|
Vulnerability Report: FreeBSD 4.x
|
This vulnerability report for FreeBSD 4.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in FreeBSD 4.x then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
|
|
|
|
77 Secunia Advisories in 2003-2009
|
Secunia has issued a total of 77 Secunia advisories in 2003-2009 for FreeBSD 4.x. Currently, 1% (1 out of 77) are marked as unpatched with the most severe being rated Not critical 
More information about the specific Secunia advisories affecting FreeBSD 4.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2007-11-30 |
Secunia Advisory ID: SA27879 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From local network |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2007-10-04 |
Secunia Advisory ID: SA27012 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for openssl. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2007-08-02 |
Secunia Advisory ID: SA26263 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for tcpdump. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2007-05-24 |
Secunia Advisory ID: SA25393 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for file. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-12-06 |
Secunia Advisory ID: SA23198 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for gtar. This fixes a security issue, which can be exploited by malicious people to overwrite arbitrary files. [Read More]
|
|
|
|
|
|
Release Date: 2006-11-16 |
Secunia Advisory ID: SA22917 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Filipe Balestra and Rodrigo Rubira Branco have reported a vulnerability in FreeBSD, which can be exploited by malicious, local users to disclose potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-10-18 |
Secunia Advisory ID: SA22413 |
Solution Status: Vendor Workaround |
|
Criticality:
 |
Impact: DoS
|
Where: Local system |
|
Short Description: Some vulnerabilities have been reported in FreeBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-10-02 |
Secunia Advisory ID: SA22236 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for openssh. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-29 |
Secunia Advisory ID: SA22165 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for openssl. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-20 |
Secunia Advisory ID: SA22002 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for gzip. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-09-07 |
Secunia Advisory ID: SA21785 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for openssl. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-08-24 |
Secunia Advisory ID: SA21587 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious people to cause a DoS (Denial of Service), gain knowledge about potentially sensitive information, and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-15 |
Secunia Advisory ID: SA20651 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-06-01 |
Secunia Advisory ID: SA20390 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: Local system |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-04-19 |
Secunia Advisory ID: SA19715 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: A security issue has been reported in FreeBSD, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-03-23 |
Secunia Advisory ID: SA19345 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for sendmail. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2006-03-23 |
Secunia Advisory ID: SA19347 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Privilege escalation
|
Where: From remote |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious, local users to gain escalated privileges or by malicious users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-03-23 |
Secunia Advisory ID: SA19366 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: A security issue has been reported in FreeBSD, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-02-27 |
Secunia Advisory ID: SA19017 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: Evgeny Legerov has reported a vulnerability in FreeBSD, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2006-01-11 |
Secunia Advisory ID: SA18404 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-01-11 |
Secunia Advisory ID: SA18401 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: FreeBSD has issued an update for texindex. This fixes a vulnerability, which can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2006-01-11 |
Secunia Advisory ID: SA18395 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for cpio. This fixes a vulnerability, which potentially can be exploited by malicious, local users to cause a DoS (Denial of Service) and by malicious people to cause files to be unpacked to arbitrary locations on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-10-11 |
Secunia Advisory ID: SA17146 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for openssl. This fixes a vulnerability, which potentially can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-08 |
Secunia Advisory ID: SA16718 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: FreeBSD has issued an update for contrib_cvs. This fixes a security issue, which potentially can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-30 |
Secunia Advisory ID: SA15867 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for the TCP stack. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) on active TCP sessions. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-30 |
Secunia Advisory ID: SA15869 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for bzip2. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-06-10 |
Secunia Advisory ID: SA15655 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for gzip. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-13 |
Secunia Advisory ID: SA15348 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Colin Percival has reported a vulnerability in FreeBSD, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-06 |
Secunia Advisory ID: SA15262 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Christian S.J. Peron has reported some vulnerabilities in FreeBSD, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-06 |
Secunia Advisory ID: SA15260 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data Exposure of sensitive information
|
Where: Local system |
|
Short Description: Christian S.J. Peron has reported a security issue in FreeBSD, which can be exploited by malicious, local users to gain knowledge of sensitive information or corrupt data. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-06 |
