Skip to main content

Vendor archive

freebsd CVEs

Beta · best-effort

542 CVEs tagged to vendor freebsd55 Critical, 224 High, 204 Medium, 59 Low, 0 Unrated.

CVE-2020-24863

Published Sep 3, 2020

A memory corruption vulnerability was found in the kernel function kern_getfsstat in MidnightBSD before 1.2.7 and 1.3 through 2020-08-19, and FreeBSD through 11.4, that allows an…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-24385

Published Sep 3, 2020

In MidnightBSD before 1.2.6 and 1.3 before August 2020, and FreeBSD before 7, a NULL pointer dereference was found in the Linux emulation layer that allows attackers to crash the…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-24717

Published Aug 27, 2020

OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by mode 0770 being equivalent to mode 0777.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7460

Published Aug 6, 2020

In FreeBSD 12.1-STABLE before r363918, 12.1-RELEASE before p8, 11.4-STABLE before r363919, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, the sendmsg system call in the comp…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7459

Published Aug 6, 2020

In FreeBSD 12.1-STABLE before r362166, 12.1-RELEASE before p8, 11.4-STABLE before r362167, 11.4-RELEASE before p2, and 11.3-RELEASE before p12, missing length validation code comm…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7458

Published Jul 9, 2020

In FreeBSD 12.1-STABLE before r362281, 11.4-STABLE before r362281, and 11.4-RELEASE before p1, long values in the user-controlled PATH environment variable cause posix_spawnp to w…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-7457

Published Jul 9, 2020

In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p11, missing synchronization in the IPV6…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7455

Published May 13, 2020

In FreeBSD 12.1-STABLE before r360973, 12.1-RELEASE before p5, 11.4-STABLE before r360973, 11.4-BETA1 before p1 and 11.3-RELEASE before p9, the FTP packet handler in libalias inco…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7454

Published May 13, 2020

In FreeBSD 12.1-STABLE before r360971, 12.1-RELEASE before p5, 11.4-STABLE before r360971, 11.4-BETA1 before p1 and 11.3-RELEASE before p9, libalias does not properly validate pac…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-15880

Published May 13, 2020

In FreeBSD 12.1-STABLE before r356911, and 12.1-RELEASE before p5, insufficient checking in the cryptodev module allocated the size of a kernel buffer based on a user-supplied len…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-15879

Published May 13, 2020

In FreeBSD 12.1-STABLE before r356908, 12.1-RELEASE before p5, 11.3-STABLE before r356908, and 11.3-RELEASE before p9, a race condition in the cryptodev module permitted a data st…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2019-15878

Published May 13, 2020

In FreeBSD 12.1-STABLE before r352509, 11.3-STABLE before r352509, and 11.3-RELEASE before p9, an unprivileged local user can trigger a use-after-free situation due to improper ch…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-7453

Published Apr 29, 2020

In FreeBSD 12.1-STABLE before r359021, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r359020, and 11.3-RELEASE before 11.3-RELEASE-p7, a missing null termination check i…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-7452

Published Apr 29, 2020

In FreeBSD 12.1-STABLE before r357490, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r357489, and 11.3-RELEASE before 11.3-RELEASE-p7, incorrect use of a user-controlled…

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-7451

Published Apr 28, 2020

In FreeBSD 12.1-STABLE before r358739, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r358740, and 11.3-RELEASE before 11.3-RELEASE-p7, a TCP SYN-ACK or challenge TCP-ACK…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-15877

Published Apr 28, 2020

In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver failed to check whether the caller…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-15876

Published Apr 28, 2020

In FreeBSD 12.1-STABLE before r356089, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r356090, and 11.3-RELEASE before 11.3-RELEASE-p7, driver specific ioctl command hand…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 101-125 of 542 CVEsPage 5 of 22