Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
593 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.4) | 1.4% | — | FreebsdAI | 31/12/2003 | 16/6/2026 | The implementation of SYN cookies (syncookies) in FreeBSD 4.5 through 5.0-RELEASE-p3 uses only 32-bit internal keys when generating syncookies, which makes it easier for remote attackers to conduct brute force ISN guessing attacks and spoof legitimate traffic. | |
| Modificada | Baja (2.1) | 0.34% | — | NetbsdAIFreebsdAI | 31/12/2003 | 16/6/2026 | The iBCS2 system call translator for statfs in NetBSD 1.5 through 1.5.3 and FreeBSD 4 up to 4.8-RELEASE-p2 and 5 up to 5.1-RELEASE-p1 allows local users to read portions of kernel memory (memory disclosure) via a large length parameter, which copies additional kernel memory into userland memory. | |
| Modificada | Media (4.3) | 3.2% | — | ISC BindNixu NamesurferCompaq Tru64Freebsd+6 | 15/12/2003 | 16/6/2026 | ISC BIND 8.3.x before 8.3.7, and 8.4.x before 8.4.3, allows remote attackers to poison the cache via a malicious name server that returns negative responses with a large TTL (time-to-live) value. | |
| Modificada | Media (5) | 1.4% | — | Apple MAC OS XApple MAC OS X ServerFreebsdOpenbsd | 17/11/2003 | 16/6/2026 | The arplookup function in FreeBSD 5.1 and earlier, Mac OS X before 10.2.8, and possibly other BSD-based systems, allows remote attackers on a local subnet to cause a denial of service (resource starvation and panic) via a flood of spoofed ARP requests. | |
| Modificada | Media (5) | 3.6% | — | Redhat SendmailSendmailSGI IrixCompaq Tru64+2 | 20/10/2003 | 16/6/2026 | The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, which allows remote attackers to cause a denial of service (process crash) via an invalid DNS response that causes Sendmail to free incorrect data. | |
| Modificada | Alta (10) | 66% | — | Sendmail Advanced Message ServerSendmailSendmail PROSendmail Switch+14 | 6/10/2003 | 16/6/2026 | The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c. | |
| Modificada | Crítica (9.8) | 78% | 💥 Exploit | Redhat WU FtpdWuftpd Wu-ftpdApple MAC OS XApple MAC OS X Server+4 | 27/8/2003 | 16/6/2026 | Off-by-one error in the fb_realpath() function, as derived from the realpath function in BSD, may allow attackers to execute arbitrary code, as demonstrated in wu-ftpd 2.5.0 through 2.6.2 via commands that cause pathnames of length MAXPATHLEN+1 to trigger a buffer overflow, including (1) STOR, (2) RETR, (3) APPE, (4)… | |
| Modificada | Alta (7.2) | 1.9% | 💥 Exploit | LproldBSD LPRFreebsdOpenbsd | 31/3/2003 | 16/6/2026 | Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via long command line arguments such as (1) request ID or (2) user name. | |
| Modificada | Alta (7.5) | 15% | — | GNU GlibcMIT Kerberos 5OpenafsSGI Irix+9 | 25/3/2003 | 16/6/2026 | Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability… | |
| Modificada | Media (5) | 14% | 💥 Exploit | OpensslFreebsdOpenbsd | 3/3/2003 | 16/6/2026 | ssl3_get_record in s3_pkt.c for OpenSSL before 0.9.7a and 0.9.6 before 0.9.6i does not perform a MAC computation if an incorrect block cipher padding is used, which causes an information leak (timing discrepancy) that may make it easier to launch cryptographic attacks that rely on distinguishing between padding and… | |
| Modificada | Alta (7.5) | 24% | 💥 Exploit | FreebsdCVS | 7/2/2003 | 16/6/2026 | Double-free vulnerability in CVS 1.11.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed Directory request, as demonstrated by bypassing write checks to execute Update-prog and Checkin-prog commands. | |
| Modificada | Media (5) | 70% | 💥 Exploit | FreebsdLinux KernelMicrosoft Windows 2000Microsoft Windows 2000 Terminal Services+1 | 17/1/2003 | 16/6/2026 | Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain information from previous packets or kernel memory by using malformed packets, as demonstrated by Etherleak. | |
