CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “netbsd”

10 vulnerabilities found for “netbsd”

CVE-2024-6387
HIGH8.1

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by failing to authenticate within a set time period.

sonicwall / sma_6200_firmware+91
Network
Published Jul 1, 2024
CVE-2023-45198
HIGH7.5

ftpd before "NetBSD-ftpd 20230930" can leak information about the host filesystem before authentication via an MLSD or MLST command. tnftpd (the portable version of NetBSD ftpd) before 20231001 is also vulnerable.

netbsd / ftpd+1
Network
Published Oct 5, 2023
CVE-2021-45484
HIGH7.5

In NetBSD through 9.2, the IPv6 fragment ID generation algorithm employs a weak cryptographic PRNG.

netbsd / netbsd
Network
Published Dec 25, 2021
CVE-2021-45488
HIGH7.5

In NetBSD through 9.2, there is an information leak in the TCP ISN (ISS) generation algorithm.

netbsd / netbsd
Network
Published Dec 25, 2021
CVE-2021-45489
HIGH7.5

In NetBSD through 9.2, the IPv6 Flow Label generation algorithm employs a weak cryptographic PRNG.

netbsd / netbsd
Network
Published Dec 25, 2021
CVE-2021-45487
HIGH7.5

In NetBSD through 9.2, the IPv4 ID generation algorithm does not use appropriate cryptographic measures.

netbsd / netbsd
Network
Published Dec 25, 2021
CVE-2020-26139
MEDIUM5.3

An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denial-of-service attacks against connected clients and makes it easier to exploit other vulnerabilities in connected clients.

netbsd / netbsd+165
Adjacent
Published May 11, 2021
CVE-2012-5365
HIGH7.5

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Router Advertisement packets containing multiple Routing entries.

freebsd / freebsd+1
Network
Published Feb 20, 2020
CVE-2012-5363
HIGH7.5

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Neighbor Solicitation messages, a different vulnerability than CVE-2011-2393.

freebsd / freebsd+1
Network
Published Feb 20, 2020
CVE-2011-2480
HIGH7.5

Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local unprivileged user to cause the kernel to copy large amounts of kernel memory back to the user, disclosing potentially sensitive information.

freebsd / freebsd+1
Network
Published Nov 27, 2019