Vulnerability index

Browse CVEs

179 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2016-1888 The telnetd service in FreeBSD 9.3, 10.1, 10.2, 10.3, and 11.0 allows remote attackers to inject arguments to login and bypass authentication via vec… FreeBSD Mitigation only Fix from $1,9502017-02-15 HIGH 7.8 CVE-2016-1887 Integer signedness error in the sockargs function in sys/kern/uipc_syscalls.c in FreeBSD 10.1 before p34, 10.2 before p17, and 10.3 before p3 allows … FreeBSD No fix yet Fix from $1,9502016-05-25 MEDIUM 6.2 CVE-2016-1885 Integer signedness error in the amd64_set_ldt function in sys/amd64/amd64/sys_machdep.c in FreeBSD 9.3 before p39, 10.1 before p31, and 10.2 before p… FreeBSD No fix yet Fix from $1,6002016-04-12 HIGH 7.5 CVE-2016-1879EPSS 13% The Stream Control Transmission Protocol (SCTP) module in FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9, when the kernel is configured … FreeBSD No fix yet Fix from $1,9502016-01-29 HIGH 7.8 CVE-2014-8613 The sctp module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allows remote attackers to cause a denial of service (N… FreeBSD Mitigation only Fix from $1,9502015-02-02 HIGH 7.2 CVE-2014-0998 Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denia… FreeBSD No fix yet Fix from $1,9502015-02-02 MEDIUM 5.0 CVE-2014-7250 The TCP stack in 4.3BSD Net/2, as used in FreeBSD 5.4, NetBSD possibly 2.0, and OpenBSD possibly 3.6, does not properly implement the session timer, … FreeBSD Mitigation only Fix from $1,6002014-12-12 MEDIUM 5.0 CVE-2014-3951 The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (NULL … FreeBSD Mitigation only Fix from $1,6002014-08-21 MEDIUM 5.0 CVE-2014-5384 The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out… FreeBSD Mitigation only Fix from $1,6002014-08-21 HIGH 7.8 CVE-2014-3000EPSS 13% The TCP reassembly function in the inet module in FreeBSD 8.3 before p16, 8.4 before p9, 9.1 before p12, 9.2 before p5, and 10.0 before p2 allows rem… FreeBSD Mitigation only Fix from $1,9502014-05-02 MEDIUM 5.8 CVE-2014-3001 The device file system (aka devfs) in FreeBSD 10.0 before p2 does not load default rulesets when booting, which allows context-dependent attackers to… FreeBSD Mitigation only Fix from $1,6002014-05-02 MEDIUM 5.8 CVE-2014-1452 Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers to cause a denial of service (… FreeBSD Mitigation only Fix from $1,6002014-01-21 MEDIUM 6.4 CVE-2013-4851 The vfs_hang_addrlist function in sys/kern/vfs_export.c in the NFS server implementation in the kernel in FreeBSD 8.3 and 9.x through 9.1-RELEASE-p5 … FreeBSD Mitigation only Fix from $1,6002013-07-29 HIGH 7.8 CVE-2013-4854EPSS 34% The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3… FreeBSD Mitigation only Fix from $1,9502013-07-29 MEDIUM 6.9 CVE-2013-2171EPSS 7% The vm_map_lookup function in sys/vm/vm_map.c in the mmap implementation in the kernel in FreeBSD 9.0 through 9.1-RELEASE-p4 does not properly determ… FreeBSD Mitigation only Fix from $1,6002013-07-02 HIGH 7.8 CVE-2012-3549EPSS 8% The SCTP implementation in FreeBSD 8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted… FreeBSD No fix yet Fix from $1,9502012-10-09 HIGH 7.5 CVE-2010-4666 Buffer overflow in libarchive 3.0 pre-release code allows remote attackers to cause a denial of service (application crash) or possibly have unspecif… Libarchive Mitigation only Fix from $1,9502012-04-13 HIGH 7.5 CVE-2011-1779 Multiple use-after-free vulnerabilities in libarchive 2.8.4 and 2.8.5 allow remote attackers to cause a denial of service (application crash) or poss… Libarchive Mitigation only Fix from $1,9502012-04-13 HIGH 7.8 CVE-2011-2393 The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD, NetBSD, and possibly other BSD-based operating systems allows remot… FreeBSD Mitigation only Fix from $1,9502012-02-02 MEDIUM 6.9 CVE-2011-4122 Directory traversal vulnerability in openpam_configure.c in OpenPAM before r478 on FreeBSD 8.1 allows local users to load arbitrary DSOs and gain pri… FreeBSD No fix yet Fix from $1,6002011-11-17 MEDIUM 6.9 CVE-2010-2020 sys/nfsclient/nfs_vfsops.c in the NFS client in the kernel in FreeBSD 7.2 through 8.1-PRERELEASE, when vfs.usermount is enabled, does not validate th… FreeBSD No fix yet Fix from $1,6002010-05-28 HIGH 7.2 CVE-2009-1041 The ktimer feature (sys/kern/kern_time.c) in FreeBSD 7.0, 7.1, and 7.2 allows local users to overwrite arbitrary kernel memory via an out-of-bounds t… FreeBSD No fix yet Fix from $1,9502009-03-26 HIGH 7.2 CVE-2008-5736 Multiple unspecified vulnerabilities in FreeBSD 6 before 6.4-STABLE, 6.3 before 6.3-RELEASE-p7, 6.4 before 6.4-RELEASE-p1, 7.0 before 7.0-RELEASE-p7,… FreeBSD No fix yet Fix from $1,9502008-12-26 MEDIUM 6.9 CVE-2008-5142 sendbug in freebsd-sendpr 3.113+5.3 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on a /tmp/pr.##### tempo… Freebsd Sendpr Mitigation only Fix from $1,6002008-11-18 HIGH 7.5 CVE-2008-4247 ftpd in OpenBSD 4.3, FreeBSD 7.0, NetBSD 4.0, Solaris, and possibly other operating systems interprets long commands from an FTP client as multiple c… FreeBSD No fix yet Fix from $1,9502008-09-25 HIGH 7.1 CVE-2008-2464 The mld_input function in sys/netinet6/mld6.c in the kernel in NetBSD 4.0, FreeBSD, and KAME, when INET6 is enabled, allows remote attackers to cause… FreeBSD No fix yet Fix from $1,9502008-09-11 HIGH 7.2 CVE-2008-3890 The kernel in FreeBSD 6.3 through 7.0 on amd64 platforms can make an extra swapgs call after a General Protection Fault (GPF), which allows local use… FreeBSD Mitigation only Fix from $1,9502008-09-05 HIGH 7.5 CVE-2008-1391EPSS 19% Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent atta… FreeBSD No fix yet Fix from $1,9502008-03-27 MEDIUM 6.6 CVE-2007-0267 The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly co… FreeBSD Mitigation only Fix from $1,6002007-01-17 HIGH 7.2 CVE-2007-0229 Integer overflow in the ffs_mountfs function in Mac OS X 10.4.8 and FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly … FreeBSD No fix yet Fix from $1,9502007-01-13