vendor
freebsd
16 thingsrelated by NVD
Its products
freebsd 16
Being told
Watch: its feed Ask more of it
The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.
Every thing
| mp_SetEnddisc() copied a user-supplied PSN endpoint value without length validation, allowing a buffer overflow via the ppp(8) command… CVE-2026-58097 | Severity high |
| LcpDecodeConfig() did not validate the length of received endpoint discriminator options against the minimum required by RFC 1717… CVE-2026-58096 | Severity high |
| mp_Enddisc() used incorrect length calculations when formatting endpoint discriminator addresses for display, allowing a received endpoint… CVE-2026-58095 | Severity high |
| The FIOSSHMLPGCNF ioctl(2) operation configures the page size for a largepage shared memory object. This is intended to be used… CVE-2026-58094 | Severity high |
| The TIOCSCTTY ioctl handler drops the tty lock in order to acquire the process tree lock. After reacquiring the tty lock, the handler did… CVE-2026-58093 | Severity high |
| In FreeBSD 15.0, the kernel structure used to represent user credentials changed: previously the primary group ID was stored in the first… CVE-2026-58092 | Severity high |
| The implementation of this ioctl attempts to acquire locks on all channels in a sync group. If locking a channel would block, it releases… CVE-2026-58091 | Severity high |
| The SOCK_STREAM receive path in the unix socket implementation failed to fully detach control messages from the socket buffer before… CVE-2026-58090 | Severity high |
| When a process calls execve(2) to execute a setuid or setgid image, hwpmc(4) is supposed to detach PMCs owned by unprivileged processes… CVE-2026-58089 | Severity high |
| opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin… CVE-2006-1283 | |
| The setlocale function in FreeBSD 5.0 and earlier, and possibly other OSes, allows local users to read arbitrary files via the LANG… CVE-2000-1013 | |
| Format string vulnerability in top program allows local attackers to gain root privileges via the "kill" or "renice" function. CVE-2000-0998 | |
| Format string vulnerability in pw_error function in BSD libutil library allows local users to gain root privileges via a malformed password… CVE-2000-0993 | |
| Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or… CVE-2000-0963 | |
| FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence… CVE-2000-0916 | |
| fingerd in FreeBSD 4.1.1 allows remote attackers to read arbitrary files by specifying the target file name instead of a regular user name. CVE-2000-0915 | |