Vulnerabilities > Freebsd

DATE CVE VULNERABILITY TITLE RISK
2023-11-08 CVE-2023-5978 Unspecified vulnerability in Freebsd 13.0/13.1/13.2
In versions of FreeBSD 13-RELEASE before 13-RELEASE-p5, under certain circumstances the cap_net libcasper(3) service incorrectly validates that updated constraints are strictly subsets of the active constraints.
network
low complexity
freebsd
7.5
2023-10-04 CVE-2023-5368 Insecure Default Initialization of Resource vulnerability in Freebsd
On an msdosfs filesystem, the 'truncate' or 'ftruncate' system calls under certain circumstances populate the additional space in the file with unallocated data from the underlying disk device, rather than zero bytes. This may permit a user with write access to files on a msdosfs filesystem to read unintended data (e.g.
network
low complexity
freebsd CWE-1188
6.5
2023-10-04 CVE-2023-5369 Improper Check for Dropped Privileges vulnerability in Freebsd 13.2
Before correction, the copy_file_range system call checked only for the CAP_READ and CAP_WRITE capabilities on the input and output file descriptors, respectively.
local
low complexity
freebsd CWE-273
7.1
2023-10-04 CVE-2023-5370 Improper Initialization vulnerability in Freebsd 13.2
On CPU 0 the check for the SMCCC workaround is called before SMCCC support has been initialized.
local
low complexity
freebsd CWE-665
5.5
2023-09-06 CVE-2023-4809 Unspecified vulnerability in Freebsd
In pf packet processing with a 'scrub fragment reassemble' rule, a packet containing multiple IPv6 fragment headers would be reassembled, and then immediately processed.
network
low complexity
freebsd
7.5
2023-08-01 CVE-2023-3107 Integer Overflow or Wraparound vulnerability in multiple products
A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field.
network
low complexity
freebsd netapp CWE-190
7.5
2023-08-01 CVE-2023-3494 Classic Buffer Overflow vulnerability in Freebsd 13.1/13.2
The fwctl driver implements a state machine which is executed when a bhyve guest accesses certain x86 I/O ports.
local
low complexity
freebsd CWE-120
8.8
2023-06-22 CVE-2023-3326 Improper Authentication vulnerability in Freebsd
pam_krb5 authenticates a user by essentially running kinit with the password, getting a ticket-granting ticket (tgt) from the Kerberos KDC (Key Distribution Center) over the network, as a way to verify the password.
network
low complexity
freebsd CWE-287
critical
9.8
2023-02-08 CVE-2023-0751 Unspecified vulnerability in Freebsd 12.3/12.4/13.1
When GELI reads a key file from standard input, it does not reuse the key file to initialize multiple providers at once resulting in the second and subsequent devices silently using a NULL key as the user key file.
network
low complexity
freebsd
6.5
2022-09-06 CVE-2022-32264 Improper Handling of Exceptional Conditions vulnerability in Freebsd
sys/netinet/tcp_timer.h in FreeBSD before 7.0 contains a denial-of-service (DoS) vulnerability due to improper handling of TSopt on TCP connections.
network
low complexity
freebsd CWE-755
7.5