| FreeBSD | Number Of NVD | 488 | CRITICAL | 29 | HIGH | 219 | MEDIUM | 185 | LOW | 55 |
| URL | https://www.freebsd.org/ | ||||||||
|---|---|---|---|---|---|---|---|---|---|
| Explanation | Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years. We plan to release updates to the major versions every two years. Older versions will be supported until three months after a new minor version is released. |
||||||||
| Tag | |||||||||
| No | Type | Name | URL |
|---|---|---|---|
| 1 | https://www.freebsd.org/security/ | ||
| 2 | https://www.freebsd.org/releases/ | ||
| 3 | https://www.freebsd.org/security/unsupported.html |
| No | Name | Latest Version | Release date | Initial release | Normal Support | Security Support Service Pack Support |
Extended for a fee |
Critical | High | Medium | Low |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 161 | FreeBSD 15 | 15.1 | June 16, 2026 | June 16, 2026 | March 31, 2027 | March 31, 2027 | 0 | 0 | 0 | 0 | |
| 162 | FreeBSD 13 | 13.2 | April 11, 2023 | April 13, 2021 | April 13, 2021 | 3 | 29 | 6 | 0 | ||
| 163 | FreeBSD 12 | 12.4 | Dec. 5, 2022 | Dec. 11, 2018 | June 30, 2024 | 18 | 39 | 22 | 2 | ||
| 164 | FreeBSD 11 | 11.4 | June 16, 2020 | Oct. 10, 2016 | Sept. 30, 2021 | 21 | 48 | 40 | 2 | ||
| 165 | FreeBSD 10 | 10.4 | Jan. 20, 2014 | Jan. 20, 2014 | Feb. 28, 2015 | 7 | 40 | 46 | 2 | ||
| 166 | FreeBSD 9 | 9.3 | July 16, 2014 | Jan. 10, 2012 | Dec. 31, 2016 | 5 | 38 | 33 | 6 | ||
| 167 | FreeBSD 8 | 8.4 | June 9, 2013 | Nov. 25, 2009 | Aug. 1, 2015 | 5 | 38 | 33 | 6 | ||
| 168 | FreeBSD 7 | 7.4 | Feb. 24, 2011 | Feb. 27, 2008 | Feb. 28, 2013 | 5 | 37 | 31 | 5 | ||
| 169 | FreeBSD 6 | 6.4 | Nov. 28, 2008 | Nov. 4, 2005 | Nov. 30, 2010 | 6 | 43 | 46 | 15 | ||
| 170 | FreeBSD 5 | 5.5 | May 25, 2006 | Nov. 6, 2004 | May 31, 2008 | 7 | 42 | 50 | 18 | ||
| 171 | FreeBSD 4 | 4.0 | March 14, 2000 | Jan. 31, 2007 | 8 | 67 | 61 | 23 | |||
| 172 | FreeBSD 3 | 3.0 | Oct. 16, 1998 | Jan. 1, 1900 | 6 | 57 | 47 | 16 | |||
| 173 | FreeBSD 2 | 2.0.5 | Nov. 22, 1994 | Jan. 1, 1900 | 6 | 51 | 41 | 10 | |||
| 174 | FreeBSD 1 | 1.0 | Oct. 1, 1993 | Jan. 1, 1900 | 26 | 112 | 90 | 9 | |||
| 175 | FreeBSD 0.4_1 | 0.4_1 | Jan. 1, 1900 | 6 | 27 | 30 | 4 |
| No | CVSS3 CVSS2 |
Level Attach Vector |
Title | CWE | CVE | cpe23Uri | or higher | or less | more than | less than | Update date Published date |
Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| 161 |
6.8 5.4 |
MEDIUM
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Station-To-Station-Link (STSL) Transient Key (STK) during the PeerKey handshake, allowing an attacker within radio range to replay, … |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13084 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 162 |
8.1 5.8 |
HIGH
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11r allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the fast BSS transmission (FT) handshake, allowing … |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13082 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 163 |
5.3 2.9 |
MEDIUM
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the group key handshake, allowing an attacker within radio ran… |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13081 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 164 |
5.3 2.9 |
MEDIUM
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the group key handshake, allowing an attacker within radio range to replay frames from access points… |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13080 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 165 |
5.3 2.9 |
MEDIUM
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) that supports IEEE 802.11w allows reinstallation of the Integrity Group Temporal Key (IGTK) during the four-way handshake, allowing an attacker within radio rang… |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13079 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 166 |
5.3 2.9 |
MEDIUM
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Group Temporal Key (GTK) during the four-way handshake, allowing an attacker within radio range to replay frames from access points … |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13078 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 167 |
6.8 5.4 |
MEDIUM
Adjacent |
Wi-Fi Protected Access (WPA and WPA2) allows reinstallation of the Pairwise Transient Key (PTK) Temporal Key (TK) during the four-way handshake, allowing an attacker within radio range to replay, dec… |
CWE-330
Use of Insufficiently Random Values |
CVE-2017-13077 |
cpe:2.3:o:freebsd:freebsd:11:* cpe:2.3:o:freebsd:freebsd:11.1:* cpe:2.3:o:freebsd:freebsd:10:* cpe:2.3:o:freeb… |
2024-11-21 12:10 2017-10-17 |
Show | GitHub Exploit DB Packet Storm | ||||
| 168 |
7.8 7.2 |
HIGH
Local |
The sys_amd64 IRET Handler in the kernel in FreeBSD 9.3 and 10.1 allows local users to gain privileges or cause a denial of service (kernel panic). |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2015-5675 |
cpe:2.3:o:freebsd:freebsd:9.3:* cpe:2.3:o:freebsd:freebsd:10.1:* |
2024-11-21 11:33 2017-10-11 |
Show | GitHub Exploit DB Packet Storm | ||||
| 169 |
8.1 6.8 |
HIGH
Network |
In FreeBSD through 11.1, the smb_strdupin function in sys/netsmb/smb_subr.c has a race condition with a resultant out-of-bounds read, because it can cause t2p->t_name strings to lack a final '\0' cha… |
CWE-362 CWE-125 Race Condition Out-of-bounds Read |
CVE-2017-15037 | cpe:2.3:o:freebsd:freebsd:*:* | 11.1 |
2024-11-21 12:13 2017-10-5 |
Show | GitHub Exploit DB Packet Storm | |||
| 170 |
7.5 5.0 |
HIGH
Network |
The inet module in FreeBSD 10.2x before 10.2-PRERELEASE, 10.2-BETA2-p2, 10.2-RC1-p1, 10.1x before 10.1-RELEASE-p16, 9.x before 9.3-STABLE, 9.3-RELEASE-p21, and 8.x before 8.4-STABLE, 8.4-RELEASE-p35 … |
CWE-400
Uncontrolled Resource Consumption |
CVE-2015-1417 |
cpe:2.3:o:freebsd:freebsd:9.3:p9 cpe:2.3:o:freebsd:freebsd:9.3:p8 cpe:2.3:o:freebsd:freebsd:9.3:p7 cpe:2.3:o:f… |
2024-11-21 11:25 2017-07-26 |
Show | GitHub Exploit DB Packet Storm |