.:[ packet storm ]:.
                             
the one stop shop
the one stop shop

 Section:  .. / advisories / freebsd  /

Page 10 of 11
<< 1 2 3 4 5 6 7 8 9 10 11 >> Files 225 - 250 of 257
Currently sorted by: File SizeSort By: File Name, Last Modified

 ///  File Name: FreeBSD-SA-01:29.rwhod
Description:
FreeBSD Security Advisory FreeBSD-SA-01:29.rwhod - Malformed packets sent to the rwhod daemon via UDP port 513 could cause it to crash, thereby denying service to clients.
Homepage:http://www.freebsd.org/security
File Size:3449
Last Modified:Mar 16 02:43:04 2001
MD5 Checksum:7b5cba14d4fddfbbcd57118866a9f05a

 ///  File Name: FreeBSD-SA-01:09.crontab
Description:
FreeBSD Security Advisory FreeBSD-SA-01:09 - Crontab contains a vulnerability which allows local users to read any file on the system which conforms to a valid cron syntax. This allows other users crontab files to be read, in addition to any file which has every line commented out.
Homepage:http://www.freebsd.org/security
File Size:3442
Last Modified:Jan 26 08:16:53 2001
MD5 Checksum:c4ad7feb6bba40a4c3f596bfb09652f0

 ///  File Name: FreeBSD-SA-02:30.ktrace
Description:
FreeBSD Security Advisory FreeBSD-SA-02:30 - It is possible for normal users to trace processes from setuid / setgid programs that dropped their privileges, leading to the disclosure of sensitive information obtained by the process from before the privileges where dropped. All releases prior to and including 4.6-RELEASE are affected.
Homepage:http://www.freebsd.org/security/
File Size:3435
Last Modified:Jul 15 02:36:19 2002
MD5 Checksum:d75b878ba51d4721122a2d4fc9d508f6

 ///  File Name: FreeBSD-SA-01_46.w3m
Description:
FreeBSD Security Advisory FreeBSD-SA-01:46 - The w3m port, versions prior to w3m-0.2.1_1, contains a buffer overflow in the parsing of MIME headers. A malicious server which is visited by a user with the w3m browser can exploit the browser security holes in order to execute arbitrary code on the local machine as the local user.
Homepage:http://www.freebsd.org/security
File Size:3432
Last Modified:Aug 11 10:51:45 2001
MD5 Checksum:c7130aa80cbed9e1dafac7c145e5a78c

 ///  File Name: FreeBSD-SA-00:51.mailman
Description:
FreeBSD Security Advisory FreeBSD-SA-00:51 - The mailman port, versions prior to 2.0b5, contained several locally exploitable vulnerabilities which could be used to gain root privileges.
Homepage:http://www.freebsd.org/security
File Size:3421
Last Modified:Sep 14 00:54:00 2000
MD5 Checksum:10c180bc0db33c1a2f9f402a313f456f

 ///  File Name: FreeBSD-SA-01:30.ufs-ext2fs
Description:
FreeBSD Security Advisory FreeBSD-SA-01:30.ufs-ext2fs - A bug in the UFS filesystem allows users to obtain access to areas of the filesystem containing data from deleted files. The filesystem code is supposed to ensure that all filesystem blocks are zeroed before becoming available to user processes, but in a certain specific case this zeroing does not occur, and unzeroed blocks are passed to the user with their previous contents intact. Thus, if the block contains data which used to be part of a file or directory to which the user did not have access, the operation results in unauthorized access of data.
Homepage:http://www.freebsd.org/security
File Size:3394
Last Modified:Mar 27 01:48:05 2001
MD5 Checksum:f493d4622ae7dc321d22468b5d4abc7e

 ///  File Name: FreeBSD-SA-02:37.kqueue
Description:
FreeBSD Security Advisory FreeBSD-SA-02:37 - Local users can cause a kernel panic using the kqueue system. If a pipe was created with the pipe(2) system call, and one end of the pipe was closed, registering an EVFILT_WRITE filter on the other end would cause a kernel panic.
Homepage:http://www.freebsd.org
File Size:3373
Last Modified:Aug 6 08:06:05 2002
MD5 Checksum:850959a290a0e6dfa2392b1f4ac94044

