|
141
|
5.6
4.7
|
MEDIUM
Local
|
System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculat…
|
CWE-200
Information Exposure
|
CVE-2018-3665
|
cpe:2.3:o:freebsd:freebsd:11.2:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:11.0:*
|
|
|
|
|
2024-11-21 13:05
2018-06-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
142
|
5.9
4.3
|
MEDIUM
Network
|
An exploitable denial of service vulnerability exists in the origin timestamp check functionality of ntpd 4.2.8p9. A specially crafted unauthenticated network packet can be used to reset the expected…
|
CWE-20
Improper Input Validation
|
CVE-2016-9042
|
cpe:2.3:o:freebsd:freebsd:11.0:* cpe:2.3:o:freebsd:freebsd:10.0:*
|
|
|
|
|
2024-11-21 12:00
2018-06-5
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
143
|
5.5
2.1
|
MEDIUM
Local
|
In FreeBSD before 11.1-STABLE(r332066) and 11.1-RELEASE-p10, due to insufficient initialization of memory copied to userland in the network subsystem, small amounts of kernel memory may be disclosed …
|
CWE-200
Information Exposure
|
CVE-2018-6921
|
cpe:2.3:o:freebsd:freebsd:*:*
|
11.0
|
|
|
11.1
|
2024-11-21 13:11
2018-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
144
|
5.5
2.1
|
MEDIUM
Local
|
In FreeBSD before 11.1-STABLE(r332303), 11.1-RELEASE-p10, 10.4-STABLE(r332321), and 10.4-RELEASE-p9, due to insufficient initialization of memory copied to userland in the Linux subsystem and Atheros…
|
CWE-200
Information Exposure
|
CVE-2018-6920
|
cpe:2.3:o:freebsd:freebsd:*:*
|
11.0 10.0
|
|
|
11.1 10.4
|
2024-11-21 13:11
2018-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
145
|
7.8
7.2
|
HIGH
Local
|
A statement in the System Programming Guide of the Intel 64 and IA-32 Architectures Software Developer's Manual (SDM) was mishandled in the development of some or all operating-system kernels, result…
|
CWE-362
Race Condition
|
CVE-2018-8897
|
cpe:2.3:o:freebsd:freebsd:*:*
|
11.0
|
|
|
11.1
|
2024-11-21 13:14
2018-05-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
146
|
7.5
7.8
|
HIGH
Network
|
In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using "keep state" or "keep frags" options can cause a kernel panic when fed specially crafted packet frag…
|
CWE-20
Improper Input Validation
|
CVE-2017-1081
|
cpe:2.3:o:freebsd:freebsd:11.0:p10 cpe:2.3:o:freebsd:freebsd:10.3:p19 cpe:2.3:o:freebsd:freebsd:10.3:* cpe:2.3…
|
|
11.0
|
|
|
2024-11-21 12:21
2018-04-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
147
|
7.5
5.0
|
HIGH
Network
|
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, due to insufficient initialization of memory copied to userland, small amounts of kernel memory may …
|
CWE-200
Information Exposure
|
CVE-2018-6919
|
cpe:2.3:o:freebsd:freebsd:*:*
|
11.0 10.0
|
|
|
11.1 10.4
|
2024-11-21 13:11
2018-04-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
148
|
7.5
7.8
|
HIGH
Network
|
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, the length field of the ipsec option header does not count the size of the option header itself, cau…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2018-6918
|
cpe:2.3:o:freebsd:freebsd:*:*
|
11.0 10.0
|
|
|
11.1 10.4
|
2024-11-21 13:11
2018-04-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
149
|
7.5
5.0
|
HIGH
Network
|
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p9, 10.4-STABLE, 10.4-RELEASE-p8 and 10.3-RELEASE-p28, insufficient validation of user-provided font parameters can result in an integer overflow, leading …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-6917
|
cpe:2.3:o:freebsd:freebsd:*:*
|
11.0 10.0
|
|
|
11.1 10.4
|
2024-11-21 13:11
2018-04-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
150
|
9.8
9.0
|
CRITICAL
Network
|
In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host. Additionally, a use…
|
CWE-416
Use After Free
|
CVE-2018-6916
|
cpe:2.3:o:freebsd:freebsd:10.4:p7 cpe:2.3:o:freebsd:freebsd:10.4:* cpe:2.3:o:freebsd:freebsd:10.3:p28 cpe:2.3:…
|
11.0
|
|
|
11.1
|
2024-11-21 13:11
2018-03-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|