VendorsBsdibsd_osall versions
Vulnerabilities

Bsdi Bsd Os

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

38CVEs
CVE-1999-0046
Buffer overflow of rlogin program using TERM environmental variable.
Published 1999-09-29 · Modified
10.01 PoCEPSS 0.519
CVE-1999-0043
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
Published 1999-09-29 · Modified
10.0EPSS 0.446
CVE-1999-0009
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.290
CVE-1999-0002
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
Published 1999-09-29 · Modified
10.01 PoCEPSS 0.279
CVE-1999-0042
Buffer overflow in University of Washington's implementation of IMAP and POP servers.
Published 1999-09-29 · Modified
10.01 PoCEPSS 0.127
CVE-1999-0879
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.
Published 2000-01-04 · Modified
10.01 PoCEPSS 0.097
CVE-1999-0099
Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.
Published 1999-09-29 · Modified
10.0EPSS 0.033
CVE-1999-0047
MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.
Published 1999-09-29 · Modified
10.0EPSS 0.031
CVE-1999-0165
NFS cache poisoning.
Published 2000-02-04 · Modified
10.0EPSS 0.020
CVE-1999-0798
Buffer overflow in bootpd on OpenBSD, FreeBSD, and Linux systems via a malformed header type.
Published 2000-02-04 · Modified
10.0EPSS 0.016
CVE-1999-0323
FreeBSD mmap function allows users to modify append-only or immutable files.
Published 2000-06-02 · Modified
10.0EPSS 0.014
CVE-1999-0704
Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
Published 2000-01-04 · Modified
9.32 PoCEPSS 0.045
CVE-1999-0038
Buffer overflow in xlock program allows local users to execute commands as root.
Published 1999-09-29 · Modified
8.42 PoCEPSS 0.013
CVE-1999-0022
Local user gains root privileges via buffer overflow in rdist, via expstr() function.
Published 1999-09-29 · Modified
7.8EPSS 0.005
CVE-1999-0052
IP fragmentation denial of service in FreeBSD allows a remote attacker to cause a crash.
Published 1999-09-29 · Modified
7.5EPSS 0.021
CVE-1999-0040
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
Published 1999-09-29 · Modified
7.25 PoCEPSS 0.012
CVE-1999-0034
Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.
Published 1999-09-29 · Modified
7.24 PoCEPSS 0.012
CVE-1999-0130
Local users can start Sendmail in daemon mode and gain root privileges.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.011
CVE-1999-0032
Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.
Published 1999-09-29 · Modified
7.22 PoCEPSS 0.010
CVE-2000-1103
rcvtty in BSD 3.0 and 4.0 does not properly drop privileges before executing a script, which allows local attackers to gain privileges by specifying an alternate Trojan horse script on the command line.
Published 2000-12-19 · Modified
7.21 PoCEPSS 0.009
CVE-1999-0023
Local user gains root privileges via buffer overflow in rdist, via lookup() function.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.008
CVE-2001-1541
Buffer overflow in Unix-to-Unix Copy Protocol (UUCP) in BSDI BSD/OS 3.0 through 4.2 allows local users to execute arbitrary code via a long command line argument.
Published 2005-07-14 · Modified
7.2EPSS 0.006
CVE-1999-0131
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
Published 1999-09-29 · Modified
7.2EPSS 0.006
CVE-1999-0297
Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.
Published 2000-01-04 · Modified
7.2EPSS 0.004
CVE-1999-0304
mmap function in BSD allows local attackers in the kmem group to modify memory through devices.
Published 2000-01-04 · Modified
7.2EPSS 0.004
CVE-2008-4609
The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.
Published 2008-10-20 · Modified
7.1EPSS 0.321
CVE-1999-0061
File creation and deletion, and remote execution, in the BSD line printer daemon (lpd).
Published 2000-02-04 · Modified
5.1EPSS 0.025
CVE-1999-0024
DNS cache poisoning via BIND, by predictable query IDs.
Published 1999-09-29 · Modified
5.0EPSS 0.050
CVE-1999-0001
ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) via crafted packets.
Published 2000-02-04 · Modified
5.0EPSS 0.034
CVE-2001-1154
Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.
Published 2002-03-15 · Modified
5.0EPSS 0.016
CVE-1999-0880
Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly.
Published 2000-01-04 · Modified
5.0EPSS 0.014
CVE-1999-0305
The system configuration control (sysctl) facility in BSD based operating systems OpenBSD 2.2 and earlier, and FreeBSD 2.2.5 and earlier, does not properly restrict source routed packets even when the (1) dosourceroute or (2) forwarding variables are set, which allows remote attackers to spoof TCP connections.
Published 1999-09-29 · Modified
5.0EPSS 0.014
CVE-1999-0096
Sendmail decode alias can be used to overwrite sensitive files.
Published 1999-09-29 · Modified
5.0EPSS 0.013
CVE-1999-0129
Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.
Published 1999-09-29 · Modified
4.6EPSS 0.006
CVE-1999-0703
OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block devices.
Published 2000-01-04 · Modified
3.6EPSS 0.003
CVE-2001-1133
Vulnerability in a system call in BSDI 3.0 and 3.1 allows local users to cause a denial of service (reboot) in the kernel via a particular sequence of instructions.
Published 2002-03-15 · Modified
2.11 PoCEPSS 0.008
CVE-1999-0747
Denial of service in BSDi Symmetric Multiprocessing (SMP) when an fstat call is made when the system has a high CPU load.
Published 2000-04-18 · Modified
2.1EPSS 0.003
CVE-1999-0078
pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call.
Published 2000-02-04 · Modified
1.9EPSS 0.009