Skip to main content

Vendor archive

freebsd CVEs

Beta · best-effort

542 CVEs tagged to vendor freebsd55 Critical, 224 High, 204 Medium, 59 Low, 0 Unrated.

CVE-2020-10566

Published Mar 14, 2020

grub2-bhyve, as used in FreeBSD bhyve before revision 525916 2020-02-12, mishandles font loading by a guest through a grub2.cfg file, leading to a buffer overflow.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-10565

Published Mar 14, 2020

grub2-bhyve, as used in FreeBSD bhyve before revision 525916 2020-02-12, does not validate the address provided as part of a memrw command (read_* or write_*) by a guest through a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-5365

Published Feb 20, 2020

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Router Advertise…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-5363

Published Feb 20, 2020

The IPv6 implementation in FreeBSD and NetBSD (unknown versions, year 2012 and earlier) allows remote attackers to cause a denial of service via a flood of ICMPv6 Neighbor Solicit…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2015-2923

Published Feb 20, 2020

The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD through 10.1 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit valu…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3879

Published Feb 18, 2020

OpenPAM Nummularia 9.2 through 10.0 does not properly handle the error reported when an include directive refers to a policy that does not exist, which causes the loaded policy ch…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-7450

Published Feb 18, 2020

In FreeBSD 12.1-STABLE before r357213, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r357214, and 11.3-RELEASE before 11.3-RELEASE-…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-5613

Published Feb 18, 2020

In FreeBSD 12.0-RELEASE before 12.0-RELEASE-p13, a missing check in the ipsec packet processor allows reinjection of an old packet to be accepted by the ipsec endpoint. Depending…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-15875

Published Feb 18, 2020

In FreeBSD 12.1-STABLE before r354734, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r354735, and 11.3-RELEASE before 11.3-RELEASE-…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2480

Published Nov 27, 2019

Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IO…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2012-2979

Published Nov 1, 2019

FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of service in the NSD server.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5609

Published Aug 30, 2019

In FreeBSD 12.0-STABLE before r350619, 12.0-RELEASE before 12.0-RELEASE-p9, 11.3-STABLE before r350619, 11.3-RELEASE before 11.3-RELEASE-p2, and 11.2-RELEASE before 11.2-RELEASE-p…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5607

Published Jul 26, 2019

In FreeBSD 12.0-STABLE before r350222, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350223, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5606

Published Jul 26, 2019

In FreeBSD 12.0-STABLE before r349805, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r349806, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-5605

Published Jul 26, 2019

In FreeBSD 11.3-STABLE before r350217, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, due to insufficient initialization of memory copied to userla…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-5604

Published Jul 26, 2019

In FreeBSD 12.0-STABLE before r350246, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350247, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort
Showing 126-150 of 542 CVEsPage 6 of 22