|
Vulnerability Report: OpenBSD 3.x
|
This vulnerability report for OpenBSD 3.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in OpenBSD 3.x then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
|
|
|
|
86 Secunia Advisories in 2003-2009
|
Secunia has issued a total of 86 Secunia advisories in 2003-2009 for OpenBSD 3.x. Currently, 1% (1 out of 86) are marked as unpatched with the most severe being rated Less critical 
More information about the specific Secunia advisories affecting OpenBSD 3.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2008-02-07 |
Secunia Advisory ID: SA28819 |
Solution Status: Vendor Workaround |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Amit Klein has reported a vulnerability in OpenBSD, which can be exploited by malicious people to poison the DNS cache. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-12 |
Secunia Advisory ID: SA27186 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for OpenSSL. This fixes a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-10 |
Secunia Advisory ID: SA27160 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-16 |
Secunia Advisory ID: SA26479 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: Robert Watson has reported some vulnerabilities in Systrace and Sysjail included in OpenBSD, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2007-04-24 |
Secunia Advisory ID: SA24978 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-04-05 |
Secunia Advisory ID: SA24791 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS Privilege escalation Exposure of sensitive information
|
Where: Local system |
|
Short Description: OpenBSD has issued an update for X.Org. This fixes some vulnerabilities, which can be exploited by malicious, local users to disclose sensitive information, cause a DoS (Denial of Service), and gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2007-03-12 |
Secunia Advisory ID: SA24490 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-01-19 |
Secunia Advisory ID: SA23830 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2007-01-04 |
Secunia Advisory ID: SA23608 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-20 |
Secunia Advisory ID: SA22993 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-12 |
Secunia Advisory ID: SA22352 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for OpenSSH. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-09 |
Secunia Advisory ID: SA22330 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for OpenSSL. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-09 |
Secunia Advisory ID: SA22317 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for httpd. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-09 |
Secunia Advisory ID: SA22324 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information Privilege escalation DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD's systrace, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information, cause a DoS (Denial of Service) and gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-11 |
Secunia Advisory ID: SA21812 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for OpenSSL. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-11 |
Secunia Advisory ID: SA21835 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for BIND. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-09-04 |
Secunia Advisory ID: SA21731 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for sppp. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21642 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21652 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: A security issue has been reported in OpenBSD, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21655 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: OpenBSD has issued an update for dhcpd. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-08-28 |
Secunia Advisory ID: SA21641 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-07-31 |
Secunia Advisory ID: SA21307 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for httpd. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-16 |
Secunia Advisory ID: SA20679 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-05-03 |
Secunia Advisory ID: SA19916 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: OpenBSD has issued an update for xorg-x11. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-03-27 |
Secunia Advisory ID: SA19407 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-02-13 |
Secunia Advisory ID: SA18798 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: OpenBSD has issued an update for openssh. This fixes a weakness, which potentially can be exploited by malicious, local users to perform certain actions with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-02-03 |
Secunia Advisory ID: SA18712 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: SecurityLab Technologies has reported a vulnerability in OpenBSD, which can be exploited by malicious, local users to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-01-05 |
Secunia Advisory ID: SA18295 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for perl. This fixes a vulnerability, which can be exploited by malicious people to cause a Denial of Service and potentially to compromise a vulnerable Perl application. [Read More]
|
|
|
|
|
|
Release Date: 2006-01-05 |
Secunia Advisory ID: SA18296 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which potentially can be exploited by malicious, local users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-25 |
Secunia Advisory ID: SA16190 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for zlib. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) against a vulnerable application. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-08 |
Secunia Advisory ID: SA15978 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for zlib. This fixes a vulnerability, which can be exploited by malicious people to conduct a DoS (Denial of Service) against a vulnerable application, or potentially to execute arbitrary code. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-21 |
Secunia Advisory ID: SA15748 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: OpenBSD has issued an update for sudo. This fixes a vulnerability, which can be exploited by malicious, local users to execute arbitrary commands with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-20 |
Secunia Advisory ID: SA15722 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-05-19 |