Secunia Advisory ID: SA15261 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Christer Oberg has reported a vulnerability in FreeBSD, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-25 |
Secunia Advisory ID: SA15090 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Unknown DoS System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for cvs. This fixes some vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-15 |
Secunia Advisory ID: SA14959 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information
|
Where: Local system |
|
Short Description: Ilja van Sprundel has reported a vulnerability in FreeBSD, which can be exploited by malicious, local users to gain knowledge of potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-06 |
Secunia Advisory ID: SA14842 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information
|
Where: Local system |
|
Short Description: Sven Berkvens and Marc Olzheim have reported a vulnerability in FreeBSD, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-29 |
Secunia Advisory ID: SA14763 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for telnet. This fixes two vulnerabilities, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-02 |
Secunia Advisory ID: SA13352 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious, local users to gain knowledge of sensitive information or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-11-18 |
Secunia Advisory ID: SA13226 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Colin Percival has reported a vulnerability in FreeBSD, which potentially can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-21 |
Secunia Advisory ID: SA12598 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information DoS System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for CVS. This fixes multiple vulnerabilities, which can be exploited by malicious users to cause a DoS (Denial of Service), compromise a vulnerable system, or gain knowledge of certain system information. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-02 |
Secunia Advisory ID: SA11983 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information Privilege escalation
|
Where: Local system |
|
Short Description: Tim Robbins has discovered a vulnerability in FreeBSD, which can be exploited by malicious, local users to gain knowledge of sensitive information or gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-08 |
Secunia Advisory ID: SA11797 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Manipulation of data
|
Where: Local system |
|
Short Description: Pawel Malachowski has discovered a vulnerability in FreeBSD, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-26 |
Secunia Advisory ID: SA11714 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: Stephan Uphoff and Matt Dillon has discovered a security issue in FreeBSD. This can be exploited by malicious, local users to prevent changes to certain files, which they have read access to, from being committed to disk. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-19 |
Secunia Advisory ID: SA11652 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued updates for cvs. These fix a vulnerability, which can be exploited by malicious users to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-06 |
Secunia Advisory ID: SA11552 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From local network |
|
Short Description: FreeBSD has addressed a vulnerability in kadmind, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-06 |
Secunia Advisory ID: SA11551 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From local network |
|
Short Description: FreeBSD has addressed an older vulnerability in heimdal, which can allow certain people to impersonate others. [Read More]
|
|
|
|
|
|
Release Date: 2004-04-16 |
Secunia Advisory ID: SA11391 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: FreeBSD has issued a patch for CVS. This fixes two vulnerabilities allowing malicious servers to compromise clients, and malicious users to retrieve arbitrary files from a vulnerable server. [Read More]
|
|
|
|
|
|
Release Date: 2004-03-18 |
Secunia Advisory ID: SA11150 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued a patch for OpenSSL. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial-of-Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-03-03 |
Secunia Advisory ID: SA11023 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Alexander Cuttergo has discovered a vulnerability in FreeBSD, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-02-06 |
Secunia Advisory ID: SA10806 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information Privilege escalation
|
Where: Local system |
|
Short Description: Joost Pol has discovered a vulnerability in BSD, allowing malicious, local users to gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2003-12-01 |
Secunia Advisory ID: SA10317 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: FreeBSD has issued updated packages for bind. These fix a vulnerability, which can be exploited to poison the DNS cache with negative entries. [Read More]
|
|
|
|
|
|
Release Date: 2003-10-06 |
Secunia Advisory ID: SA9941 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an update for OpenSSL. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-10-06 |
Secunia Advisory ID: SA9940 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued an updated package for OpenSSH. This fixes a vulnerability in the PAM implementation, which could lead to system compromise. [Read More]
|
|
|
|
|
|
Release Date: 2003-10-04 |
Secunia Advisory ID: SA9927 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information DoS
|
Where: Local system |
|
Short Description: Vulnerabilities have been reported in FreeBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2003-10-03 |
Secunia Advisory ID: SA9926 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: Local system |
|
Short Description: A vulnerability has been reported in FreeBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and potentially escalate privileges. [Read More]
|
|
|
|
|
|
Release Date: 2003-09-25 |
Secunia Advisory ID: SA9840 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From local network |
|
Short Description: A vulnerability has been identified in FreeBSD, which can be exploited by malicious people on a local network to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2003-09-18 |
