Section: .. / advisories / freebsd /
| /// File Name: |
FreeBSD-SN-02:02 |
Description:
|
FreeBSD Security Notice for Ports - The following software included with FreeBSD contains security vulnerabilities if it is older than: analog-5.22, radius (several), dnews-5.5h2, ethereal-0.9.3, icecast-1.3.12, dhcp-3.0.1.r8_1, mozilla-1.0.rc1_3,1, mod_python-2.7.8, ntop, p5-SOAP-Lite-0.55, puf-0.93.1, sudo-1.6.6, webalizer-2.1.10, and xpilot-4.5.2.
| | Homepage: | http://www.freebsd.org/security | | File Size: | 8008 | | Last Modified: | May 14 07:42:18 2002 |
| MD5 Checksum: | 8f7bc25e41354117df1d83f96e1f31f3 |
|
| /// File Name: |
FreeBSD-SN-02:03 |
Description:
|
The following FreeBSD ports prior to the listed version have security vulnerabilities: amanda-2.3.0.4, fetchmail-5.9.11, gaim-0.58, gnokii-0.4.0.p20, horde-1.2.8, imap-uw (not fixed), imp-2.2.8, linux-netscape 6.2.3, mnogosearch-3.1.19_2, mpg321-0.2.9, ssh2 password auth issue, tinyproxy-1.5.0, and webmin-0.970.
| | Homepage: | http://www.freebsd.org/security | | File Size: | 5969 | | Last Modified: | Jun 3 08:13:22 2002 |
| MD5 Checksum: | 977f1a291e94483e10d6ea3c8f67ae6b |
|
| /// File Name: |
FreeBSD-SN-02:04.apache |
Description:
|
FreeBSD Security Notice FreeBSD-SN-02:04 - FreeBSD ports of apache 1.3.24 and below contain a remote vulnerability. Also affects apache+ssl, mod_ssl, and apache 2.x below 2.0.39. Vulnerability number CAN-2002-0392. The following software included with FreeBSD contains security vulnerabilities if it is older than: Bind9 v9.2.1, courier-imap-1.4.3_1, ethereal-0.9.4, fakebo-0.4.1_1, fragroute-1.2_1, ghostscript-6.53, icmpmonitor-1.11_1, imap-uw (all versions), mnews (all versions), nn-6.6.2_1, sharity-light-1.2_1, slurp-1.10_1, and xchat-1.8.9.
| | Homepage: | http://www.freebsd.org/security | | File Size: | 7224 | | Last Modified: | Jun 20 10:37:12 2002 |
| MD5 Checksum: | 72ba3d776419c0e874d4eccfcfcf4941 |
|
| /// File Name: |
freebsd.sa-00.01.make |
Description:
|
FreeBSD Security Advisory - The -j option to make uses /tmp in an insecure mannor, making it vulnerable to a race condition. All versions of NetBSD and OpenBSD are also believed to be vulnerable to this problem. Other systems using a BSD-derived make(1) binary may also be vulnerable.
| | File Size: | 8477 | | Last Modified: | Jan 22 04:32:58 2000 |
| MD5 Checksum: | 8b703fc1e0f12956fb08838bd0c0e58b |
|
| /// File Name: |
freebsd.sa-00.02.procfs |
Description:
|
FreeBSD Security Advisory - Old procfs hole incompletely filled. In 1997 a flaw was discoverd in *BSD procfs code involving /proc/pid/mem interface, leading to a local root compromise. Since then *BSD kernels contained a simple fix which was meant to close this hole. Unfortunately, throughout these three years it was still possible to abuse /proc/pid/mem in a similar, though more complicated fashion, which could lead to local root compromise. FreeBSD security site here.
