Vulnerability index

Browse CVEs

387 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

FreeBSD MEDIUM 5.3
CVE-2020-25580

In FreeBSD 12.2-STABLE before r369346, 11.4-STABLE before r369345, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 a regression in the login.access…

Mitigation only
Fix from $1,600 2021-03-26
FreeBSD HIGH 8.2
CVE-2020-24718

bhyve, as used in FreeBSD through 12.1 and illumos (e.g., OmniOS CE through r151034 and OpenIndiana through Hipster 2020.04), does not properly restr…

Fix: after 11.2
Fix from $1,950 2020-09-25
FreeBSD MEDIUM 5.5
CVE-2020-24385

In MidnightBSD before 1.2.6 and 1.3 before August 2020, and FreeBSD before 7, a NULL pointer dereference was found in the Linux emulation layer that …

Fix: 1.2.6+
Fix from $1,600 2020-09-03
FreeBSD MEDIUM 5.5
CVE-2020-24863

A memory corruption vulnerability was found in the kernel function kern_getfsstat in MidnightBSD before 1.2.7 and 1.3 through 2020-08-19, and FreeBSD…

Fix: 1.2.7+
Fix from $1,600 2020-09-03
FreeBSD HIGH 7.0
CVE-2020-7460

In FreeBSD 12.1-STABLE before r363918, 12.1-RELEASE before p8, 11.4-STABLE before r363919, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, the s…

Mitigation only
Fix from $1,950 2020-08-06
FreeBSD MEDIUM 6.8
CVE-2020-7459

In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-STABLE before r362167, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, missi…

Mitigation only
Fix from $1,600 2020-08-06
FreeBSD CRITICAL 9.8
CVE-2020-7458

In FreeBSD 12.1-STABLE before r362281, 11.4-STABLE before r362281, and 11.4-RELEASE before p1, long values in the user-controlled PATH environment va…

Patch available
Fix from $2,300 2020-07-09
FreeBSD HIGH 8.1
CVE-2020-7457EPSS 33%

In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p11, missi…

Patch available
Fix from $1,950 2020-07-09
FreeBSD MEDIUM 6.8
CVE-2020-7456

In FreeBSD 12.1-STABLE before r361918, 12.1-RELEASE before p6, 11.4-STABLE before r361919, 11.3-RELEASE before p10, and 11.4-RC2 before p1, an invali…

Patch available
Fix from $1,600 2020-06-09
FreeBSD CRITICAL 9.8
CVE-2020-7454

In FreeBSD 12.1-STABLE before r360971, 12.1-RELEASE before p5, 11.4-STABLE before r360971, 11.4-BETA1 before p1 and 11.3-RELEASE before p9, libalias …

Mitigation only
Fix from $2,300 2020-05-13
FreeBSD MEDIUM 5.5
CVE-2020-7455

In FreeBSD 12.1-STABLE before r360973, 12.1-RELEASE before p5, 11.4-STABLE before r360973, 11.4-BETA1 before p1 and 11.3-RELEASE before p9, the FTP p…

Mitigation only
Fix from $1,600 2020-05-13
FreeBSD CRITICAL 9.8
CVE-2019-15880

In FreeBSD 12.1-STABLE before r356911, and 12.1-RELEASE before p5, insufficient checking in the cryptodev module allocated the size of a kernel buffe…

Mitigation only
Fix from $2,300 2020-05-13
FreeBSD HIGH 7.8
CVE-2019-15878

In FreeBSD 12.1-STABLE before r352509, 11.3-STABLE before r352509, and 11.3-RELEASE before p9, an unprivileged local user can trigger a use-after-fre…

Mitigation only
Fix from $1,950 2020-05-13
FreeBSD HIGH 7.4
CVE-2019-15879

In FreeBSD 12.1-STABLE before r356908, 12.1-RELEASE before p5, 11.3-STABLE before r356908, and 11.3-RELEASE before p9, a race condition in the crypto…

