Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
201 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
202 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
203 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
204 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
205 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
206 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
207 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
208 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
209 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
210 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
211 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
212 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
213 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
214 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
215 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
201 -
4.9
MEDIUM FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize certain data structures, which allows local users to obtain sensitive information from kernel m… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-3953 cpe:2.3:o:freebsd:freebsd:9.2:-
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:8.4:*
cpe:2.3:o:free…
2024-11-21 11:09
2014-07-15
Show GitHub Exploit DB Packet Storm
202 -
4.9
MEDIUM FreeBSD 8.4 before p14, 9.1 before p17, 9.2 before p10, and 10.0 before p7 does not properly initialize the buffer between the header and data of a control message, which allows local users to obtain… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-3952 cpe:2.3:o:freebsd:freebsd:9.2:-
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:8.4:*
cpe:2.3:o:free…
2024-11-21 11:09
2014-07-15
Show GitHub Exploit DB Packet Storm
203 -
4.9
MEDIUM The (1) execve and (2) fexecve system calls in the FreeBSD kernel 8.4 before p11, 9.1 before p14, 9.2 before p7, and 10.0 before p4 destroys the virtual memory address space and mappings for a proces… CWE-20
 Improper Input Validation 
CVE-2014-3880 cpe:2.3:o:freebsd:freebsd:9.2:-
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:8.4:*
cpe:2.3:o:free…
2024-11-21 11:09
2014-06-10
Show GitHub Exploit DB Packet Storm
204 -
2.1
LOW The ktrace utility in the FreeBSD kernel 8.4 before p11, 9.1 before p14, 9.2 before p7, and 9.3-BETA1 before p1 uses an incorrect page fault kernel trace entry size, which allows local users to obtai… CWE-20
 Improper Input Validation 
CVE-2014-3873 cpe:2.3:o:freebsd:freebsd:9.3:beta1
cpe:2.3:o:freebsd:freebsd:9.2:-
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:…
2024-11-21 11:09
2014-06-10
Show GitHub Exploit DB Packet Storm
205 -
1.9
LOW The sm_close_on_exec function in conf.c in sendmail before 8.14.9 has arguments in the wrong order, and consequently skips setting expected FD_CLOEXEC flags, which allows local users to access uninte… CWE-200
Information Exposure
CVE-2014-3956 cpe:2.3:o:freebsd:freebsd:*:- 9.2 2024-11-21 11:09
2014-06-4
Show GitHub Exploit DB Packet Storm
206 -
5.8
MEDIUM The device file system (aka devfs) in FreeBSD 10.0 before p2 does not load default rulesets when booting, which allows context-dependent attackers to bypass intended restrictions by leveraging a jail… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-3001 cpe:2.3:o:freebsd:freebsd:10.0:* 2024-11-21 11:07
2014-05-2
Show GitHub Exploit DB Packet Storm
207 -
7.8
HIGH The TCP reassembly function in the inet module in FreeBSD 8.3 before p16, 8.4 before p9, 9.1 before p12, 9.2 before p5, and 10.0 before p2 allows remote attackers to cause a denial of service (undefi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-3000 cpe:2.3:o:freebsd:freebsd:9.2:-
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:8.4:*
cpe:2.3:o:free…
2024-11-21 11:07
2014-05-2
Show GitHub Exploit DB Packet Storm
208 -
4.0
MEDIUM The NFS server (nfsserver) in FreeBSD 8.3 through 10.0 does not acquire locks in the proper order when converting a directory file handle to a vnode, which allows remote authenticated users to cause … CWE-399
 Resource Management Errors
CVE-2014-1453 cpe:2.3:o:freebsd:freebsd:9.2:rc2
cpe:2.3:o:freebsd:freebsd:9.2:rc1
cpe:2.3:o:freebsd:freebsd:9.2:prerelease
c…
2024-11-21 11:04
2014-04-17
Show GitHub Exploit DB Packet Storm
209 -
5.8
MEDIUM Stack-based buffer overflow in lib/snmpagent.c in bsnmpd, as used in FreeBSD 8.3 through 10.0, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1452 cpe:2.3:o:freebsd:freebsd:9.2:rc2
cpe:2.3:o:freebsd:freebsd:9.2:rc1
cpe:2.3:o:freebsd:freebsd:9.2:prerelease
c…
2024-11-21 11:04
2014-01-22
Show GitHub Exploit DB Packet Storm
210 -
4.9
MEDIUM The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from k… CWE-20
 Improper Input Validation 
CVE-2013-6834 cpe:2.3:o:freebsd:freebsd:9.2:*
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:9.0:*
cpe:2.3:o:free…
10.0 2024-11-21 10:59
2013-11-21
Show GitHub Exploit DB Packet Storm