<?xml version="1.0"?>
<!DOCTYPE webpage
  PUBLIC "-//NetBSD//DTD Website-based NetBSD Extension//EN"
	 "http://www.NetBSD.org/XML/htdocs/lang/share/xml/website-netbsd.dtd">

<webpage id="support-security-advisory">
<config param="desc" value="NetBSD Security Advisories by Date"/>
<config param="cvstag" value="$NetBSD: advisory.xml,v 1.36 2011/12/15 16:37:13 tonnerre Exp $"/>
<config param="rcsdate" value="$Date: 2011/12/15 16:37:13 $"/>
<head>
<title>NetBSD Security Advisories by Date</title>
</head>

<sect1 id="advisories">
<itemizedlist>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-009.txt.asc">NetBSD-SA2011-009</ulink> BIND resolver DoS</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-008.txt.asc">NetBSD-SA2011-008</ulink> OpenPAM privilege escalation</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-007.txt.asc">NetBSD-SA2011-007</ulink> LZW decoding loop on manipulated compressed files</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-006.txt.asc">NetBSD-SA2011-006</ulink> BIND DoS via packet with rrtype zero</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-005.txt.asc">NetBSD-SA2011-005</ulink> ISC dhclient does not strip shell meta-characters in</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-004.txt.asc">NetBSD-SA2011-004</ulink> Kernel stack overflow via nested IPCOMP packet</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-003.txt.asc">NetBSD-SA2011-003</ulink> Exhausting kernel memory from user controlled value</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-002.txt.asc">NetBSD-SA2011-002</ulink> OpenSSL TLS extension parsing race condition.</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2011-001.txt.asc">NetBSD-SA2011-001</ulink> BIND DoS due to improper handling of RRSIG records</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-013.txt.asc">NetBSD-SA2010-013</ulink> UDP6 Option Parsing local Denial of Service</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-012.txt.asc">NetBSD-SA2010-012</ulink> OpenSSL TLS extension parsing race condition.</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-011.txt.asc">NetBSD-SA2010-011</ulink> OpenSSL Double Free Arbitrary Code Execution</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-010.txt.asc">NetBSD-SA2010-010</ulink> Buffer Length Handling Errors in netsmb</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-009.txt.asc">NetBSD-SA2010-009</ulink> Privilege Handling Errors In larn</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-008.txt.asc">NetBSD-SA2010-008</ulink> sftp(1)/ftp(1)/glob(3) related resource exhaustion</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-007.txt.asc">NetBSD-SA2010-007</ulink> Integer overflow in libbz2 decompression code</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-006.txt.asc">NetBSD-SA2010-006</ulink> Buffer length checking errors in CODA</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-005.txt.asc">NetBSD-SA2010-005</ulink> NTP server Denial of Service vulnerability</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-004.txt.asc">NetBSD-SA2010-004</ulink> amd64 per-page No-execute (NX) bit disabled</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-003.txt.asc">NetBSD-SA2010-003</ulink> azalia(4)/hdaudio(4) negative mixer index panic</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-002.txt.asc">NetBSD-SA2010-002</ulink> OpenSSL TLS renegotiation man in the middle vulnerability</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2010-001.txt.asc">NetBSD-SA2010-001</ulink> File system module autoloading Denial of Service attack</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-013.txt.asc">NetBSD-SA2009-013</ulink> BIND named dynamic update Denial of Service vulnerability</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-012.txt.asc">NetBSD-SA2009-012</ulink> SHA2 implementation potential buffer overflow</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-011.txt.asc">NetBSD-SA2009-011</ulink> ISC DHCP server Denial of Service vulnerability</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-010.txt.asc">NetBSD-SA2009-010</ulink> ISC dhclient subnet-mask flag stack overflow</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-009.txt.asc">NetBSD-SA2009-009</ulink> OpenSSL DTLS Memory Exhaustion and DSA signature verification vulnerabilities</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-008.txt.asc">NetBSD-SA2009-008</ulink> OpenSSL ASN1 parsing denial of service and CMS signature verification weakness</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-007.txt.asc">NetBSD-SA2009-007</ulink> Buffer overflows in hack(6)</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-006.txt.asc">NetBSD-SA2009-006</ulink> Buffer overflows in ntp</listitem>