Secunia Advisory ID: SA15417 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to cause a DoS (Denial of Service) on active TCP sessions. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-29 |
Secunia Advisory ID: SA15177 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for cvs. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-31 |
Secunia Advisory ID: SA14778 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for telnet. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-01 |
Secunia Advisory ID: SA14432 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown
|
Where: Local system |
|
Short Description: A vulnerability with an unknown impact has been reported in OpenBSD. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-13 |
Secunia Advisory ID: SA13790 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: OpenBSD has acknowledged a vulnerability in httpd's mod_include module, which can be exploited by malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-13 |
Secunia Advisory ID: SA13819 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-12-15 |
Secunia Advisory ID: SA13443 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-09-22 |
Secunia Advisory ID: SA12617 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From local network |
|
Short Description: Eilko Bos has reported a vulnerability in OpenBSD, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-17 |
Secunia Advisory ID: SA12574 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for Xpm. This fixes multiple vulnerabilities, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-30 |
Secunia Advisory ID: SA12400 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for zlib. This fixes a vulnerability, which potentially can be exploited by malicious people to conduct a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-08-27 |
Secunia Advisory ID: SA12394 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Vafa Izadinia has reported a vulnerability in OpenBSD, which can be exploited by malicious people to conduct DoS (Denial of Service) attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-14 |
Secunia Advisory ID: SA11859 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for httpd. This fixes various vulnerabilities, which can be exploited by malicious people to inject potentially malicious characters into error logfiles, bypass certain restrictions, cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-11 |
Secunia Advisory ID: SA11827 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data DoS
|
Where: From remote |
|
Short Description: Thomas Walpuski has reported a vulnerability in OpenBSD isakmpd, which can be exploited by malicious people to cause a DoS (Denial of Service) on users' connections. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-10 |
Secunia Advisory ID: SA11826 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for CVS. This fixes multiple vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-31 |
Secunia Advisory ID: SA11742 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From local network |
|
Short Description: OpenBSD has issued an update for kerberos. This fixes a vulnerability, which may allow certain people to impersonate others. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-30 |
Secunia Advisory ID: SA11723 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From local network |
|
Short Description: OpenBSD has issued an update for xdm. This fixes a security issue, which potentially may allow malicious users to gain unintended access to a system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-21 |
Secunia Advisory ID: SA11677 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued patches for cvs. These fix a vulnerability, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-13 |
Secunia Advisory ID: SA11605 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS
|
Where: Local system |
|
Short Description: OpenBSD has issued patches for procfs. These fix a vulnerability, which potentially can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-05 |
Secunia Advisory ID: SA11548 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: OpenBSD has issued patches for cvs. These fix two vulnerabilities, which can be exploited by malicious servers to compromise clients and by malicious users to retrieve arbitrary files from a vulnerable server. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-18 |
Secunia Advisory ID: SA11156 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Rapid7 has reported some vulnerabilities in OpenBSD isakmpd, which can be exploited by malicious people to cause a DoS (Denial-of-Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-03-18 |
Secunia Advisory ID: SA11154 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued a patch for OpenSSL. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial-of-Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-03-15 |
Secunia Advisory ID: SA11116 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: OpenBSD has issued patches for httpd. These fix a vulnerability, which can be exploited by malicious people to bypass certain restrictions on sparc64 systems. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-09 |
Secunia Advisory ID: SA11074 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued a patch, which fixes a vulnerability allowing malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-02-16 |
Secunia Advisory ID: SA10871 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: OpenBSD Project has issued patches, which fix some vulnerabilities in XFree86. These can be exploited by malicious, local users to crash the X server on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-06 |
Secunia Advisory ID: SA10806 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information Privilege escalation
|
Where: Local system |
|
Short Description: Joost Pol has discovered a vulnerability in BSD, allowing malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-02-05 |
Secunia Advisory ID: SA10801 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Georgi Guninski has reported a vulnerability in OpenBSD, which can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-01-14 |
Secunia Advisory ID: SA10622 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued a patch for isakmpd. This fixes a vulnerability, which can be exploited by malicious people to delete arbitrary SAs (Security Associations). [Read More]
|
|
|
|
|
|
Release Date: 2003-11-28 |
Secunia Advisory ID: SA10309 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: Some vulnerabilities have been identified in OpenBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-11-18 |