| Modificada | Baja (2.1) | 0.29% | — | Freebsd | 31/12/2002 | 16/6/2026 | The virtual memory management system in FreeBSD 4.5-RELEASE and earlier does not properly check the existence of a VM object during page invalidation, which allows local users to cause a denial of service (crash) by calling msync on an unaccessed memory map created with MAP_ANON and MAP_NOSYNC flags. | |
| Modificada | Baja (2.1) | 0.33% | — | Freebsd | 31/12/2002 | 16/6/2026 | pkg_add in FreeBSD 4.2 through 4.4 creates a temporary directory with world-searchable permissions, which may allow local users to modify world-writable parts of the package during installation. | |
| Modificada | Media (4.6) | 0.41% | — | Freebsd Advanced Intrusion Detection Environment | 31/12/2002 | 16/6/2026 | The default aide.conf file in Advanced Intrusion Detection Environment (AIDE) before 0.7_1 on FreeBSD before 2002-08-28 does not properly check subdirectories, which could allow local users to bypass detection. | |
| Modificada | Baja (1.2) | 0.30% | — | Freebsd | 31/12/2002 | 16/6/2026 | procfs on FreeBSD before 4.5 allows local users to cause a denial of service (kernel panic) by removing a file that the fstatfs function refers to. | |
| Modificada | Media (5.5) | 0.27% | — | FreebsdNetbsdOpenbsd | 31/12/2002 | 16/6/2026 | tip on multiple BSD-based operating systems allows local users to cause a denial of service (execution prevention) by using flock() to lock the /var/log/acculog file. | |
| Modificada | Baja (3.7) | 0.31% | — | FreebsdNetbsdOpenbsd | 31/12/2002 | 16/6/2026 | Race condition in exec in OpenBSD 4.0 and earlier, NetBSD 1.5.2 and earlier, and FreeBSD 4.4 and earlier allows local users to gain privileges by attaching a debugger to a process before the kernel has determined that the process is setuid or setgid. | |
| Modificada | Media (5.1) | 1.3% | — | Freebsd Ports CollectionOpenbsd | 31/12/2002 | 16/6/2026 | isakmpd/message.c in isakmpd in FreeBSD before isakmpd-20020403_1, and in OpenBSD 3.1, allows remote attackers to cause a denial of service (crash) by sending Internet Key Exchange (IKE) payloads out of sequence. | |
| Modificada | Media (5) | 7.6% | — | ISC BindFreebsdOpenbsd | 29/11/2002 | 16/6/2026 | BIND 8.x through 8.3.3 allows remote attackers to cause a denial of service (crash) via SIG RR elements with invalid expiry times, which are removed from the internal BIND database and later cause a null dereference. | |
| Modificada | Media (5) | 9.6% | 💥 Exploit | ISC BindFreebsdOpenbsd | 29/11/2002 | 16/6/2026 | BIND 8.3.x through 8.3.3 allows remote attackers to cause a denial of service (termination due to assertion failure) via a request for a subdomain that does not exist, with an OPT resource record with a large UDP payload size. | |
| Modificada | Alta (7.5) | 12% | — | ISC BindFreebsdOpenbsd | 29/11/2002 | 16/6/2026 | Buffer overflow in named in BIND 4 versions 4.9.10 and earlier, and 8 versions 8.3.3 and earlier, allows remote attackers to execute arbitrary code via a certain DNS server response containing SIG resource records (RR). | |
| Modificada | Media (5) | 2.5% | — | Frees WANApple MAC OS XApple MAC OS X ServerFreebsd+8 | 4/11/2002 | 16/6/2026 | IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, which allows remote attackers to cause a denial of service (kernel panic) via spoofed, short Encapsulating Security Payload (ESP) packets, which result in integer signedness errors. | |
| Modificada | Baja (2.1) | 0.79% | 💥 Exploit | Freebsd | 24/9/2002 | 16/6/2026 | FreeBSD port programs that use libkvm for FreeBSD 4.6.2-RELEASE and earlier, including (1) asmon, (2) ascpu, (3) bubblemon, (4) wmmon, and (5) wmnet2, leave open file descriptors for /dev/mem and /dev/kmem, which allows local users to read kernel memory. | |
| Modificada | Media (4.6) | 0.35% | — | Freebsd | 24/9/2002 | 16/6/2026 | Integer signedness error in several system calls for FreeBSD 4.6.1 RELEASE-p10 and earlier may allow attackers to access sensitive kernel memory via large negative values to the (1) accept, (2) getsockname, and (3) getpeername system calls, and the (4) vesa FBIO_GETPALETTE ioctl. |