<listitem><ulink url="http://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-005.txt.asc">NetBSD-SA2009-005</ulink> Plaintext Recovery Attack Against SSH</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-004.txt.asc">NetBSD-SA2009-004</ulink> NetBSD OpenPAM passwd(1) changing weakness</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-003.txt.asc">NetBSD-SA2009-003</ulink> proplib crashes on reading bad XML data</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-002.txt.asc">NetBSD-SA2009-002</ulink> tcpdump multiple denial of service and arbitrary code execution issues</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2009-001.txt.asc">NetBSD-SA2009-001</ulink> PF firewall remote Denial Of Service attack</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-015.txt.asc">NetBSD-SA2008-015</ulink> ICMPv6 Packet Too Big messages</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-014.txt.asc">NetBSD-SA2008-014</ulink> Cross-site request forgery in ftpd(8)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-013.txt.asc">NetBSD-SA2008-013</ulink> IPv6 Neighbor Discovery Protocol</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-012.txt.asc">NetBSD-SA2008-012</ulink> Denial of service issues in racoon(8)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-011.txt.asc">NetBSD-SA2008-011</ulink> ICMPv6 MLD query</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-010.txt.asc">NetBSD-SA2008-010</ulink> Malicious PPPoE discovery packet can overrun a kernel buffer</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-009.txt.asc">NetBSD-SA2008-009</ulink> BIND cache poisoning</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-008.txt.asc">NetBSD-SA2008-008</ulink> OpenSSL Montgomery multiplication</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-007.txt.asc">NetBSD-SA2008-007</ulink> OpenSSL Multiple issues</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-006.txt.asc">NetBSD-SA2008-006</ulink> Integer overflow in strfmon(3) function</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-005.txt.asc">NetBSD-SA2008-005</ulink> OpenSSH Multiple issues</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-004.txt.asc">NetBSD-SA2008-004</ulink> bzip2(1) Multiple issues</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-003.txt.asc">NetBSD-SA2008-003</ulink> IPsec in IPv6 Denial of Service</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-002.txt.asc">NetBSD-SA2008-002</ulink> Endianness issue in fast_ipsec(4)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2008-001.txt.asc">NetBSD-SA2008-001</ulink> file(1) Integer overflow</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-007.txt.asc">NetBSD-SA2007-007</ulink> BIND cryptographically weak query IDs</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-006.txt.asc">NetBSD-SA2007-006</ulink> Local panics in display driver code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-005.txt.asc">NetBSD-SA2007-005</ulink> IPv6 Type 0 Routing Header</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-004.txt.asc">NetBSD-SA2007-004</ulink> Insufficient length checking in iso(4)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-003.txt.asc">NetBSD-SA2007-003</ulink> BIND multiple denial of service vulnerabilities</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-002.txt.asc">NetBSD-SA2007-002</ulink> Integer overflows in Render and DBE extensions</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2007-001.txt.asc">NetBSD-SA2007-001</ulink> Integer overflow in ktruser()</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-027.txt.asc">NetBSD-SA2006-027</ulink> libc glob(3) buffer overflow</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-026.txt.asc">NetBSD-SA2006-026</ulink> Multiple denial of service issues</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-025.txt.asc">NetBSD-SA2006-025</ulink> Multiple information/memory leakage issues</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-024.txt.asc">NetBSD-SA2006-024</ulink> systrace(4) integer overflow</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-023.txt.asc">NetBSD-SA2006-023</ulink> OpenSSL RSA Signature Forgery</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-022.txt.asc">NetBSD-SA2006-022</ulink> BIND recursive query and SIG query processing </listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-021.txt.asc">NetBSD-SA2006-021</ulink> Integer overflows in CID-keyed font parser</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-020.txt.asc">NetBSD-SA2006-020</ulink> Integer