:>w /usr/data/domains/svbug/infopedia/body.txt >; :<
2005>; :< | ||
|---|---|---|
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:09.htt.asc|FreeBSD-SA-05:09.htt.asc /; | information disclosure when using HTT | 2005-05-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:08.kmem.asc|FreeBSD-SA-05:08.kmem.asc /; | Local kernel memory disclosure | 2005-05-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:07.ldt.asc|FreeBSD-SA-05:07.ldt.asc /; | Local kernel memory disclosure in i386_get_ldt | 2005-05-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:06.iir.asc|FreeBSD-SA-05:06.iir.asc /; | Incorrect permissions on /dev/iir | 2005-05-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:05.cvs.asc|FreeBSD-SA-05:05.cvs.asc /; | Multiple vulnerabilities in CVS | 2005-04-22 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:04.ifconf.asc|FreeBSD-SA-05:04.ifconf.asc /; | Kernel memory disclosure in ifconf() | 2005-04-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:03.amd64.asc|FreeBSD-SA-05:03.amd64.asc /; | unprivileged hardware access on amd64 | 2005-04-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:02.sendfile.asc|FreeBSD-SA-05:02.sendfile.asc /; | sendfile kernel memory disclosure | 2005-04-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:01.telnet.asc|FreeBSD-SA-05:01.telnet.asc /; | telnet client buffer overflows | 2005-03-28 :< |
2004>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:17.procfs.asc|FreeBSD-SA-04:17.procfs.asc /; | Kernel memory disclosure in procfs and linprocfs | 2004-12-01 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:16.fetch.asc|FreeBSD-SA-04:16.fetch.asc /; | Overflow error in fetch | 2004-11-18 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:15.syscons.asc|FreeBSD-SA-04:15.syscons.asc /; | Boundary checking errors in syscons | 2004-10-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:14.cvs.asc|FreeBSD-SA-04:14.cvs.asc /; | CVS | 2004-09-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:13.linux.asc|FreeBSD-SA-04:13.linux.asc /; | Linux binary compatibility mode input validation error | 2004-06-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:12.jailroute.asc|FreeBSD-SA-04:12.jailroute.asc /; | Jailed processes can manipulate host routing tables | 2004-06-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:11.msync.asc|FreeBSD-SA-04:11.msync.asc /; | buffer cache invalidation implementation issues | 2004-05-26 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:10.cvs.asc|FreeBSD-SA-04:10.cvs.asc /; | CVS pserver protocol parser errors | 2004-05-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:09.kadmind.asc|FreeBSD-SA-04:09.kadmind.asc /; | heimdal kadmind remote heap buffer overflow | 2004-05-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:08.heimdal.asc|FreeBSD-SA-04:08.heimdal.asc /; | heimdal cross-realm trust vulnerability | 2004-05-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:07.cvs.asc|FreeBSD-SA-04:07.cvs.asc /; | CVS path validation errors | 2004-04-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:06.ipv6.asc|FreeBSD-SA-04:06.ipv6.asc /; | setsockopt(2) IPv6 sockets input validation error | 2004-03-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:05.openssl.asc|FreeBSD-SA-04:05.openssl.asc /; | Denial-of-service vulnerability in OpenSSL | 2004-03-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:04.tcp.asc|FreeBSD-SA-04:04.tcp.asc /; | many out-of-sequence TCP packets denial-of-service | 2004-03-02 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:03.jail.asc|FreeBSD-SA-04:03.jail.asc /; | Jailed processes can attach to other jails | 2004-02-25 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:02.shmat.asc|FreeBSD-SA-04:02.shmat.asc /; | shmat reference counting bug | 2004-02-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:01.mksnap_ffs.asc|FreeBSD-SA-04:01.mksnap_ffs.asc /; | mksnap_ffs clears file system options | 2004-01-30 :< |
2003>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:19.bind.asc|FreeBSD-SA-03:19.bind.asc /; | bind8 negative cache poison attack | 2003-11-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:15.openssh.asc|FreeBSD-SA-03:15.openssh.asc /; | OpenSSH PAM challenge/authentication error | 2003-10-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:18.openssl.asc|FreeBSD-SA-03:18.openssl.asc /; | OpenSSL vulnerabilities in ASN.1 parsing | 2003-10-03 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:17.procfs.asc|FreeBSD-SA-03:17.procfs.asc /; | kernel memory disclosure via procfs | 2003-10-03 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:16.filedesc.asc|FreeBSD-SA-03:16.filedesc.asc /; | file descriptor leak in readv | 2003-10-02 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:14.arp.asc|FreeBSD-SA-03:14.arp.asc /; | denial of service due to ARP resource starvation | 2003-09-25 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:13.sendmail.asc|FreeBSD-SA-03:13.sendmail.asc /; | a third sendmail header parsing buffer overflow | 2003-09-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:12.openssh.asc|FreeBSD-SA-03:12.openssh.asc /; | OpenSSH buffer management error | 2003-09-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:11.sendmail.asc|FreeBSD-SA-03:11.sendmail.asc /; | sendmail DNS map problem | 2003-08-26 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:10.ibcs2.asc|FreeBSD-SA-03:10.ibcs2.asc /; | Kernel memory disclosure via ibcs2 | 2003-08-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:09.signal.asc|FreeBSD-SA-03:09.signal.asc /; | Insufficient range checking of signal numbers | 2003-08-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:08.realpath.asc|FreeBSD-SA-03:08.realpath.asc /; | Single byte buffer overflow in realpath(3) | 2003-08-03 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:07.sendmail.asc|FreeBSD-SA-03:07.sendmail.asc /; | a second sendmail header parsing buffer overflow | 2003-03-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:06.openssl.asc|FreeBSD-SA-03:06.openssl.asc /; | OpenSSL timing-based SSL/TLS attack | 2003-03-21 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:05.xdr.asc|FreeBSD-SA-03:05.xdr.asc /; | remote denial-of-service in XDR encoder/decoder | 2003-03-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:04.sendmail.asc|FreeBSD-SA-03:04.sendmail.asc /; | sendmail header parsing buffer overflow | 2003-03-03 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:02.openssl.asc|FreeBSD-SA-03:02.openssl.asc /; | OpenSSL timing-based SSL/TLS attack | 2003-02-25 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:03.syncookies.asc|FreeBSD-SA-03:03.syncookies.asc /; | Brute force attack on SYN cookies | 2003-02-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-03:01.cvs.asc|FreeBSD-SA-03:01.cvs.asc /; | remotely exploitable vulnerability in cvs server | 2003-02-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:44.filedesc.asc|FreeBSD-SA-02:44.filedesc.asc /; | file descriptor leak in fpathconf | 2003-01-07 :< |
2002>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:43.bind.asc|FreeBSD-SA-02:43.bind.asc /; | multiple vulnerabilities in BIND [REVISED] | 2002-11-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:41.smrsh.asc|FreeBSD-SA-02:41.smrsh.asc /; | smrsh restrictions can be bypassed [REVISED] | 2002-11-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:42.resolv.asc|FreeBSD-SA-02:42.resolv.asc /; | buffer overrun in resolver | 2002-11-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:40.kadmind.asc|FreeBSD-SA-02:40.kadmind.asc /; | Buffer overflow in kadmind daemon | 2002-11-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:39.libkvm.asc|FreeBSD-SA-02:39.libkvm.asc /; | Applications using libkvm may leak sensitive descriptors | 2002-09-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:38.signed-error.asc|FreeBSD-SA-02:38.signed-error.asc /; | Boundary checking errors involving signed integers | 2002-08-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:37.kqueue.asc|FreeBSD-SA-02:37.kqueue.asc /; | local users can panic the system using the kqueue mechanism | 2002-08-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:36.nfs.asc|FreeBSD-SA-02:36.nfs.asc /; | Bug in NFS server code allows remote denial of service | 2002-08-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:35.ffs.asc|FreeBSD-SA-02:35.ffs.asc /; | local users may read and write arbitrary blocks on | 2002-08-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:33.openssl.asc|FreeBSD-SA-02:33.openssl.asc /; | openssl contains multiple vulnerabilities | 2002-08-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:34.rpc.asc|FreeBSD-SA-02:34.rpc.asc /; | Sun RPC XDR decoder contains buffer overflow | 2002-08-01 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:32.pppd.asc|FreeBSD-SA-02:32.pppd.asc /; | exploitable race condition in pppd | 2002-07-31 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:31.openssh.asc|FreeBSD-SA-02:31.openssh.asc /; | openssh contains remote vulnerability | 2002-07-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:30.ktrace.asc|FreeBSD-SA-02:30.ktrace.asc /; | Users may trace previously privileged processes | 2002-07-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:29.tcpdump.asc|FreeBSD-SA-02:29.tcpdump.asc /; | Buffer overflow in tcpdump when handling NFS packets | 2002-07-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:28.resolv.asc|FreeBSD-SA-02:28.resolv.asc /; | buffer overflow in resolver | 2002-06-26 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:27.rc.asc|FreeBSD-SA-02:27.rc.asc /; | rc uses file globbing dangerously | 2002-05-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:26.accept.asc|FreeBSD-SA-02:26.accept.asc /; | Remote denial-of-service when using accept filters | 2002-05-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:25.bzip2.asc|FreeBSD-SA-02:25.bzip2.asc /; | bzip2 contains multiple security vulnerabilities | 2002-05-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:24.k5su.asc|FreeBSD-SA-02:24.k5su.asc /; | k5su utility does not honor `wheel' group | 2002-05-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:23.stdio.asc|FreeBSD-SA-02:23.stdio.asc /; | insecure handling of stdio file descriptors | 2002-04-22 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:22.mmap.asc|FreeBSD-SA-02:22.mmap.asc /; | mmap/msync denial of service | 2002-04-18 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:21.tcpip.asc|FreeBSD-SA-02:21.tcpip.asc /; | routing table memory leak | 2002-04-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:20.syncache.asc|FreeBSD-SA-02:20.syncache.asc /; | syncache/syncookies denial of service | 2002-04-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:19.squid.asc|FreeBSD-SA-02:19.squid.asc /; | squid heap buffer overflow in DNS handling | 2002-03-26 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:18.zlib.v1.2.asc|FreeBSD-SA-02:18.zlib.v1.2.asc /; | zlib double-free | 2002-03-18 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:17.mod_frontpage.asc|FreeBSD-SA-02:17.mod_frontpage.asc /; | mod_frontpage port contains exploitable buffer overflow | 2002-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:16.netscape.asc|FreeBSD-SA-02:16.netscape.asc /; | GIF/JPEG comment vulnerability in Netscape | 2002-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:15.cyrus-sasl.asc|FreeBSD-SA-02:15.cyrus-sasl.asc /; | cyrus-sasl library contains format string vulnerability | 2002-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:14.pam-pgsql.asc|FreeBSD-SA-02:14.pam-pgsql.asc /; | pam-pgsql port authentication bypass | 2002-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:13.openssh.asc|FreeBSD-SA-02:13.openssh.asc /; | OpenSSH contains exploitable off-by-one bug | 2002-03-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:12.squid.asc|FreeBSD-SA-02:12.squid.asc /; | multiple security vulnerabilities in squid port | 2002-02-21 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:11.snmp.asc|FreeBSD-SA-02:11.snmp.asc /; | ucd-snmp/net-snmp remotely exploitable vulnerabilities | 2002-02-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:10.rsync.asc|FreeBSD-SA-02:10.rsync.asc /; | rsync port contains remotely exploitable vulnerability | 2002-02-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:09.fstatfs.asc|FreeBSD-SA-02:09.fstatfs.asc /; | fstatfs race condition may allow local denial of | 2002-02-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:08.exec.asc|FreeBSD-SA-02:08.exec.asc /; | race condition during exec may allow local root compromise | 2002-01-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:07.k5su.asc|FreeBSD-SA-02:07.k5su.asc /; | Kerberos 5 su command uses getlogin for authorization | 2002-01-18 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:06.sudo.asc|FreeBSD-SA-02:06.sudo.asc /; | sudo port may enable local privilege escalation | 2002-01-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:05.pine.asc|FreeBSD-SA-02:05.pine.asc /; | pine port insecure URL handling [REVISED] | 2002-01-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:04.mutt.asc|FreeBSD-SA-02:04.mutt.asc /; | mutt ports contain remotely exploitable buffer overflow | 2002-01-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:03.mod_auth_pgsql.asc|FreeBSD-SA-02:03.mod_auth_pgsql.asc /; | mod_auth_pgsql port authentication bypass | 2002-01-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:02.pw.asc|FreeBSD-SA-02:02.pw.asc /; | pw(8) race condition may allow disclosure of master.passwd | 2002-01-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:01.pkg_add.asc|FreeBSD-SA-02:01.pkg_add.asc /; | Directory permission vulnerability in pkg_add [REVISED] | 2002-01-04 :< |
2001>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:68.xsane.asc|FreeBSD-SA-01:68.xsane.asc /; | xsane port uses insecure temporary file handling | 2001-12-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:67.htdig.asc|FreeBSD-SA-01:67.htdig.asc /; | htdig configuration file vulnerability | 2001-12-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:66.thttpd.asc|FreeBSD-SA-01:66.thttpd.asc /; | thttpd port contains remotely vulnerability | 2001-12-11 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:65.libgtop.asc|FreeBSD-SA-01:65.libgtop.asc /; | Buffer overflow in libgtop_server | 2001-12-11 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:64.wu-ftpd.asc|FreeBSD-SA-01:64.wu-ftpd.asc /; | wu-ftpd port contains remote root compromise | 2001-12-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:63.openssh.asc|FreeBSD-SA-01:63.openssh.asc /; | OpenSSH UseLogin directive permits privilege escalation | 2001-12-02 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:62.uucp.asc|FreeBSD-SA-01:62.uucp.asc /; | UUCP allows local root exploit | 2001-10-08 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:61.squid.asc|FreeBSD-SA-01:61.squid.asc /; | Squid in accelerator-only mode ignores ACLs | 2001-10-08 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:60.procmail.asc|FreeBSD-SA-01:60.procmail.asc /; | Multiple vulnerabilities in procmail signal handling | 2001-09-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:59.rmuser.v1.1.asc|FreeBSD-SA-01:59.rmuser.v1.1.asc /; | rmuser contains a race condition exposing /etc/master.passwd | 2001-09-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:58.lpd.asc|FreeBSD-SA-01:58.lpd.asc /; | lpd contains remote root vulnerability | 2001-08-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:57.sendmail.v1.2.asc|FreeBSD-SA-01:57.sendmail.v1.2.asc /; | sendmail contains local root vulnerability [REVISED] | 2001-08-27 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:56.tcp_wrappers.asc|FreeBSD-SA-01:56.tcp_wrappers.asc /; | tcp_wrappers PARANOID hostname checking does not work | 2001-08-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:55.procfs.asc|FreeBSD-SA-01:55.procfs.asc /; | procfs vulnerability leaks set[ug]id process memory | 2001-08-21 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:54.ports-telnetd.asc|FreeBSD-SA-01:54.ports-telnetd.asc /; | telnetd contains remote buffer overflow | 2001-08-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:53.ipfw.asc|FreeBSD-SA-01:53.ipfw.asc /; | ipfw `me' on P2P interfaces matches remote address | 2001-08-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:52.fragment.asc|FreeBSD-SA-01:52.fragment.asc /; | Denial of service using fragmented IPv4 packets | 2001-08-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:51.openssl.v1.1.asc|FreeBSD-SA-01:51.openssl.v1.1.asc /; | OpenSSL 0.9.6a and earlier contain flaw in PRNG [REVISED] | 2001-07-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:50.windowmaker.asc|FreeBSD-SA-01:50.windowmaker.asc /; | windowmaker contains possibly exploitable buffer overflow | 2001-07-27 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:49.telnetd.v1.1.asc|FreeBSD-SA-01:49.telnetd.v1.1.asc /; | telnetd contains remote buffer overflow | 2001-07-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:48.tcpdump.asc|FreeBSD-SA-01:48.tcpdump.asc /; | tcpdump contains remote buffer overflow | 2001-07-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:47.xinetd.asc|FreeBSD-SA-01:47.xinetd.asc /; | xinetd contains multiple vulnerabilities | 2001-07-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:46.w3m.asc|FreeBSD-SA-01:46.w3m.asc /; | w3m contains remotely exploitable buffer overflow | 2001-07-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:45.samba.asc|FreeBSD-SA-01:45.samba.asc /; | samba | 2001-07-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:44.gnupg.asc|FreeBSD-SA-01:44.gnupg.asc /; | gnupg contains format string vulnerability | 2001-07-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:43.fetchmail.asc|FreeBSD-SA-01:43.fetchmail.asc /; | fetchmail contains potentially exploitable buffer | 2001-07-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:42.signal.v1.1.asc|FreeBSD-SA-01:42.signal.v1.1.asc /; | signal handling during exec may allow local root | 2001-07-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:41.hanterm.asc|FreeBSD-SA-01:41.hanterm.asc /; | hanterm ports allow local root compromise | 2001-07-09 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:40.fts.v1.1.asc|FreeBSD-SA-01:40.fts.v1.1.asc /; | fts(3) routines contain race condition [REVISED] | 2001-06-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:39.tcp-isn.asc|FreeBSD-SA-01:39.tcp-isn.asc /; | TCP initial sequence number generation contains | 2001-05-02 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:38.sudo.asc|FreeBSD-SA-01:38.sudo.asc /; | sudo contains local buffer overflow | 2001-04-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:37.slrn.asc|FreeBSD-SA-01:37.slrn.asc /; | slrn contains remotely-exploitable buffer overflow | 2001-04-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:36.samba.asc|FreeBSD-SA-01:36.samba.asc /; | samba ports contain locally exploitable /tmp races | 2001-04-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:35.licq.asc|FreeBSD-SA-01:35.licq.asc /; | licq contains multiple remote vulnerabilities | 2001-04-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:34.hylafax.asc|FreeBSD-SA-01:34.hylafax.asc /; | hylafax contains local compromise | 2001-04-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:33.ftpd-glob.v1.1.asc|FreeBSD-SA-01:33.ftpd-glob.v1.1.asc /; | globbing vulnerability in ftpd [REVISED] | 2001-04-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:32.ipfilter.v1.1.asc|FreeBSD-SA-01:32.ipfilter.v1.1.asc /; | IPFilter may incorrectly pass packets [REVISED] | 2001-04-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:31.ntpd.asc|FreeBSD-SA-01:31.ntpd.asc /; | ntpd contains potential remote compromise | 2001-04-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:30.ufs-ext2fs.asc|FreeBSD-SA-01:30.ufs-ext2fs.asc /; | UFS/EXT2FS allows disclosure of deleted data | 2001-03-22 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:29.rwhod.asc|FreeBSD-SA-01:29.rwhod.asc /; | rwhod allows remote denial of service | 2001-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:28.timed.asc|FreeBSD-SA-01:28.timed.asc /; | timed allows remote denial of service | 2001-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:27.cfengine.asc|FreeBSD-SA-01:27.cfengine.asc /; | cfengine port contains remote root vulnerability | 2001-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:26.interbase.asc|FreeBSD-SA-01:26.interbase.asc /; | interbase contains remote backdoor | 2001-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:23.icecast.asc|FreeBSD-SA-01:23.icecast.asc /; | icecast port contains remote vulnerability | 2001-03-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:25.kerberosIV.asc|FreeBSD-SA-01:25.kerberosIV.asc /; | Local and remote vulnerabilities in Kerberos IV | 2001-02-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:24.ssh.asc|FreeBSD-SA-01:24.ssh.asc /; | SSH1 implementations may allow remote system, data compromise | 2001-02-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:22.dc20ctrl.asc|FreeBSD-SA-01:22.dc20ctrl.asc /; | dc20ctrl port contains a locally exploitable buffer overflow | 2001-02-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:21.ja-elvis.asc|FreeBSD-SA-01:21.ja-elvis.asc /; | ja-elvis and ko-helvis ports contain a local | 2001-02-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:20.mars_nwe.asc|FreeBSD-SA-01:20.mars_nwe.asc /; | mars_nwe contains potential remote root compromise | 2001-02-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:19.ja-klock.asc|FreeBSD-SA-01:19.ja-klock.asc /; | ja-xklock port contains a local root compromise | 2001-02-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:18.bind.asc|FreeBSD-SA-01:18.bind.asc /; | BIND remotely exploitable buffer overflow | 2001-01-31 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:17.exmh.asc|FreeBSD-SA-01:17.exmh.asc /; | exmh symlink vulnerability | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:16.mysql.asc|FreeBSD-SA-01:16.mysql.asc /; | mysql may allow remote users to gain increased | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:15.tinyproxy.asc|FreeBSD-SA-01:15.tinyproxy.asc /; | tinyproxy contains remote vulnerabilities | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:14.micq.asc|FreeBSD-SA-01:14.micq.asc /; | micq remote buffer overflow vulnerability | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:13.sort.asc|FreeBSD-SA-01:13.sort.asc /; | sort uses insecure temporary files | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:12.periodic.v1.1.asc|FreeBSD-SA-01:12.periodic.v1.1.asc /; | periodic uses insecure temporary files [REVISED] | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:11.inetd.v1.1.asc|FreeBSD-SA-01:11.inetd.v1.1.asc /; | inetd ident server allows remote users to partially | 2001-01-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:10.bind.asc|FreeBSD-SA-01:10.bind.asc /; | bind remote denial of service | 2001-01-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:09.crontab.v1.1.asc|FreeBSD-SA-01:09.crontab.v1.1.asc /; | crontab allows users to read certain files [REVISED] | 2001-01-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:08.ipfw.asc|FreeBSD-SA-01:08.ipfw.asc /; | ipfw/ip6fw allows bypassing of 'established' keyword | 2001-01-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:07.xfree86.asc|FreeBSD-SA-01:07.xfree86.asc /; | Multiple XFree86 3.3.6 vulnerabilities | 2001-01-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:06.zope.asc|FreeBSD-SA-01:06.zope.asc /; | zope vulnerability allows escalation of privileges | 2001-01-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:05.stunnel.asc|FreeBSD-SA-01:05.stunnel.asc /; | stunnel contains potential remote compromise | 2001-01-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:04.joe.asc|FreeBSD-SA-01:04.joe.asc /; | joe creates insecure recovery files | 2001-01-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:03.bash1.asc|FreeBSD-SA-01:03.bash1.asc /; | bash1 creates insecure temporary files | 2001-01-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:02.syslog-ng.asc|FreeBSD-SA-01:02.syslog-ng.asc /; | syslog-ng remote denial-of-service | 2001-01-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:01.openssh.asc|FreeBSD-SA-01:01.openssh.asc /; | Hostile server OpenSSH agent/X11 forwarding | 2001-01-15 :< |
2000>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:81.ethereal.asc|FreeBSD-SA-00:81.ethereal.asc /; | ethereal allows remote code execution | 2000-12-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:80.halflifeserver.asc|FreeBSD-SA-00:80.halflifeserver.asc /; | halflifeserver allows remote code execution | 2000-12-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:79.oops.asc|FreeBSD-SA-00:79.oops.asc /; | oops allows remote code execution | 2000-12-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:78.bitchx.v1.1.asc|FreeBSD-SA-00:78.bitchx.v1.1.asc /; | bitchx/ko-bitchx allows remote code execution [REVISED] | 2000-12-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:77.procfs.v1.1.asc|FreeBSD-SA-00:77.procfs.v1.1.asc /; | Several vulnerabilities in procfs [REVISED] | 2000-12-18 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:76.tcsh-csh.asc|FreeBSD-SA-00:76.tcsh-csh.asc /; | tcsh/csh creates insecure temporary file | 2000-11-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:75.php.asc|FreeBSD-SA-00:75.php.asc /; | mod_php3/mod_php4 allows remote code execution | 2000-11-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:74.gaim.asc|FreeBSD-SA-00:74.gaim.asc /; | gaim remote vulnerability | 2000-11-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:73.thttpd.asc|FreeBSD-SA-00:73.thttpd.asc /; | thttpd allows remote reading of local files | 2000-11-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:72.curl.asc|FreeBSD-SA-00:72.curl.asc /; | curl client-side vulnerability | 2000-11-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:71.mgetty.asc|FreeBSD-SA-00:71.mgetty.asc /; | mgetty can create or overwrite files | 2000-11-20 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:70.ppp-nat.asc|FreeBSD-SA-00:70.ppp-nat.asc /; | ppp "deny_incoming" does not correctly deny incoming packets | 2000-11-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:69.telnetd.v1.1.asc|FreeBSD-SA-00:69.telnetd.v1.1.asc /; | telnetd allows remote system resource consumption [REVISED] | 2000-11-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:68.ncurses.v1.1.asc|FreeBSD-SA-00:68.ncurses.v1.1.asc /; | ncurses allows local privilege escalation [REVISED] | 2000-11-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:67.gnupg.asc|FreeBSD-SA-00:67.gnupg.asc /; | gnupg fails to correctly verify signatures | 