📦 Openbsd

by Openbsd

🔍 What is Openbsd?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-10934

CRITICAL CVSS 9.8 Nov 15, 2024

This CVE describes a double free vulnerability in the NFS client and server implementation in OpenBSD, which could allow attackers to execute arbitrary code or cause denial of service. The vulnerabili...

CVE-2024-29937

CRITICAL CVSS 9.8 Apr 11, 2024

This critical vulnerability in NFS implementations allows remote attackers to execute arbitrary code on affected systems without requiring authentication. It affects OpenBSD and FreeBSD systems runnin...

CVE-2023-35784

CRITICAL CVSS 9.8 Jun 16, 2023

This vulnerability in OpenBSD and LibreSSL allows memory corruption through double-free or use-after-free conditions in SSL_clear function. Attackers could potentially execute arbitrary code or cause ...

CVE-2021-46880

CRITICAL CVSS 9.8 Apr 15, 2023

This vulnerability in LibreSSL and OpenBSD's certificate verification allows authentication bypass by discarding errors for unverified certificate chains. Attackers can impersonate trusted entities to...

CVE-2024-11149

HIGH CVSS 7.9 Dec 6, 2024

This vulnerability in OpenBSD's vmm(4) hypervisor fails to properly restore GDTR limits on Intel VMX CPUs, potentially allowing a malicious virtual machine to escape isolation and execute arbitrary co...

CVE-2024-11148

HIGH CVSS 7.5 Dec 5, 2024

This vulnerability allows remote attackers to cause a denial-of-service (DoS) by sending a malformed FastCGI request to OpenBSD's httpd server. The NULL pointer dereference causes the httpd process to...

CVE-2023-52557

HIGH CVSS 7.5 Mar 1, 2024

This vulnerability in OpenBSD's npppd (Point-to-Point Protocol daemon) allows remote attackers to cause a denial of service by sending specially crafted L2TP messages with malformed Attribute-Value Pa...

CVE-2023-27567

HIGH CVSS 7.5 Mar 3, 2023

A kernel crash vulnerability in OpenBSD 7.2 occurs when a TCP packet with destination port 0 matches a pf divert-to rule, causing a denial of service. This affects OpenBSD systems using pf firewall wi...

CVE-2022-27881

HIGH CVSS 7.5 Mar 25, 2022

This is a heap buffer overflow vulnerability in OpenBSD's slaacd daemon, triggered by malicious IPv6 router advertisements containing more than seven nameserver entries. It affects OpenBSD systems wit...

CVE-2010-4816

HIGH CVSS 7.5 Jun 22, 2021

A null pointer dereference vulnerability in the FTP daemon (ftpd) of affected FreeBSD and OpenBSD systems allows remote attackers to crash the ftpd service, causing denial of service. This affects sys...

CVE-2025-30334

MEDIUM CVSS 6.5 Mar 20, 2025

A vulnerability in OpenBSD's wg(4) WireGuard implementation allows specially crafted network traffic to cause a kernel crash (denial of service). This affects OpenBSD 7.5 and 7.6 systems using WireGua...

CVE-2024-10933

MEDIUM CVSS 5.0 Dec 5, 2024

This vulnerability in OpenBSD's readdir function allows directory traversal attacks when processing untrusted file systems. Attackers could potentially access files outside intended directories by exp...

CVE-2021-34999

MEDIUM CVSS 5.5 May 7, 2024

This vulnerability in OpenBSD's kernel multicast routing implementation allows local attackers to read uninitialized kernel memory, potentially disclosing sensitive information. Attackers need local l...