overflows in PCF font parsers</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-019.txt.asc">NetBSD-SA2006-019</ulink> Malicious PPP options can overrun a kernel buffer</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-018.txt.asc">NetBSD-SA2006-018</ulink> sail(6), dm(8) and tetris(6) buffer overflows</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-017.txt.asc">NetBSD-SA2006-017</ulink> Sendmail malformed multipart MIME messages</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-016.txt.asc">NetBSD-SA2006-016</ulink> IPv6 socket options can crash the system</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-015.txt.asc">NetBSD-SA2006-015</ulink> FPU Information leak on i386/amd64/Xen platforms with AMD CPUs</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-014.txt.asc">NetBSD-SA2006-014</ulink> An audio subsystem race condition may crash the system</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-013.txt.asc">NetBSD-SA2006-013</ulink> sysctl(3) local denial of service</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-012.txt.asc">NetBSD-SA2006-012</ulink> SIOCGIFALIAS ioctl may cause system crash</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-011.txt.asc">NetBSD-SA2006-011</ulink> IPSec replay attack</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-010.txt.asc">NetBSD-SA2006-010</ulink> Sendmail race condition</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-009.txt.asc">NetBSD-SA2006-009</ulink> False detection of Intel hardware RNG </listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-008.txt.asc">NetBSD-SA2006-008</ulink> Malformed ELF interpreter causes system crash</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-007.txt.asc">NetBSD-SA2006-007</ulink> mail(1) creates record file with insecure umask</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-005.txt.asc">NetBSD-SA2006-005</ulink> bridge memory disclosure</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-004.txt.asc">NetBSD-SA2006-004</ulink> Denial of services issues with pf</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-003.txt.asc">NetBSD-SA2006-003</ulink> Multiple denial of services issues with racoon</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-002.txt.asc">NetBSD-SA2006-002</ulink> settimeofday() time wrap</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2006-001.txt.asc">NetBSD-SA2006-001</ulink> Kernfs kernel memory disclosure</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-013.txt.asc">NetBSD-SA2005-013</ulink> ptrace() permissions after S[UG]ID and exec()</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-012.txt.asc">NetBSD-SA2005-012</ulink> SO_LINGER argument checking DIAGNOSTIC panic</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-011.txt.asc">NetBSD-SA2005-011</ulink> ntpd may start with different group id than desired</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-010.txt.asc">NetBSD-SA2005-010</ulink> OpenSSL "man in the middle" can force weak protocol</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-009.txt.asc">NetBSD-SA2005-009</ulink> Insecure /tmp file usage when building using imake</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-008.txt.asc">NetBSD-SA2005-008</ulink> Heap memory corruption in FreeBSD compat code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-007.txt.asc">NetBSD-SA2005-007</ulink> AES-XCBC-MAC (IPsec AH) calculated using fixed key</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-006.txt.asc">NetBSD-SA2005-006</ulink> Multiple vulnerabilities in CVS</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-005.txt.asc">NetBSD-SA2005-005</ulink> cgd(4) key destruction on unconfigure</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-004.txt.asc">NetBSD-SA2005-004</ulink> Buffer overflows in MIT Kerberos 5</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-003.txt.asc">NetBSD-SA2005-003</ulink> F_CLOSEM local denial of service</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-002.txt.asc">NetBSD-SA2005-002</ulink> Local DoS via audio device with specific drivers</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2005-001.txt.asc">NetBSD-SA2005-001</ulink> Crypto leaks across HyperThreaded CPUs (i386, P4, HTT+SMP only)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-010.txt.asc">NetBSD-SA2004-010</ulink> Insufficient argument validation in compat code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-009.txt.asc">NetBSD-SA2004-009</ulink> ftpd root escalation</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-008.txt.asc">NetBSD-SA2004-008</ulink> CVS