Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
191 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
192 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
193 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
194 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
195 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
196 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
197 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
198 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
199 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
200 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
201 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
202 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
203 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
204 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
205 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
191 -
4.6
MEDIUM Multiple array index errors in the Stream Control Transmission Protocol (SCTP) module in FreeBSD 10.1 before p5, 10.0 before p17, 9.3 before p9, and 8.4 before p23 allow local users to (1) gain privi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-8612 cpe:2.3:o:freebsd:freebsd:9.3:*
cpe:2.3:o:freebsd:freebsd:8.4:*
cpe:2.3:o:freebsd:freebsd:10.1:*
cpe:2.3:o:fre…
2024-11-21 11:19
2015-02-3
Show GitHub Exploit DB Packet Storm
192 -
7.2
HIGH Integer signedness error in the vt console driver (formerly Newcons) in FreeBSD 9.3 before p10 and 10.1 before p6 allows local users to cause a denial of service (crash) and possibly gain privileges … CWE-189
Numeric Errors
CVE-2014-0998 cpe:2.3:o:freebsd:freebsd:10.1:* 2024-11-21 11:03
2015-02-3
Show GitHub Exploit DB Packet Storm
193 -
5.0
MEDIUM The TCP stack in 4.3BSD Net/2, as used in FreeBSD 5.4, NetBSD possibly 2.0, and OpenBSD possibly 3.6, does not properly implement the session timer, which allows remote attackers to cause a denial of… CWE-399
 Resource Management Errors
CVE-2014-7250 cpe:2.3:o:freebsd:freebsd:5.4:* 2024-11-21 11:16
2014-12-12
Show GitHub Exploit DB Packet Storm
194 -
4.3
MEDIUM FreeBSD 9.1, 9.2, and 10.0, when compiling OpenSSH with Kerberos support, uses incorrect library ordering when linking sshd, which causes symbols to be resolved incorrectly and allows remote attacker… CWE-17
Code
CVE-2014-8475 cpe:2.3:o:freebsd:freebsd:9.2:*
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:10.0:*
2024-11-21 11:19
2014-11-19
Show GitHub Exploit DB Packet Storm
195 -
2.1
LOW The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a ca… CWE-200
Information Exposure
CVE-2014-8476 cpe:2.3:o:freebsd:freebsd:9.3:*
cpe:2.3:o:freebsd:freebsd:9.2:*
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:free…
2024-11-21 11:19
2014-11-14
Show GitHub Exploit DB Packet Storm
196 -
5.0
MEDIUM routed in FreeBSD 8.4 through 10.1-RC2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an RIP request from a source not on a directly connected network. CWE-20
 Improper Input Validation 
CVE-2014-3955 cpe:2.3:o:freebsd:freebsd:9.3:rc2
cpe:2.3:o:freebsd:freebsd:9.3:rc1
cpe:2.3:o:freebsd:freebsd:9.3:*
cpe:2.3:o:…
2024-11-21 11:09
2014-10-28
Show GitHub Exploit DB Packet Storm
197 -
10.0
HIGH Stack-based buffer overflow in rtsold in FreeBSD 9.1 through 10.1-RC2 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted DNS parameters in a r… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-3954 cpe:2.3:o:freebsd:freebsd:9.3:rc2
cpe:2.3:o:freebsd:freebsd:9.3:rc1
cpe:2.3:o:freebsd:freebsd:9.3:*
cpe:2.3:o:…
2024-11-21 11:09
2014-10-28
Show GitHub Exploit DB Packet Storm
198 -
5.0
MEDIUM namei in FreeBSD 9.1 through 10.1-RC2 allows remote attackers to cause a denial of service (memory exhaustion) via vectors that trigger a sandboxed process to look up a large number of nonexistent pa… CWE-399
 Resource Management Errors
CVE-2014-3711 cpe:2.3:o:freebsd:freebsd:9.3:rc2
cpe:2.3:o:freebsd:freebsd:9.3:rc1
cpe:2.3:o:freebsd:freebsd:9.3:*
cpe:2.3:o:…
2024-11-21 11:08
2014-10-28
Show GitHub Exploit DB Packet Storm
199 -
5.0
MEDIUM The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out-of-bounds array access) via a crafted argument to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-5384 cpe:2.3:o:freebsd:freebsd:10.0:* 2024-11-21 11:11
2014-08-22
Show GitHub Exploit DB Packet Storm
200 -
5.0
MEDIUM The HZ module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via a crafted argument to the… NVD-CWE-Other
CVE-2014-3951 cpe:2.3:o:freebsd:freebsd:10.0:* 2024-11-21 11:09
2014-08-22
Show GitHub Exploit DB Packet Storm