Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  NETBSD : NetBSD 5.1
  NETBSD : NetBSD 5.0
  NETBSD : NetBSD 4.0
  NETBSD : NetBSD 3.1
  NETBSD : NetBSD 3.0
  NETBSD : NetBSD 2.1
  NETBSD : NetBSD 1.6
  NETBSD : NetBSD 1.3
  NETBSD : NetBSD 1.4
  NETBSD : NetBSD 1.5
  NETBSD : NetBSD-current
  NETBSD : NetBSD 1.4.2
Name:NETBSD : NetBSD 2.0

 NetBSD ktruser integer overflow
   
 BSD systems securelevel protection bypass
updated since 09.01.2006
document By mounting different filesystem it's possible to mask file flagged 'immutable'. It's possible to rollback system tiime by setting it to maximum value.
6!Multiple hardware platforms hyper threading technology systems information leak
updated since 13.05.2005
document Unprivileged thread can read data from privileged thread memory from CPU cache memory.
6!Heimdal ftpd/tnftpd/lukemftpd signal handling race conditions
updated since 19.08.2004
document Problem with OOB data processing.
7!TCP RST packets spoofing
updated since 21.04.2004
document By sending spoofed RST it's possible to terminate established TCP connection. unlike TPC hijacking attacks there is no need for exact TCP sequence number, and number can be any number from handshaked TCP window. It significantly increases attack efficiency. In NetBSD sequence number for RST is not checked at all, it makes it possible to terminate session with single packet.
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server