| | File Size: | 6650 | | Last Modified: | Jan 29 00:09:24 2000 |
| MD5 Checksum: | 866572f4f87725889eb53e1c2bf83084 |
|
| /// File Name: |
freebsd.sa-00.03.asmon |
Description:
|
Two optional third-party ports distributed with FreeBSD (Asmon/Ascpu) can be used to execute commands with elevated privileges, specifically setgid kmem privileges. This may lead to a local root compromise.
| | Homepage: | http://www.freebsd.org | | File Size: | 3099 | | Last Modified: | Feb 23 11:13:45 2000 |
| MD5 Checksum: | 78a32f1f72fdf47e048359524c001f91 |
|
| /// File Name: |
freebsd.sa-00.04.delegate |
Description:
|
An optional third-party port distributed with FreeBSD (Delegate) contains numerous remotely-exploitable buffer overflows which allow an attacker to execute arbitrary commands on the local system, typically as the 'nobody' user.
| | Homepage: | http://www.freebsd.org | | File Size: | 4084 | | Last Modified: | Feb 23 11:16:00 2000 |
| MD5 Checksum: | def7b320311a96898c82289fe813100a |
|
| /// File Name: |
freebsd.sa-00.05.gnapster |
Description:
|
FreeBSD Security Advisory - gnapster(version 1.3.8 and earlier), from the ports collection, contains a vulnerability which allows remote gnapster users to view any file on the local system which is accessible to the user running gnapster. Gnapster does not run with elevated privileges, so it is only the user's regular filesystem access permissions which are involved.
| | Homepage: | http://www.freebsd.org | | File Size: | 3262 | | Last Modified: | May 9 23:17:31 2000 |
| MD5 Checksum: | 8ece451b6b55885a4911d9d9bcbf0b6f |
|
| /// File Name: |
freebsd.sa-00.05.golddig |
Description:
|
FreeBSD Security Advisory - golddig, from the ports collection, erroneously installs a level-creation utility setuid root, which allows users to overwrite the contents of arbitrary local files. It is not believed that any elevation of privileges is possible with this vulnerability because the contents of the file are a textual representation of a golddig game level which is highly constrained.
| | Homepage: | http://www.freebsd.org | | File Size: | 3549 | | Last Modified: | May 9 23:13:32 2000 |
| MD5 Checksum: | e80dfab428f54601385c02d8c9ecb031 |
|
| /// File Name: |
freebsd.sa-00.05.libmytinfo |
Description:
|
FreeBSD Security Advisory - A buffer overflow in libmytinfo may yield increased privileges with third-party software.
| | Homepage: | http://www.freebsd.org | | File Size: | 5802 | | Last Modified: | May 9 23:16:00 2000 |
| MD5 Checksum: | 14ec5af243c48c0a19080c1da3a7ca7a |
|
| /// File Name: |
freebsd.sa-00.05.mysql322-server |
Description:
|
FreeBSD Security Advisory - The MySQL database server (versions prior to 3.22.32) has a flaw in the password authentication mechanism which allows anyone who can connect to the server to access databases without requiring a password, given a valid username on the database - in other words, the normal password authentication mechanism can be completely bypassed.
| | Homepage: | http://www.freebsd.org | | File Size: | 3498 | | Last Modified: | Feb 29 09:16:48 2000 |
| MD5 Checksum: | cb6b34a2a03fdcf9ea2e562583b4c132 |
|
| /// File Name: |
freebsd.sa-00.06.htdig |
Description:
|
FreeBSD Security Advisory - There is a security hole in the htsearch cgi-bin program for versions of htdig prior to 3.1.5, which allows remote users to read any file on the local system that is accessible to the user ID running htsearch.
| | Homepage: | http://www.freebsd.org | | File Size: | 3523 | | Last Modified: | Mar 1 22:12:07 2000 |
| MD5 Checksum: | 9a0bf489d75c650bc8f4efdedbff2ac1 |
|
| /// File Name: |
freebsd.sa-00.07.mh |
Description:
|
FreeBSD Security Advisory - (Revised Mar 19) MH and its successor NMH are popular Mail User Agents, availabe in the FreeBSD ports collection. EXMH and EXMH2 are TCL/TK-based front-ends to the MH system. The mhshow command used for viewing MIME attachments contains a buffer overflow which can be exploited by a specially-crafted email attachment, which will allow the execution of arbitrary code as the local user when the attachment is opened. The japanese version is also vulnerable.
