Vulnerabilities > Freebsd > Low

DATE CVE VULNERABILITY TITLE RISK
2006-10-24 CVE-2006-5483 Local Denial of Service vulnerability in Freebsd 6.1
p1003_1b.c in FreeBSD 6.1 allows local users to cause an unspecified denial of service by setting a scheduler policy, which should only be settable by root.
local
low complexity
freebsd
2.1
2006-04-20 CVE-2006-1056 Cryptographic Issues vulnerability in multiple products
The Linux kernel before 2.6.16.9 and the FreeBSD kernel, when running on AMD64 and other 7th and 8th generation AuthenticAMD processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is pending, which allows one process to determine portions of the state of floating point instructions of other processes, which can be leveraged to obtain sensitive information such as cryptographic keys.
local
low complexity
freebsd linux CWE-310
2.1
2006-01-25 CVE-2006-0379 Local Kernel Memory Disclosure vulnerability in Freebsd 5.4/6.0
FreeBSD kernel 5.4-STABLE and 6.0 does not completely initialize a buffer before making it available to userland, which could allow local users to read portions of kernel memory.
local
low complexity
freebsd
2.1
2006-01-25 CVE-2006-0380 Local Kernel Memory Disclosure vulnerability in Freebsd 5.4/6.0
A logic error in FreeBSD kernel 5.4-STABLE and 6.0 causes the kernel to calculate an incorrect buffer length, which causes more data to be copied to userland than intended, which could allow local users to read portions of kernel memory.
local
low complexity
freebsd
2.1
2006-01-11 CVE-2006-0055 Unspecified vulnerability in Freebsd
The ispell_op function in ee on FreeBSD 4.10 to 6.0 uses predictable filenames and does not confirm which file is being written, which allows local users to overwrite arbitrary files via a symlink attack when ee invokes ispell.
local
low complexity
freebsd
2.1
2005-05-02 CVE-2005-0988 Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by gzip after the decompression is complete.
local
high complexity
gnu freebsd gentoo redhat trustix turbolinux ubuntu
3.7
2005-04-15 CVE-2005-1126 Resource Management Errors vulnerability in Freebsd
The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer before using it, which allows local users to obtain portions of sensitive kernel memory.
local
low complexity
freebsd CWE-399
2.1
2005-01-10 CVE-2004-1066 Unspecified vulnerability in Freebsd
The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 through 5.3, and (2) linprocfs on FreeBSD 5.x through 5.3, do not properly validate a process argument vector, which allows local users to cause a denial of service (panic) or read portions of kernel memory.
local
low complexity
freebsd
3.6
2004-12-06 CVE-2004-0602 Unspecified vulnerability in Freebsd 4.0/5.0
The binary compatibility mode for FreeBSD 4.x and 5.x does not properly handle certain Linux system calls, which could allow local users to access kernel memory to gain privileges or cause a system panic.
local
low complexity
freebsd
2.1
2004-12-06 CVE-2004-0618 Denial Of Service vulnerability in Freebsd 4.10/5.1/5.2.1
FreeBSD 5.1 for the Alpha processor allows local users to cause a denial of service (crash) via an execve system call with an unaligned memory address as an argument.
local
low complexity
freebsd
2.1