 ///  File Name: FreeBSD-SA-00:15.imap-uw
Description:
FreeBSD Security Advisory FreeBSD-SA-00:15 - The imap-uw port supplies a "libc-client" library which provides various functionality common to mail servers. The algorithm used for locking of mailbox files contains a weakness which allows an unprivileged local user to lock an arbitrary local mailbox.
Homepage:http://www.freebsd.org
File Size:3373
Last Modified:Apr 25 19:33:17 2000
MD5 Checksum:b16f4783d7a4c96ca780a1e05bd8f879

 ///  File Name: FreeBSD-SA-00:32.bitchx
Description:
FreeBSD-SA-00:32 - The bitchx client incorrectly parses string-formatting operators included as part of channel invitation messages sent by remote IRC users. This can cause the local client to crash, and may possibly present the ability to execute arbitrary code as the local user.
Homepage:http://www.freebsd.org/security
File Size:3368
Last Modified:Jul 6 04:13:58 2000
MD5 Checksum:3a1d64945114279fc43666e7041765f4

 ///  File Name: FreeBSD-SA-00:13.generic-nqs
Description:
FreeBSD Security Advisory FreeBSD-SA-00:13 - generic-nqs v3.50.7 and earlier from the ports connection contains a local root compromise.
Homepage:http://www.freebsd.org
File Size:3352
Last Modified:Apr 20 00:34:44 2000
MD5 Checksum:fed344ca687999e3687be67c0f61f78c

 ///  File Name: FreeBSD-SA-06-05.txt
Description:
FreeBSD-SA-06:05.80211 - An integer overflow in the handling of corrupt IEEE 802.11 beacon or probe response frames when scanning for existing wireless networks can result in the frame overflowing a buffer.
Homepage:http://www.freebsd.org/security/
File Size:3350
Last Modified:Jan 25 08:26:16 2006
MD5 Checksum:4d1a3110984d5ddd807e56852b3fd6ba

 ///  File Name: FreeBSD-SA-01:13.sort
Description:
FreeBSD Security Advisory FreeBSD-SA-01:13 - Sort(1), a program to sort text, can be caused to stop working by local users if they guess the next tempfile name it will attempt to use. This failure mode could be used to hide the reporting of malicious activity which would otherwise be detected by a management script.
Homepage:http://www.freebsd.org/security
File Size:3332
Last Modified:Feb 1 00:49:58 2001
MD5 Checksum:a42baf7bf6a720df835b125ba7327955

 ///  File Name: FreeBSD-SA-01_44.gnupg
Description:
FreeBSD Security Advisory FreeBSD-SA-01:44 - The gnupg port, versions prior to gnupg-1.0.6, contains a format string vulnerability. If gnupg attempts to decrypt a file whose filename does not end in '.gpg', the filename is copied to the prompt string, allowing a user-supplied format string. This may allow a malicious user to cause arbitrary code to be executed as the user running gnupg.
Homepage:http://www.freebsd.org/security
File Size:3308
Last Modified:Aug 11 10:48:41 2001
MD5 Checksum:68ece65d26ef0b4d9edbdf4b9550b512

 ///  File Name: FreeBSD-SA-01_43.fetchmail
Description:
FreeBSD Security Advisory FreeBSD-SA-01:43 - The fetchmail port, versions prior to fetchmail-5.8.6, contains a potentially exploitable buffer overflow when rewriting headers longer than 512 bytes. This problem may allow remote users to cause fetchmail to crash and potentially execute arbitrary code as the user running fetchmail.
Homepage:http://www.freebsd.org/security
File Size:3287
Last Modified:Aug 11 10:47:09 2001
MD5 Checksum:47cc58956152252004ed982602ba618a

 ///  File Name: freebsd.sa-00.05.gnapster
Description:
FreeBSD Security Advisory - gnapster(version 1.3.8 and earlier), from the ports collection, contains a vulnerability which allows remote gnapster users to view any file on the local system which is accessible to the user running gnapster. Gnapster does not run with elevated privileges, so it is only the user's regular filesystem access permissions which are involved.
Homepage:http://www.freebsd.org
File Size:3262
Last Modified:May 9 23:17:31 2000
MD5 Checksum:8ece451b6b55885a4911d9d9bcbf0b6f

 ///  File Name: freebsd.sa-00.10.orville
Description:
FreeBSD Security Advisory - Orville-write, provided in the ports collection, is a replacement for the write command, which provides improved control over message delivery and other features. One of the commands installed by the port is incorrectly installed with setuid root permissions. The 'huh' command should not have any special privileges since it is intended to be run by the local user to view his saved messages.
Homepage:http://www.freebsd.org
File Size:3230
Last Modified:Mar 17 00:36:16 2000
MD5 Checksum:3ad1d2c8a7bc7b46102752cf9167e0ea

