Vulnerabilities
Vulnerable Software
Freebsd:  Security Vulnerabilities
The asynchronous I/O facility in 4.4 BSD kernel does not check user credentials when setting the recipient of I/O notification, which allows local users to cause a denial of service by using certain ioctl and fcntl calls to cause the signal to be sent to an arbitrary process ID.
CVSS Score
2.1
EPSS Score
0.003
Published
1997-09-15
Listening TCP ports are sequentially allocated, allowing spoofing attacks.
CVSS Score
6.4
EPSS Score
0.084
Published
1997-07-01
The rwho/rwhod service is running, which exposes machine status and user information.
CVSS Score
5.0
EPSS Score
0.015
Published
1997-07-01
Arbitrary command execution via metamail package using message headers, when user processes attacker's message using metamail.
CVSS Score
7.5
EPSS Score
0.035
Published
1997-05-21
The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.
CVSS Score
2.1
EPSS Score
0.008
Published
1997-05-17
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
CVSS Score
7.2
EPSS Score
0.012
Published
1997-05-01
Sysinstall in FreeBSD 2.2.1 and earlier, when configuring anonymous FTP, creates the ftp user without a password and with /bin/date as the shell, which could allow attackers to gain access to certain system resources.
CVSS Score
7.5
EPSS Score
0.013
Published
1997-04-07
Buffer overflow in FreeBSD lpd through long DNS hostnames.
CVSS Score
9.3
EPSS Score
0.013
Published
1997-03-05
Buffer overflow of rlogin program using TERM environmental variable.
CVSS Score
10.0
EPSS Score
0.519
Published
1997-02-06
Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
CVSS Score
5.0
EPSS Score
0.013
Published
1997-01-01


Contact Us

Shodan ® - All rights reserved