| | Homepage: | http://www.freebsd.org | | File Size: | 4431 | | Last Modified: | Mar 24 02:56:09 2000 |
| MD5 Checksum: | 3e571188ff7eec5a07aa4e51f0719aaa |
|
| /// File Name: |
freebsd.sa-00.09.lynx |
Description:
|
FreeBSD Security Advisory - The lynx software is written in a very insecure style and contains numerous potential and several proven security vulnerabilities exploitable by a malicious server. No simple fix is available until a full review of lynx is done.
| | Homepage: | http://www.freebsd.org | | File Size: | 3037 | | Last Modified: | Mar 17 00:40:59 2000 |
| MD5 Checksum: | 6a9211b7872cd98e9ce57404b3db5704 |
|
| /// File Name: |
freebsd.sa-00.09.mtr |
Description:
|
FreeBSD Security Advisory - mtr, from the ports collection, fails to correctly drop setuid root privileges during operation, allowing a local root compromise.
| | Homepage: | http://www.freebsd.org | | File Size: | 2981 | | Last Modified: | Mar 17 00:38:42 2000 |
| MD5 Checksum: | 2361080ffc72e324024fd83475fa4a3d |
|
| /// File Name: |
freebsd.sa-00.10.orville |
Description:
|
FreeBSD Security Advisory - Orville-write, provided in the ports collection, is a replacement for the write command, which provides improved control over message delivery and other features. One of the commands installed by the port is incorrectly installed with setuid root permissions. The 'huh' command should not have any special privileges since it is intended to be run by the local user to view his saved messages.
| | Homepage: | http://www.freebsd.org | | File Size: | 3230 | | Last Modified: | Mar 17 00:36:16 2000 |
| MD5 Checksum: | 3ad1d2c8a7bc7b46102752cf9167e0ea |
|
| /// File Name: |
freebsd.sa-97.04.procfs |
Description:
|
security compromise via procfs
| | File Size: | 15738 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | 9d2556e4e1e4642dc3a43fc404948d3c |
|
| /// File Name: |
freebsd.sa-97.05.open |
Description:
|
security compromise via open()
| | File Size: | 7533 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | eaf7b191049a4b83413533075cccab49 |
|
| /// File Name: |
freebsd.sa-97.06.pentium.proc |
Description:
|
Pentium processors have flaw allowing unpriviledged crashes
| | File Size: | 8433 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | 8ccf7917db398c89169497b5c4493ea1 |
|
| /// File Name: |
freebsd.sa-98.01.land |
Description:
|
LAND attack can cause harm to running FreeBSD systems
| | File Size: | 8570 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | a7650291ba3b631b4e21f34533818eb0 |
|
| /// File Name: |
freebsd.sa-98.02.mmap |
Description:
|
security compromise via mmap
| | File Size: | 11067 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | c83fe39105a866e87f6406e790abe6c9 |
|
| /// File Name: |
freebsd.sa-98.03.ttcp |
Description:
|
Problems with TTCP
| | File Size: | 4573 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | 12a274244e61810b8281bed43b80abff |
|
| /// File Name: |
freebsd.sa-98.04.mmap |
Description:
|
security compromise via mmap
| | File Size: | 7105 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | 58c42eb6ece971d93b135a6512e001db |
|
| /// File Name: |
freebsd.sa-98.05.nfs |
Description:
|
system crash with NFS
| | File Size: | 4649 | | Last Modified: | Sep 23 05:52:22 1999 |
| MD5 Checksum: | 160c990009adcdeebf854ecdc10687f0 |
|
|
|
|
|