server vulnerability</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-007.txt.asc">NetBSD-SA2004-007</ulink> Systrace systrace_exit() local root</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-006.txt.asc">NetBSD-SA2004-006</ulink> TCP protocol and implementation vulnerability</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-005.txt.asc">NetBSD-SA2004-005</ulink> Denial of service vulnerabilities in OpenSSL</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-004.txt.asc">NetBSD-SA2004-004</ulink> shmat reference counting bug</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-003.txt.asc">NetBSD-SA2004-003</ulink> OpenSSL 0.9.6 ASN.1 parser vulnerability</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-002.txt.asc">NetBSD-SA2004-002</ulink> Inconsistent IPv6 path MTU discovery handling</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2004-001.txt.asc">NetBSD-SA2004-001</ulink> Insufficient packet validation in racoon IKE daemon</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-018.txt.asc">NetBSD-SA2003-018</ulink> DNS negative cache poisoning</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-017.txt.asc">NetBSD-SA2003-017</ulink> OpenSSL multiple vulnerability</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-016.txt.asc">NetBSD-SA2003-016</ulink> Sendmail - another prescan() bug CAN-2003-0694</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-015.txt.asc">NetBSD-SA2003-015</ulink> Remote and local vulnerabilities in XFree86 font libraries</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-014.txt.asc">NetBSD-SA2003-014</ulink> Insufficient argument checking in sysctl(2)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-013.txt.asc">NetBSD-SA2003-013</ulink> Kernel memory disclosure via ibcs2</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-012.txt.asc">NetBSD-SA2003-012</ulink> Out of bounds memset(0) in sshd</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-011.txt.asc">NetBSD-SA2003-011</ulink> off-by-one error in realpath(3)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-010.txt.asc">NetBSD-SA2003-010</ulink> remote panic in OSI networking code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-009.txt.asc">NetBSD-SA2003-009</ulink> sendmail buffer overrun in prescan() address parser</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-008.txt.asc">NetBSD-SA2003-008</ulink> faulty length checks in xdrmem_getbytes</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-007.txt.asc">NetBSD-SA2003-007</ulink> (Another) Encryption weakness in OpenSSL code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-006.txt.asc">NetBSD-SA2003-006</ulink> Cryptographic weaknesses in Kerberos v4 protocol</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-005.txt.asc">NetBSD-SA2003-005</ulink> RSA timing attack in OpenSSL code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-004.txt.asc">NetBSD-SA2003-004</ulink> Format string vulnerability in zlib gzprintf()</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-003.txt.asc">NetBSD-SA2003-003</ulink> Buffer Overflow in file(1)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-002.txt.asc">NetBSD-SA2003-002</ulink> Malformed header Sendmail Vulnerability</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2003-001.txt.asc">NetBSD-SA2003-001</ulink> Encryption weakness in OpenSSL code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-029.txt.asc">NetBSD-SA2002-029</ulink> named(8) multiple denial of service and remote execution of code</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-028.txt.asc">NetBSD-SA2002-028</ulink> Buffer overrun in getnetbyname/getnetbyaddr</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-027.txt.asc">NetBSD-SA2002-027</ulink> ftpd STAT output non-conformance can deceive firewall devices</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-026.txt.asc">NetBSD-SA2002-026</ulink> buffer overrun in kadmind</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-025.txt.asc">NetBSD-SA2002-025</ulink> trek(6) buffer overrun</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-024.txt.asc">NetBSD-SA2002-024</ulink> IPFilter FTP proxy</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-023.txt.asc">NetBSD-SA2002-023</ulink> sendmail smrsh vulnerability</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-022.txt.asc">NetBSD-SA2002-022</ulink> buffer overrun in pic(1)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-021.txt.asc">NetBSD-SA2002-021</ulink> rogue vulnerability</listitem>
<!-- NetBSD-SA2002-020 was never issued -->