 ///  File Name: FreeBSD-SA-00:80.halflifeserver
Description:
FreeBSD Security Advisory - The halflifeserver port, versions prior to 3.1.0.4, contains local and remote vulnerabilities through buffer overflows and format string vulnerabilities which allow remote users to execute arbitrary code as the user running halflifeserver.
Homepage:http://www.freebsd.org/security
File Size:3230
Last Modified:Dec 22 00:00:01 2000
MD5 Checksum:7e900ba6fecb15e9b90d62b44a9c05b6

 ///  File Name: FreeBSD-SA-00:21.apsfilter
Description:
FreeBSD-SA-00:22 - The apsfilter port, versions 5.4.1 and below, contain a vulnerability which allow local users to execute arbitrary commands as the user running lpd, user root in a default FreeBSD installation.
Homepage:http://www.freebsd.org/security
File Size:3230
Last Modified:Jun 9 02:32:50 2000
MD5 Checksum:e004aaee1d3d95176d6686aad8ce410c

 ///  File Name: FreeBSD-SA-00:12.healthd
Description:
FreeBSD Security Advisory - healthd allows a local root compromise. healthd v0.3 installs a utility which is setuid root in order to monitor the system status. This utility contains a trivial buffer overflow which allows an unprivileged local user to obtain root privileges on the system. healthd is part of the freebsd ports collection.
Homepage:http://www.freebsd.org
File Size:3147
Last Modified:Apr 12 01:31:33 2000
MD5 Checksum:4dbe1b0f094e95a89ef2c570d54c73bc

 ///  File Name: freebsd.sa-00.03.asmon
Description:
Two optional third-party ports distributed with FreeBSD (Asmon/Ascpu) can be used to execute commands with elevated privileges, specifically setgid kmem privileges. This may lead to a local root compromise.
Homepage:http://www.freebsd.org
File Size:3099
Last Modified:Feb 23 11:13:45 2000
MD5 Checksum:78a32f1f72fdf47e048359524c001f91

 ///  File Name: FreeBSD-SA-02:29.tcpdump
Description:
FreeBSD Security Advisory FreeBSD-SA-02:29 - A buffer overflow has been found tcpdump v3.7.1 and below which can be triggered through specially crafted NFS packets. Since tcpdump typically runs with root privileges, exploitation of this vulnerability can be used to remotely execute code on systems that are affected.
Homepage:http://www.freebsd.org/security/
File Size:3088
Last Modified:Jul 15 02:37:51 2002
MD5 Checksum:e95d61dc21165070e874976c0276d45f

 ///  File Name: sa96-02
Description:
apache httpd meta-character escaping
File Size:3061
Last Modified:Sep 23 05:52:22 1999
MD5 Checksum:239162c57915ba0787c791d936dde693

 ///  File Name: freebsd.sa-00.09.lynx
Description:
FreeBSD Security Advisory - The lynx software is written in a very insecure style and contains numerous potential and several proven security vulnerabilities exploitable by a malicious server. No simple fix is available until a full review of lynx is done.
Homepage:http://www.freebsd.org
File Size:3037
Last Modified:Mar 17 00:40:59 2000
MD5 Checksum:6a9211b7872cd98e9ce57404b3db5704

 ///  File Name: FreeBSD-SA-02:22.mmap
Description:
FreeBSD Security Advisory FreeBSD-SA-02:22 - Local users can cause the FreeBSD system to crash due to a bug in the virtual memory management system involving a failure to check for the existence of a VM object during page invalidation. This bug could be triggered by calling msync(2) on an anonymous, asynchronous memory map (i.e. created using the mmap flags MAP_ANON and MAP_NOSYNC) which had not been accessed previously, causing the system to crash.
Homepage:http://www.freebsd.org/security
File Size:3009
Last Modified:Apr 25 08:18:53 2002
MD5 Checksum:60895e0707038d7543f12cf88b6df18c

 ///  File Name: freebsd.sa-00.09.mtr
Description:
FreeBSD Security Advisory - mtr, from the ports collection, fails to correctly drop setuid root privileges during operation, allowing a local root compromise.
Homepage:http://www.freebsd.org
File Size:2981
Last Modified:Mar 17 00:38:42 2000
MD5 Checksum:2361080ffc72e324024fd83475fa4a3d