Vulnerabilities > Freebsd

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0988 Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.
local
high complexity
gnu freebsd gentoo redhat trustix turbolinux ubuntu
3.7
2005-05-02 CVE-2005-0708 The sendfile system call in FreeBSD 4.8 through 4.11 and 5 through 5.4 can transfer portions of kernel memory if a file is truncated while it is being sent, which could allow remote attackers to obtain sensitive information.
network
low complexity
dragonflybsd freebsd
critical
10.0
2005-04-15 CVE-2005-1126 Resource Management Errors vulnerability in Freebsd
The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer before using it, which allows local users to obtain portions of sensitive kernel memory.
local
low complexity
freebsd CWE-399
2.1
2005-04-12 CVE-2005-0610 Local Insecure Temporary File Handling vulnerability in FreeBSD PortUpgrade
Multiple symlink vulnerabilities in portupgrade before 20041226_2 in FreeBSD allow local users to (1) overwrite arbitrary files and possibly replace packages to execute arbitrary code via pkg_fetch, (2) overwrite arbitrary files via temporary files when portupgrade upgrades a port or package, or (3) create arbitrary zero-byte files via the pkgdb.fixme temporary file.
local
low complexity
freebsd
7.2
2005-03-05 CVE-2005-0109 Information Disclosure vulnerability in Multiple Vendor Hyper-Threading Technology
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.
4.7
2005-03-01 CVE-2004-1053 Remote Buffer Overflow vulnerability in FreeBSD Fetch
Integer overflow in fetch on FreeBSD 4.1 through 5.3 allows remote malicious servers to execute arbitrary code via certain HTTP headers in an HTTP response, which lead to a buffer overflow.
network
low complexity
freebsd
critical
10.0
2005-01-10 CVE-2004-1066 Unspecified vulnerability in Freebsd
The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 through 5.3, and (2) linprocfs on FreeBSD 5.x through 5.3, do not properly validate a process argument vector, which allows local users to cause a denial of service (panic) or read portions of kernel memory.
local
low complexity
freebsd
3.6
2004-12-31 CVE-2004-1471 Multiple vulnerability in CVS
Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commit access to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a wrapper line.
network
high complexity
cvs openpkg sgi freebsd gentoo openbsd
7.1
2004-12-31 CVE-2004-0919 Unspecified vulnerability in Freebsd
The syscons CONS_SCRSHOT ioctl in FreeBSD 5.x allows local users to read arbitrary kernel memory via (1) negative coordinates or (2) large coordinates.
local
low complexity
freebsd
4.6
2004-12-06 CVE-2004-0618 Denial Of Service vulnerability in Freebsd 4.10/5.1/5.2.1
FreeBSD 5.1 for the Alpha processor allows local users to cause a denial of service (crash) via an execve system call with an unaligned memory address as an argument.
local
low complexity
freebsd
2.1