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-019.txt.asc">NetBSD-SA2002-019</ulink> Buffer overrun in talkd</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-018.txt.asc">NetBSD-SA2002-018</ulink> Multiple security isses with kfd daemon</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-017.txt.asc">NetBSD-SA2002-017</ulink> shutdown(s, SHUT_RD) on TCP socket does not work as intended</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-016.txt.asc">NetBSD-SA2002-016</ulink> Insufficient length check in ESP authentication data</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-015.txt.asc">NetBSD-SA2002-015</ulink> (another) buffer overrun in libc/libresolv DNS resolver</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-014.txt.asc">NetBSD-SA2002-014</ulink> fd_set overrun in mbone tools and pppd</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-013.txt.asc">NetBSD-SA2002-013</ulink> Bug in NFS server code allows remote denial of service</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-012.txt.asc">NetBSD-SA2002-012</ulink> buffer overrun in setlocale</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-011.txt.asc">NetBSD-SA2002-011</ulink> Sun RPC XDR decoder contains buffer overflow</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-010.txt.asc">NetBSD-SA2002-010</ulink> symlink race in pppd</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-009.txt.asc">NetBSD-SA2002-009</ulink> Multiple vulnerabilities in OpenSSL code</listitem>
<!-- NetBSD-SA2002-008 was never issued -->
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-007.txt.asc">NetBSD-SA2002-007</ulink> Repeated TIOCSCTTY ioctl can corrupt session hold counts</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-006.txt.asc">NetBSD-SA2002-006</ulink> buffer overrun in libc DNS resolver</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-005.txt.asc">NetBSD-SA2002-005</ulink> OpenSSH protocol version 2 challenge-response authentication</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-004.txt.asc">NetBSD-SA2002-004</ulink> Off-by-one error in openssh session</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-003.txt.asc">NetBSD-SA2002-003</ulink> IPv4 forwarding doesn't consult inbound SPD</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-002.txt.asc">NetBSD-SA2002-002</ulink> gzip buffer overrun with long filename</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2002-001.txt.asc">NetBSD-SA2002-001</ulink> Close-on-exec, SUID and ptrace(2)</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-018.txt.asc">NetBSD-SA2001-018</ulink> Remote Buffer Overflow Vulnerability in BSD Line Printer Daemon</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-017.txt.asc">NetBSD-SA2001-017</ulink> sendmail(8) incorrect command line argument check.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-016.txt.asc">NetBSD-SA2001-016</ulink> unsafe chdir usage in fts(3).</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-015.txt.asc">NetBSD-SA2001-015</ulink> Insufficient checking of lengths passed from userland to kernel.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-014.txt.asc">NetBSD-SA2001-014</ulink> dump(8) exposes 'tty' group.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-013.txt.asc">NetBSD-SA2001-013</ulink> OpenSSL PRNG weakness.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-012.txt.asc">NetBSD-SA2001-012</ulink> telnetd(8) options overflow.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-011.txt.asc">NetBSD-SA2001-011</ulink> Insufficient msg_controllen checking for sendmsg(2).</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-010.txt.asc">NetBSD-SA2001-010</ulink> sshd(8) "cookies" file mishandling on X11 forwarding.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-009.txt.asc">NetBSD-SA2001-009</ulink> Race condition between sugid-exec and ptrace(2).</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-008.txt.asc">NetBSD-SA2001-008</ulink> Processes can gain "Supervisor" privileges on sh3.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-007.txt.asc">NetBSD-SA2001-007</ulink> IP Filter may incorrectly pass packets.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-006.txt.asc">NetBSD-SA2001-006</ulink> Denial of service using bogus fragmented IPv4 packets.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-005.txt.asc">NetBSD-SA2001-005</ulink> Remote buffer overflow in ftpd.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-004.txt.asc">NetBSD-SA2001-004</ulink> Buffer overflow in NTP daemon.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-003.txt.asc">NetBSD-SA2001-003</ulink> Secure Shell (SSH) vulnerability and rnd(4) configuration.