2000-11-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:66.netscape.asc|FreeBSD-SA-00:66.netscape.asc /; | Client vulnerability in Netscape | 2000-11-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:65.xfce.asc|FreeBSD-SA-00:65.xfce.asc /; | xfce allows local X session compromise | 2000-11-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:64.global.asc|FreeBSD-SA-00:64.global.asc /; | global port allows remote compromise through CGI script | 2000-11-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:63.getnameinfo.asc|FreeBSD-SA-00:63.getnameinfo.asc /; | getnameinfo function allows remote denial of service | 2000-11-01 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:62.top.v1.1.asc|FreeBSD-SA-00:62.top.v1.1.asc /; | top allows reading of kernel memory [REISSUED] | 2000-11-01 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:61.tcpdump.v1.1.asc|FreeBSD-SA-00:61.tcpdump.v1.1.asc /; | tcpdump contains remote vulnerabilities [REISSUED] | 2000-10-31 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:60.boa.asc|FreeBSD-SA-00:60.boa.asc /; | boa web server allows arbitrary file access/execution | 2000-10-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:59.pine.asc|FreeBSD-SA-00:59.pine.asc /; | pine4 port contains remote vulnerability | 2000-10-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:58.chpass.asc|FreeBSD-SA-00:58.chpass.asc /; | chpass family contains local root vulnerability | 2000-10-30 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:57.muh.asc|FreeBSD-SA-00:57.muh.asc /; | muh IRC bouncer remote vulnerability | 2000-10-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:56.lprng.asc|FreeBSD-SA-00:56.lprng.asc /; | LPRng contains potential root compromise | 2000-10-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:55.xpdf.asc|FreeBSD-SA-00:55.xpdf.asc /; | xpdf contains multiple vulnerabilities | 2000-10-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:54.fingerd.asc|FreeBSD-SA-00:54.fingerd.asc /; | fingerd allows remote reading of filesystem | 2000-10-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:52.tcp-iss.asc|FreeBSD-SA-00:52.tcp-iss.asc /; | TCP uses weak initial sequence numbers | 2000-10-06 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:53.catopen.asc|FreeBSD-SA-00:53.catopen.asc /; | catopen() may pose security risk for third party code | 2000-09-27 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:51.mailman.asc|FreeBSD-SA-00:51.mailman.asc /; | mailman port allows local root compromise | 2000-09-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:50.listmanager.asc|FreeBSD-SA-00:50.listmanager.asc /; | listmanager port allows local root compromise | 2000-09-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:49.eject.asc|FreeBSD-SA-00:49.eject.asc /; | eject port allows local root exploit | 2000-09-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:48.xchat.asc|FreeBSD-SA-00:48.xchat.asc /; | xchat port inappropriately handles URLs | 2000-09-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:47.pine.asc|FreeBSD-SA-00:47.pine.asc /; | pine4 port allows denial of service | 2000-09-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:46.screen.asc|FreeBSD-SA-00:46.screen.asc /; | screen port contains local root compromise | 2000-09-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:45.esound.asc|FreeBSD-SA-00:45.esound.asc /; | esound port allows file permissions to be modified | 2000-08-31 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:44.xlock.asc|FreeBSD-SA-00:44.xlock.asc /; | xlockmore port allows reading of password file | 2000-08-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:43.brouted.asc|FreeBSD-SA-00:43.brouted.asc /; | brouted port allows gid kmem compromise | 2000-08-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:42.linux.asc|FreeBSD-SA-00:42.linux.asc /; | Linux binary compatability mode can cause system compromise | 2000-08-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:41.elf.asc|FreeBSD-SA-00:41.elf.asc /; | Malformed ELF images can cause a system hang | 2000-08-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:40.mopd.asc|FreeBSD-SA-00:40.mopd.asc /; | mopd port allows remote root compromise | 2000-08-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:39.netscape.asc|FreeBSD-SA-00:39.netscape.asc /; | Two vulnerabilities in Netscape | 2000-08-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:38.zope.asc|FreeBSD-SA-00:38.zope.asc /; | zope port allows remote modification of DTML documents | 2000-08-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:37.cvsweb.asc|FreeBSD-SA-00:37.cvsweb.asc /; | cvsweb allows increased access to CVS committers | 2000-08-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:36.ntop.asc|FreeBSD-SA-00:36.ntop.asc /; | ntop port allows remote and minor local compromise | 2000-08-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:35.proftpd.asc|FreeBSD-SA-00:35.proftpd.asc /; | proftpd port contains remote root compromise | 2000-08-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:34.dhclient.asc|FreeBSD-SA-00:34.dhclient.asc /; | dhclient vulnerable to malicious dhcp server | 2000-08-14 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:33.kerberosIV.asc|FreeBSD-SA-00:33.kerberosIV.asc /; | kerberosIV distribution contains multiple vulnerabilities | 2000-07-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:32.bitchx.asc|FreeBSD-SA-00:32.bitchx.asc /; | bitchx port contains client-side vulnerability | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:31.canna.asc|FreeBSD-SA-00:31.canna.asc /; | Canna port contains remote vulnerability [REVISED] | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:30.openssh.asc|FreeBSD-SA-00:30.openssh.asc /; | OpenSSH UseLogin directive permits remote root access | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:29.wu-ftpd.asc|FreeBSD-SA-00:29.wu-ftpd.asc /; | wu-ftpd port contains remote root compromise [REVISED] | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:28.majordomo.asc|FreeBSD-SA-00:28.majordomo.asc /; | majordomo is not safe to run on multi-user machines | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:27.XFree86-4.asc|FreeBSD-SA-00:27.XFree86-4.asc /; | XFree86-4.0 port contains local root overflow | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:26.popper.asc|FreeBSD-SA-00:26.popper.asc /; | popper port contains remote vulnerability [REVISED] | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:24.libedit.asc|FreeBSD-SA-00:24.libedit.asc /; | libedit reads config file from current directory | 2000-07-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:23.ipopt.asc|FreeBSD-SA-00:23.ipopt.asc /; | Remote denial-of-service in IP stack [REVISED] | 2000-06-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:25.alpha-random.asc|FreeBSD-SA-00:25.alpha-random.asc /; | FreeBSD/Alpha platform lacks kernel pseudo-random number | 2000-06-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:22.apsfilter.asc|FreeBSD-SA-00:22.apsfilter.asc /; | apsfilter allows users to execute arbitrary commands as | 2000-06-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:21.ssh.asc|FreeBSD-SA-00:21.ssh.asc /; | ssh port listens on extra network port [REVISED] | 2000-06-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:20.krb5.asc|FreeBSD-SA-00:20.krb5.asc /; | krb5 port contains remote and local root exploits. | 2000-05-26 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:19.semconfig.asc|FreeBSD-SA-00:19.semconfig.asc /; | local users can prevent all processes from exiting | 2000-05-23 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:18.gnapster.knapster.asc|FreeBSD-SA-00:18.gnapster.knapster.asc /; | gnapster/knapster ports allows remote users to view local files | 2000-05-09 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:17.libmytinfo.asc|FreeBSD-SA-00:17.libmytinfo.asc /; | Buffer overflow in libmytinfo may yield increased | 2000-05-09 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:16.golddig.asc|FreeBSD-SA-00:16.golddig.asc /; | golddig port allows users to overwrite local files | 2000-05-09 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:15.imap-uw.asc|FreeBSD-SA-00:15.imap-uw.asc /; | imap-uw allows local users to deny service to any mailbox | 2000-04-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:14.imap-uw.asc|FreeBSD-SA-00:14.imap-uw.asc /; | imap-uw contains security vulnerabilities for "closed" | 2000-04-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:13.generic-nqs.asc|FreeBSD-SA-00:13.generic-nqs.asc /; | generic-nqs contains a local root compromise | 2000-04-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:12.healthd.asc|FreeBSD-SA-00:12.healthd.asc /; | healthd allows a local root compromise | 2000-04-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:11.ircii.asc|FreeBSD-SA-00:11.ircii.asc /; | ircII port contains a remote overflow | 2000-04-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:10.orville-write.asc|FreeBSD-SA-00:10.orville-write.asc /; | orville-write port contains local root compromise. | 2000-03-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:09.mtr.asc|FreeBSD-SA-00:09.mtr.asc /; | mtr port contains a local root exploit. | 2000-03-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:08.lynx.asc|FreeBSD-SA-00:08.lynx.asc /; | Lynx ports contain numerous buffer overflows | 2000-03-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:07.mh.asc|FreeBSD-SA-00:07.mh.asc /; | mh/nmh/exmh/exmh2 ports allow remote execution of binary code | 2000-03-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:06.htdig.asc|FreeBSD-SA-00:06.htdig.asc /; | htdig port allows remote reading of files | 2000-03-01 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:05.mysql.asc|FreeBSD-SA-00:05.mysql.asc /; | MySQL allows bypassing of password authentication | 2000-02-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:04.delegate.asc|FreeBSD-SA-00:04.delegate.asc /; | Delegate port contains numerous buffer overflows | 2000-02-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:03.asmon.asc|FreeBSD-SA-00:03.asmon.asc /; | Asmon/Ascpu ports fail to drop privileges | 2000-02-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:02.procfs.asc|FreeBSD-SA-00:02.procfs.asc /; | Old procfs hole incompletely filled | 2000-01-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:01.make.asc|FreeBSD-SA-00:01.make.asc /; | Insecure temporary file handling in make(1) | 2000-01-19 :< |