Mitigation only
Fix from $1,950 2020-05-13
FreeBSD CRITICAL 9.1
CVE-2020-7452

In FreeBSD 12.1-STABLE before r357490, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r357489, and 11.3-RELEASE before 11.3-RELEASE-p7, inco…

Patch available
Fix from $2,300 2020-04-29
FreeBSD MEDIUM 6.0
CVE-2020-7453

In FreeBSD 12.1-STABLE before r359021, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r359020, and 11.3-RELEASE before 11.3-RELEASE-p7, a mi…

Patch available
Fix from $1,600 2020-04-29
FreeBSD CRITICAL 9.8
CVE-2019-15874

In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEASE-p4, 11.3-STABLE before r356036, and 11.3-RELEASE before 11.3-RELEASE-p8, inco…

Patch available
Fix from $2,300 2020-04-29
FreeBSD CRITICAL 9.8
CVE-2019-5614

In FreeBSD 12.1-STABLE before r356035, 12.1-RELEASE before 12.1-RELEASE-p4, 11.3-STABLE before r356036, and 11.3-RELEASE before 11.3-RELEASE-p8, inco…

Patch available
Fix from $2,300 2020-04-29
FreeBSD MEDIUM 5.5
CVE-2019-15876

In FreeBSD 12.1-STABLE before r356089, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r356090, and 11.3-RELEASE before 11.3-RELEASE-p7, driv…

Patch available
Fix from $1,600 2020-04-28
FreeBSD MEDIUM 5.5
CVE-2019-15877

In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver faile…

Patch available
Fix from $1,600 2020-04-28
FreeBSD MEDIUM 5.3
CVE-2020-7451

In FreeBSD 12.1-STABLE before r358739, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r358740, and 11.3-RELEASE before 11.3-RELEASE-p7, a TC…

Patch available
Fix from $1,600 2020-04-28
FreeBSD HIGH 7.8
CVE-2020-10565

grub2-bhyve, as used in FreeBSD bhyve before revision 525916 2020-02-12, does not validate the address provided as part of a memrw command (read_* or…

Fix: 525916_2020-02-12+
Fix from $1,950 2020-03-14
FreeBSD HIGH 7.8
CVE-2020-10566

grub2-bhyve, as used in FreeBSD bhyve before revision 525916 2020-02-12, mishandles font loading by a guest through a grub2.cfg file, leading to a bu…

Fix: 525916_2020-02-12+
Fix from $1,950 2020-03-14
FreeBSD HIGH 7.5
CVE-2012-5363

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a fl…

Fix: 6.0.2 / 9.2+
Fix from $1,950 2020-02-20
FreeBSD HIGH 7.5
CVE-2012-5365

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a fl…

Fix: 6.0.2 / 9.2+
Fix from $1,950 2020-02-20
FreeBSD MEDIUM 6.5
CVE-2015-2923

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD through 10.1 allows remote attackers to reconfigure a hop-limit sett…

Fix: 10.1+
Fix from $1,600 2020-02-20
FreeBSD CRITICAL 9.8
CVE-2014-3879

OpenPAM Nummularia 9.2 through 10.0 does not properly handle the error reported when an include directive refers to a policy that does not exist, whi…

Fix: after 9.2
Fix from $2,300 2020-02-18
FreeBSD CRITICAL 9.8
CVE-2019-5613

In FreeBSD 12.0-RELEASE before 12.0-RELEASE-p13, a missing check in the ipsec packet processor allows reinjection of an old packet to be accepted by …

Patch available
Fix from $2,300 2020-02-18
FreeBSD CRITICAL 9.8
CVE-2020-7450

In FreeBSD 12.1-STABLE before r357213, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r357214, and 11.…

Patch available
Fix from $2,300 2020-02-18
FreeBSD HIGH 7.4
CVE-2019-14899

A vulnerability was discovered in Linux, FreeBSD, OpenBSD, MacOS, iOS, and Android that allows a malicious access point, or an adjacent user, to dete…

Fix: 10.15.6 / 13.4.8+
Fix from $1,950 2019-12-11