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-002.txt.asc">NetBSD-SA2001-002</ulink> USER_LDT vulnerability on i386 systems only.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2001-001.txt.asc">NetBSD-SA2001-001</ulink> Security vulnerabilies in BIND.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-018.txt.asc">NetBSD-SA2000-018</ulink> Security vulnerability in ftpd.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-017.txt.asc">NetBSD-SA2000-017</ulink> Security vulnerability in telnetd/libkrb.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-015.txt.asc">NetBSD-SA2000-015</ulink> Security vulnerability in libutil.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-014.txt.asc">NetBSD-SA2000-014</ulink> Security vulnerability in CGI interface of global packages.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-013.txt.asc">NetBSD-SA2000-013</ulink> Security vulnerability in cfengine packages.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-012.txt.asc">NetBSD-SA2000-012</ulink> Security vulnerability in NIS hostname lookup.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-011.txt.asc">NetBSD-SA2000-011</ulink> Security vulnerability in netscape packages.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-010.txt.asc">NetBSD-SA2000-010</ulink> Security vulnerability in wu-ftpd package.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-009.txt.asc">NetBSD-SA2000-009</ulink> Security vulnerability in ftpd .</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-008.txt.asc">NetBSD-SA2000-008</ulink> Remote dhclient vulnerability.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-007.txt.asc">NetBSD-SA2000-007</ulink> Bad key generation in libdes in NetBSD-current.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-006.txt.asc">NetBSD-SA2000-006</ulink> ftpd error parsing /etc/ftpchroot.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-005.txt.asc">NetBSD-SA2000-005</ulink> local cpu-hog denial of service.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-004.txt.asc">NetBSD-SA2000-004</ulink> semcontrol(2) vulnerability.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-003.txt.asc">NetBSD-SA2000-003</ulink> xlockmore package vulnerability.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-002.txt.asc">NetBSD-SA2000-002</ulink> IP Options vulnerability.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA2000-001.txt.asc">NetBSD-SA2000-001</ulink> procfs vulnerability.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-012.txt.asc">NetBSD-SA1999-012</ulink> VAX ptrace(2) vulnerability.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-011.txt.asc">NetBSD-SA1999-011</ulink> profil(2) problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-010.txt.asc">NetBSD-SA1999-010</ulink> ARP problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-009.txt.asc">NetBSD-SA1999-009</ulink> i386 SVR4 compatibility problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-008.txt.asc">NetBSD-SA1999-008</ulink> vfs locking problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-007.txt.asc">NetBSD-SA1999-007</ulink> mount(2) problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-006.txt.asc">NetBSD-SA1999-006</ulink> umapfs problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-005.txt.asc">NetBSD-SA1999-005</ulink> lsof(1) package problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-004.txt.asc">NetBSD-SA1999-004</ulink> traceroute(1) problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-003.txt.asc">NetBSD-SA1999-003</ulink> wu-ftpd(8) package problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-002.txt.asc">NetBSD-SA1999-002</ulink> netstat(1) problems.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1999-001.txt.asc">NetBSD-SA1999-001</ulink> select(2)/accept(2) race condition in TCP servers.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1998-005.txt.asc">NetBSD-SA1998-005</ulink> mmap(2) device driver vulnerabilties.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1998-004.txt.asc">NetBSD-SA1998-004</ulink> at(1) vulnerabilties.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1998-003.txt.asc">NetBSD-SA1998-003</ulink> mmap(2) and append-only files vulnerabilities.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1998-002.txt.asc">NetBSD-SA1998-002</ulink> xterm and Xaw vulnerablilities.</listitem>
<listitem><ulink url="ftp://ftp.NetBSD.org/pub/NetBSD/security/advisories/NetBSD-SA1998-001.txt.asc">NetBSD-SA1998-001</ulink> BIND 4.9.6 vulnerabilities.</listitem>
</itemizedlist>
</sect1>
</webpage>

