Skip to main content

Vendor archive

openbsd CVEs

Beta · best-effort

343 CVEs tagged to vendor openbsd42 Critical, 111 High, 161 Medium, 29 Low, 0 Unrated.

CVE-2007-2243

Published Apr 25, 2007

OpenSSH 4.6 and earlier, when ChallengeResponseAuthentication is enabled, allows remote attackers to determine the existence of user accounts by attempting to authenticate via S/K…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-1351

Published Apr 6, 2007

Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execu…

CVSS 8.5 · High

CVE-2007-1365

Published Mar 10, 2007

Buffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets due to "incorrect mbuf handling for ICMP6…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-0343

Published Jan 18, 2007

OpenBSD before 20070116 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via certain IPv6 ICMP (aka ICMP6) echo request packets.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0085

Published Jan 5, 2007

Unspecified vulnerability in sys/dev/pci/vga_pci.c in the VGA graphics driver for wscons in OpenBSD 3.9 and 4.0, when the kernel is compiled with the PCIAGP option and a non-AGP d…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6730

Published Dec 26, 2006

OpenBSD and NetBSD permit usermode code to kill the display server and write to the X.Org /dev/xf86 device, which allows local users with root privileges to reduce securelevel by…

CVSS 6.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6397

Published Dec 8, 2006

Integer overflow in banner/banner.c in FreeBSD, NetBSD, and OpenBSD might allow local users to modify memory via a long banner. NOTE: CVE and multiple third parties dispute this…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6164

Published Nov 29, 2006

The _dl_unsetenv function in loader.c in the ELF ld.so in OpenBSD 3.9 and 4.0 does not properly remove duplicate environment variables, which allows local users to pass dangerous…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5794

Published Nov 8, 2006

Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH before 4.5 causes weaker verification that authentication has been successful, which might allow atta…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5550

Published Oct 26, 2006

The kernel in FreeBSD 6.1 and OpenBSD 4.0 allows local users to cause a denial of service via unspecified vectors involving certain ioctl requests to /dev/crypto.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5229

Published Oct 10, 2006

OpenSSH portable 4.1 on SUSE Linux, and possibly other platforms and versions, and possibly under limited configurations, allows remote attackers to determine valid usernames via…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-5218

Published Oct 10, 2006

Integer overflow in the systrace_preprepl function (STRIOCREPLACE) in systrace in OpenBSD 3.9 and NetBSD 3 allows local users to cause a denial of service (crash), gain privileges…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4925

Published Sep 29, 2006

packet.c in ssh in OpenSSH allows remote attackers to cause a denial of service (crash) by sending an invalid protocol sequence with USERAUTH_SUCCESS before NEWKEYS, which causes…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5052

Published Sep 27, 2006

Unspecified vulnerability in portable OpenSSH before 4.4, when running on some platforms, allows remote attackers to determine the validity of usernames via unknown vectors involv…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4924

Published Sep 27, 2006

sshd in OpenSSH before 4.4, when using the version 1 SSH protocol, allows remote attackers to cause a denial of service (CPU consumption) via an SSH packet that contains duplicate…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-4435

Published Aug 29, 2006

OpenBSD 3.8, 3.9, and possibly earlier versions allows context-dependent attackers to cause a denial of service (kernel panic) by allocating more semaphores than the default.

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4436

Published Aug 29, 2006

isakmpd in OpenBSD 3.8, 3.9, and possibly earlier versions, creates Security Associations (SA) with a replay window of size 0 when isakmpd acts as a responder during SA negotiatio…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4304

Published Aug 24, 2006

Buffer overflow in the sppp driver in FreeBSD 4.11 through 6.1, NetBSD 2.0 through 4.0 beta before 20060823, and OpenBSD 3.8 and 3.9 before 20060902 allows remote attackers to cau…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-0883

Published Mar 7, 2006

OpenSSH on FreeBSD 5.3 and 5.4, when used with OpenPAM, does not properly handle when a forked child process terminates during PAM authentication, which allows remote attackers to…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0225

Published Jan 25, 2006

scp in OpenSSH 4.2p1 allows attackers to execute arbitrary commands via filenames that contain shell metacharacters or spaces, which are expanded twice.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0098

Published Jan 6, 2006

The dupfdopen function in sys/kern/kern_descrip.c in OpenBSD 3.7 and 3.8 allows local users to re-open arbitrary files by using setuid programs to access file descriptors using /d…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 176-200 of 343 CVEsPage 8 of 14