Secunia Advisory ID: SA10246 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to escalate their privileges or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-11-07 |
Secunia Advisory ID: SA10168 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data Exposure of sensitive information
|
Where: From remote |
|
Short Description: Multiple security issues have been reported in OpenBSD ISAKMPd, which potentially can be exploited by malicious people to gain knowledge of sensitive information or delete SAs (Security Associations). [Read More]
|
|
|
|
|
|
Release Date: 2003-11-05 |
Secunia Advisory ID: SA10147 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-10-31 |
Secunia Advisory ID: SA10112 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: Local system |
|
Short Description: OpenBSD has issued patches for httpd. These fix some vulnerabilities, which can be exploited by malicious, local users to escalate privileges or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-10-07 |
Secunia Advisory ID: SA9948 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: A vulnerability has been identified in OpenBSD, which can be exploited by malicious people on a local network to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-10-07 |
Secunia Advisory ID: SA9949 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: A vulnerability has been reported in OpenBSD, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-10-06 |
Secunia Advisory ID: SA9945 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for OpenSSL. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-09-17 |
Secunia Advisory ID: SA9764 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued an update for sendmail. These fixes a vulnerability which possibly could allow malicious people to gain system access. [Read More]
|
|
|
|
|
|
Release Date: 2003-09-17 |
Secunia Advisory ID: SA9746 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued a patch for ssh. This fix a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-09-13 |
Secunia Advisory ID: SA9722 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been identified in OpenBSD allowing a malicious root user to escalate privileges. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-26 |
Secunia Advisory ID: SA9604 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: OpenBSD has issued a patch for Sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system or potentially compromise it. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-21 |
Secunia Advisory ID: SA9581 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: OpenBSD has reported a vulnerability, which can be exploited by malicious, local users to cause a DoS (Denial of Service) on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-05 |
Secunia Advisory ID: SA9447 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS System access
|
Where: From remote |
|
Short Description: A vulnerability has been identified in OpenBSD, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system or compromise it. [Read More]
|
|
|
|
|
|
Release Date: 2003-04-07 |
Secunia Advisory ID: SA8533 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Samba is vulnerable to a buffer overflow, which can be exploited by anonymous users. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-31 |
Secunia Advisory ID: SA8460 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: OpenBSD has issued updated packages for sendmail. These fix a vulnerability in the address parsing, which potentially can be exploited to compromise a vulnerable mail server. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-25 |
Secunia Advisory ID: SA8399 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Spoofing Security Bypass
|
Where: From remote |
|
Short Description: OpenBSD has issued patches for Kerberos to address a cryptographic weakness. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-19 |
Secunia Advisory ID: SA8333 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: OpenBSD has released updates for openssl. These eliminate an information disclosure vulnerability, which can be exploited by malicious people to gain knowledge of the RSA secret. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-17 |
Secunia Advisory ID: SA8299 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: A vulnerability has been identified in Samba, which can be exploited by a malicious person to compromise a vulnerable server. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-06 |
Secunia Advisory ID: SA8228 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: OpenBSD Project has issued patches to the utility "lprm". These fix a vulnerability, which can be exploited by a local user to escalate privileges. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-03 |
Secunia Advisory ID: SA8198 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued patches for Sendmail. These eliminate an extremely critical vulnerability, which can result in remote root compromise of a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-02-28 |
Secunia Advisory ID: SA8178 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information
|
Where: From remote |
|
Short Description: OpenBSD has issued updates for httpd. httpd reveals inode number in the ETag header and child PIDs when generating multipart MIME boundaries. [Read More]
|
|
|
|
|
|
Release Date: 2003-02-24 |
Secunia Advisory ID: SA8122 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: OpenBSD has released updated packages for openssl. These eliminate an information disclosure vulnerability, which can be exploited by malicious people to gain knowledge of a used plaintext block in a SSL/TLS session. [Read More]
|
|
|
|
|
|
Release Date: 2003-01-22 |
Secunia Advisory ID: SA7921 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued updates to fix the double-free vulnerability in CVS, allowing anonymous remote users to execute arbitrary code. [Read More]
|
|
|
|
|
|
Release Date: 2002-12-11 |
Secunia Advisory ID: SA7684 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: A vulnerability has been reported in the FTP client on various Unix based operating systems, which can be exploited by malicious people to place files in arbitrary locations on a users system. [Read More]
|
|
|
|
|
|
Release Date: 2002-11-15 |
Secunia Advisory ID: SA7524 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: OpenBSD has issued updates to the three recent BIND holes, one allowing attackers system access from remote. [Read More]
|
|
|