Vulnerabilities > Freebsd > Freebsd > 9.3

DATE CVE VULNERABILITY TITLE RISK
2020-03-14 CVE-2020-10566 Classic Buffer Overflow vulnerability in Freebsd
grub2-bhyve, as used in FreeBSD bhyve before revision 525916 2020-02-12, mishandles font loading by a guest through a grub2.cfg file, leading to a buffer overflow.
local
low complexity
freebsd CWE-120
4.6
2020-03-14 CVE-2020-10565 Improper Privilege Management vulnerability in Freebsd
grub2-bhyve, as used in FreeBSD bhyve before revision 525916 2020-02-12, does not validate the address provided as part of a memrw command (read_* or write_*) by a guest through a grub2.cfg file.
local
low complexity
freebsd CWE-269
7.2
2020-02-20 CVE-2015-2923 Improper Input Validation vulnerability in Freebsd
The Neighbor Discovery (ND) protocol implementation in the IPv6 stack in FreeBSD through 10.1 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value in a Router Advertisement (RA) message.
low complexity
freebsd CWE-20
3.3
2019-01-31 CVE-2019-6111 Path Traversal vulnerability in multiple products
An issue was discovered in OpenSSH 7.9.
5.9
2018-12-04 CVE-2018-17160 Out-of-bounds Write vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r341486) and 11.2-RELEASE-p6, insufficient bounds checking in one of the device models provided by bhyve can permit a guest operating system to overwrite memory in the bhyve host possibly permitting arbitrary code execution.
network
low complexity
freebsd CWE-787
critical
10.0
2018-12-04 CVE-2018-17159 Resource Exhaustion vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, the NFS server lacks a bounds check in the READDIRPLUS NFS request.
network
low complexity
freebsd CWE-400
7.8
2018-12-04 CVE-2018-17158 Integer Overflow or Wraparound vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error can occur when handling the client address length field in an NFSv4 request.
network
low complexity
freebsd CWE-190
7.8
2018-12-04 CVE-2018-17157 Integer Overflow or Wraparound vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error when handling opcodes can cause memory corruption by sending a specially crafted NFSv4 request.
network
low complexity
freebsd CWE-190
critical
10.0
2018-11-28 CVE-2018-17156 Out-of-bounds Write vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r340268) and 11.2-RELEASE-p5, due to incorrectly accounting for padding on 64-bit platforms, a buffer underwrite could occur when constructing an ICMP reply packet when using a non-standard value for the net.inet.icmp.quotelen sysctl.
network
freebsd CWE-787
4.3
2018-09-28 CVE-2018-6925 NULL Pointer Dereference vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of IPv6 protocol control block flags through various failure paths, an unprivileged authenticated local user may be able to cause a NULL pointer dereference causing the kernel to crash.
local
low complexity
freebsd CWE-476
4.9