Secunia Advisory ID: SA9767 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued updated packages for sendmail. These fixes a vulnerability which possibly could allow malicious people to gain system access. [Read More]
|
|
|
|
|
|
Release Date: 2003-09-17 |
Secunia Advisory ID: SA9745 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: FreeBSD has issued updates for OpenSSH. These fix a vulnerability, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-27 |
Secunia Advisory ID: SA9614 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: FreeBSD has issued a patch for Sendmail. This fixes a vulnerability, which can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system or potentially compromise it. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-12 |
Secunia Advisory ID: SA9504 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information
|
Where: Local system |
|
Short Description: An information disclosure vulnerability has been identified in FreeBSD, which can be exploited by malicious, local users to gain knowledge of content in kernel memory. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-12 |
Secunia Advisory ID: SA9503 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: Local system |
|
Short Description: A vulnerability has been identified in FreeBSD, which can be exploited by malicious, local users to cause a DoS (Denial of Service) on a vulnerable system or potentially escalate privileges. [Read More]
|
|
|
|
|
|
Release Date: 2003-08-04 |
Secunia Advisory ID: SA9423 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS System access
|
Where: From remote |
|
Short Description: A vulnerability has been identified in FreeBSD, which potentially can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system or compromise it. [Read More]
|
|
|
|
|
|
Release Date: 2003-04-08 |
Secunia Advisory ID: SA8540 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From local network |
|
Short Description: FreeBSD has issued updated packages for samba. These fix multiple vulnerabilities, where the most serious can be exploited to compromise a vulnerable server. [Read More]
|
|
|
|
|
|
Release Date: 2003-04-07 |
Secunia Advisory ID: SA8533 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From local network |
|
Short Description: Samba is vulnerable to a buffer overflow, which can be exploited by anonymous users. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-31 |
Secunia Advisory ID: SA8450 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued updated packages for sendmail. These fix a vulnerability in the address parsing, which potentially can be exploited to compromise a vulnerable mail server. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-24 |
Secunia Advisory ID: SA8382 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: FreeBSD has issued updates for openssl. A vulnerability has been discovered allowing malicious people to retrieve the premaster-secret. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-21 |
Secunia Advisory ID: SA8361 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access DoS
|
Where: From remote |
|
Short Description: FreeBSD has issued updates to RPC XDR. A vulnerability has been discovered allowing malicious users to cause an integer overflow, this could lead to a Denial of Service and possibly also execution of arbitrary code. [Read More]
|
|
|
|
|
|
Release Date: 2003-03-17 |
Secunia Advisory ID: SA8299 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From local network |
|
Short Description: A vulnerability has been identified in Samba, which can be exploited by a malicious person to compromise a vulnerable server. [Read More]
|
|
|
|
|
|
Release Date: 2003-02-25 |
Secunia Advisory ID: SA8142 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing Security Bypass
|
Where: From remote |
|
Short Description: A vulnerability has been identified in FreeBSD's syncookie implementation, which can be exploited by a malicious person to spoof a TCP connection. [Read More]
|
|
|
|
|
|
Release Date: 2003-02-25 |
Secunia Advisory ID: SA8141 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: FreeBSD has released updates for openssl. These eliminate an information disclosure vulnerability, which can be exploited by malicious people to gain knowledge of a used plaintext block in a SSL/TLS session. [Read More]
|
|
|
|
|
|
Release Date: 2003-02-05 |
Secunia Advisory ID: SA8000 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued updates to fix the double-free vulnerability in CVS allowing anonymous remote users to execute arbitrary code on a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2003-01-07 |
Secunia Advisory ID: SA7821 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation DoS
|
Where: Local system |
|
Short Description: FreeBSD has been found vulnerable to an integer overflow. [Read More]
|
|
|
|
|
|
Release Date: 2002-11-14 |
Secunia Advisory ID: SA7512 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued updates to the three recent BIND holes, one allowing attackers system access from remote. [Read More]
|
|
|
|
|
|
Release Date: 2002-11-13 |
Secunia Advisory ID: SA7503 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: FreeBSD has issued updates to the sendmail restricted shell problem. [Read More]
|
|
|
|
|
|
Release Date: 2002-11-13 |
Secunia Advisory ID: SA7504 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has issued updates to kadmind. The kadmind server which is part of heimdal kerberos, contains a remotely expoitable buffer overflow. [Read More]
|
|
|
|
|
|
Release Date: 2002-11-13 |
Secunia Advisory ID: SA7495 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: FreeBSD has released updates to libc because part of the resolver code suffers a buffer overrun. [Read More]
|
|
|
|
|
|
Release Date: 2002-10-01 |
Secunia Advisory ID: SA7181 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: The game rogue which is included in FreeBSD is setgid games, due to a buffer overflow a local user may gain group privileges of "games". [Read More]
|
|
|
|
|
|
Release Date: 2002-09-30 |
Secunia Advisory ID: SA7179 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: WN Server which is an open source web server which is included in FreeBSD is vulnerable to a remote buffer overflow. [Read More]
|
|
|
|
|
|
Release Date: 2002-09-16 |
Secunia Advisory ID: SA7112 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Privilege escalation
|
Where: Local system |
|
Short Description: It is possible to use setgid binaries asmon, scpu, bubblemon, wmmon, wmnet2 to gain root privileges. [Read More]
|
|
|