cause a denial of service (CPU consumption), as described in "Secretly Monopolizing the CPU Without Superuser Privileges."
local
low complexity
freebsd
2.1
2007-04-25 CVE-2007-2242 Denial of Service vulnerability in IPv6 Protocol Type 0 Route Header
The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that create network amplification between two routers.
network
low complexity
openbsd ietf netbsd freebsd
7.8
2007-03-28 CVE-2007-1719 Local Security vulnerability in Jason W. Bacon Mcweject 0.9
Buffer overflow in eject.c in Jason W.
local
low complexity
freebsd jason-w-bacon
7.2
2007-01-17 CVE-2007-0267 Resource Management Errors vulnerability in multiple products
The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly corrupt other filesystems by mounting a crafted UNIX File System (UFS) DMG image that contains a corrupted directory entry (struct direct), related to the ufs_dirbad function.
local
low complexity
apple freebsd CWE-399
6.6
2007-01-13 CVE-2007-0229 Numeric Errors vulnerability in multiple products
Integer overflow in the ffs_mountfs function in Mac OS X 10.4.8 and FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly gain privileges via a crafted DMG image that causes "allocation of a negative size buffer" leading to a heap-based buffer overflow, a related issue to CVE-2006-5679.
local
low complexity
apple freebsd CWE-189
7.2
2007-01-11 CVE-2007-0166 Local Symbolic Link vulnerability in FreeBSD Jail RC.D
The jail rc.d script in FreeBSD 5.3 up to 6.2 does not verify pathnames when writing to /var/log/console.log during a jail start-up, or when file systems are mounted or unmounted, which allows local root users to overwrite arbitrary files, or mount/unmount files, outside of the jail via a symlink attack.
local
freebsd
6.6
2006-11-21 CVE-2006-6013 Local Integer Overflow vulnerability in Multiple BSD Vendor FireWire IOCTL
Integer signedness error in the fw_ioctl (FW_IOCTL) function in the FireWire (IEEE-1394) drivers (dev/firewire/fwdev.c) in various BSD kernels, including DragonFlyBSD, FreeBSD 5.5, MidnightBSD 0.1-CURRENT before 20061115, NetBSD-current before 20061116, NetBSD-4 before 20061203, and TrustedBSD, allows local users to read arbitrary memory contents via certain negative values of crom_buf->len in an FW_GCROM command.
2.1
2006-11-09 CVE-2006-5824 Denial-Of-Service vulnerability in Freebsd 6.1
Integer overflow in the ffs_rdextattr function in FreeBSD 6.1 allows local users to cause a denial of service (kernel panic) and trigger a heap-based buffer overflow via a crafted UFS filesystem, a different vulnerability than CVE-2006-5679.
local
low complexity
freebsd
4.9
2006-11-09 CVE-2006-5680 Remote Denial Of Service vulnerability in Freebsd 6
The libarchive library in FreeBSD 6-STABLE after 2006-09-05 and before 2006-11-08 allows context-dependent attackers to cause a denial of service (CPU consumption) via a malformed archive that causes libarchive to skip a region past the actual end of the archive, which triggers an infinite loop that attempts to read more data.
network
low complexity
freebsd
5.0
2006-11-03 CVE-2006-5679 Numeric Errors vulnerability in Freebsd 6.1
Integer overflow in the ffs_mountfs function in FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted UFS filesystem that causes invalid or large size parameters to be provided to the kmem_alloc function.
local
low complexity
freebsd CWE-189
4.6