1999>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-99:06.amd.asc|FreeBSD-SA-99:06.amd.asc /; | remote amd attack | 1999-09-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-99:05.fts.asc|FreeBSD-SA-99:05.fts.asc /; | fts library routine vulnerability | 1999-09-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-99:04.core.asc|FreeBSD-SA-99:04.core.asc /; | Coredumps and symbolic links | 1999-09-15 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-99:03.ftpd.asc|FreeBSD-SA-99:03.ftpd.asc /; | Three ftp daemons in ports vulnerable to attack. | 1999-09-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-99:02.profil.asc|FreeBSD-SA-99:02.profil.asc /; | Profiling Across Exec Calls | 1999-09-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-99:01.chflags.asc|FreeBSD-SA-99:01.chflags.asc /; | BSD File Flags and Programming Techniques | 1999-09-04 :< |
1998>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:08.fragment.asc|FreeBSD-SA-98:08.fragment.asc /; | IP fragmentation denial of service | 1998-11-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:07.rst.asc|FreeBSD-SA-98:07.rst.asc /; | TCP RST denial of sevice | 1998-10-13 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:06.icmp.asc|FreeBSD-SA-98:06.icmp.asc /; | smurf attack | 1998-06-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:05.nfs.asc|FreeBSD-SA-98:05.nfs.asc /; | system crash with NFS | 1998-06-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:04.mmap.asc|FreeBSD-SA-98:04.mmap.asc /; | security compromise via mmap | 1998-06-02 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:03.ttcp.asc|FreeBSD-SA-98:03.ttcp.asc /; | Problems with TTCP | 1998-05-14, revised at 1998-05-18 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:02.mmap.asc|FreeBSD-SA-98:02.mmap.asc /; | security compromise via mmap | 1998-03-12 :< |
1997>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-97:06.f00f.asc|FreeBSD-SA-97:06.f00f.asc /; | Pentium processors have flaw allowing unpriviledged crashes | 1997-12-09 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-98:01.land.asc|FreeBSD-SA-98:01.land.asc /; | LAND attack can cause harm to running FreeBSD systems | 1997-12-01 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-97:05.open.asc|FreeBSD-SA-97:05.open.asc /; | security compromise via open() | 1997-10-29 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-97:04.procfs.asc|FreeBSD-SA-97:04.procfs.asc /; | security compromise via procfs | 1997-08-19 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-97:03.sysinstall.asc|FreeBSD-SA-97:03.sysinstall.asc /; | sysinstall bug | 1997-04-07 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-97:02.lpd.asc|FreeBSD-SA-97:02.lpd.asc /; | Buffer overflow in lpd | 1997-03-26 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-97:01.setlocale.asc|FreeBSD-SA-97:01.setlocale.asc /; | setlocale() bug in all released versions of FreeBSD | 1997-02-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:21.talkd.asc|FreeBSD-SA-96:21.talkd.asc /; | unauthorized access via buffer overrun in talkd | 1997-01-18 :< |
1996>; :< | ||
| filename | Topic | Announced Date (yyyy-mm-dd) >; |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:20.stack-overflow.asc|FreeBSD-SA-96:20.stack-overflow.asc /; | unauthorized access via buffer overruns | 1996-12-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:19.modstat.asc|FreeBSD-SA-96:19.modstat.asc /; | Buffer overflow in modstat | 1996-12-10 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:18.lpr.asc|FreeBSD-SA-96:18.lpr.asc /; | Buffer overflow in lpr (revised) | 1996-11-25 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:17.rzsz.asc|FreeBSD-SA-96:17.rzsz.asc /; | "Trojan Horse" vulnerability via rz program | 1996-07-16 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:16.rdist.asc|FreeBSD-SA-96:16.rdist.asc /; | security vulnerability in rdist | 1996-07-12 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:15.ppp.asc|FreeBSD-SA-96:15.ppp.asc /; | security compromise from ppp | 1996-07-04 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:12.perl.asc|FreeBSD-SA-96:12.perl.asc /; | security compromise from perl (suidperl) utility | 1996-06-28 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:14.ipfw.asc|FreeBSD-SA-96:14.ipfw.asc /; | Firewall filter leak with user level ipfw | 1996-06-24 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:13.comsat.asc|FreeBSD-SA-96:13.comsat.asc /; | unauthorized mail reading via comsat | 1996-06-05 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:11.man.asc|FreeBSD-SA-96:11.man.asc /; | security compromise from man page utility | 1996-05-21 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:10.mount_union.asc|FreeBSD-SA-96:10.mount_union.asc /; | system stability compromise via mount_union program | 1996-05-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:09.vfsload.asc|FreeBSD-SA-96:09.vfsload.asc /; | unauthorized access via mount_union / mount_msdos (vfsload) | 1996-05-17 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:02.apache.asc|FreeBSD-SA-96:02.apache.asc /; | apache httpd meta-character escaping | 1996-04-22 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:08.syslog.asc|FreeBSD-SA-96:08.syslog.asc /; | syslog vulnerability | 1996-04-21 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:01.sliplogin.asc|FreeBSD-SA-96:01.sliplogin.asc /; | sliplogin unauthorized access vulnerability | 1996-04-21 |
| :/b ftp://ftp.svbug.com/pub/FreeBSD/CERT/advisories/FreeBSD-SA-96:03.sendmail-suggestion.asc|FreeBSD-SA-96:03.sendmail-suggestion.asc /; | *suggested action only* sendmail smrsh now available | 1996-04-20 :< |