Vulnerabilities > Openbsd > Openbsd > 3.0

DATE CVE VULNERABILITY TITLE RISK
2007-01-18 CVE-2007-0343 Remote Denial Of Service vulnerability in OpenBSD ICMP6 Echo Request
OpenBSD before 20070116 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via certain IPv6 ICMP (aka ICMP6) echo request packets.
network
low complexity
openbsd
5.0
2005-12-31 CVE-2005-4351 Local Security vulnerability in kernel
The securelevels implementation in FreeBSD 7.0 and earlier, OpenBSD up to 3.8, DragonFly up to 1.2, and Linux up to 2.6.15 allows root users to bypass immutable settings for files by mounting another filesystem that masks the immutable files while the system is running.
local
low complexity
dragonfly freebsd linux openbsd
4.3
2005-05-31 CVE-2005-0356 Remote Denial Of Service vulnerability in Multiple Vendor TCP Timestamp PAWS
Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old.
5.0
2005-01-13 CVE-2005-0740 Remote Denial Of Service vulnerability in OpenBSD TCP Timestamp
The TCP stack (tcp_input.c) in OpenBSD 3.5 and 3.6 allows remote attackers to cause a denial of service (system panic) via crafted values in the TCP timestamp option, which causes invalid arguments to be used when calculating the retransmit timeout.
network
low complexity
openbsd
5.0
2004-12-31 CVE-2004-1799 Unspecified vulnerability in Openbsd
PF in certain OpenBSD versions, when stateful filtering is enabled, does not limit packets for a session to the original interface, which allows remote attackers to bypass intended packet filters via spoofed packets to other interfaces.
network
low complexity
openbsd
7.5
2004-11-23 CVE-2004-0257 Remote Denial Of Service vulnerability in BSD ICMPV6 Handling Routines
OpenBSD 3.4 and NetBSD 1.6 and 1.6.1 allow remote attackers to cause a denial of service (crash) by sending an IPv6 packet with a small MTU to a listening port and then issuing a TCP connect to that port.
network
low complexity
netbsd openbsd
5.0
2004-05-04 CVE-2004-0220 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Openbsd
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service via an ISAKMP packet with a malformed Cert Request payload, which causes an integer underflow that is used in a malloc operation that is not properly handled, as demonstrated by the Striker ISAKMP Protocol Test Suite.
network
low complexity
openbsd CWE-119
critical
10.0
2004-05-04 CVE-2004-0219 Unspecified vulnerability in Openbsd
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with a malformed IPSEC SA payload, as demonstrated by the Striker ISAKMP Protocol Test Suite.
network
low complexity
openbsd
5.0
2004-05-04 CVE-2004-0218 Denial Of Service vulnerability in OpenBSD ISAKMPD Zero Payload Length
isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (infinite loop) via an ISAKMP packet with a zero-length payload, as demonstrated by the Striker ISAKMP Protocol Test Suite.
network
low complexity
openbsd
5.0
2003-12-31 CVE-2003-1366 Information Exposure vulnerability in Openbsd
chpass in OpenBSD 2.0 through 3.2 allows local users to read portions of arbitrary files via a hard link attack on a temporary file used to store user database information.
3.3