Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
221 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
222 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
223 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
224 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
225 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
226 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
227 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
228 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
229 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
230 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
231 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
232 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
233 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
234 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
235 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
221 -
6.9
MEDIUM The vm_map_lookup function in sys/vm/vm_map.c in the mmap implementation in the kernel in FreeBSD 9.0 through 9.1-RELEASE-p4 does not properly determine whether a task should have write access to a m… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2171 cpe:2.3:o:freebsd:freebsd:9.1:p4
cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:9.0:*
2024-11-21 10:51
2013-07-2
Show GitHub Exploit DB Packet Storm
222 -
7.5
HIGH The nfsrvd_readdir function in sys/fs/nfsserver/nfs_nfsdport.c in the new NFS server in FreeBSD 8.0 through 9.1-RELEASE-p3 does not verify that a READDIR request is for a directory node, which allows… CWE-20
 Improper Input Validation 
CVE-2013-3266 cpe:2.3:o:freebsd:freebsd:9.1:*
cpe:2.3:o:freebsd:freebsd:9.0:*
cpe:2.3:o:freebsd:freebsd:8.3:*
cpe:2.3:o:free…
2024-11-21 10:53
2013-05-2
Show GitHub Exploit DB Packet Storm
223 -
7.8
HIGH The SCTP implementation in FreeBSD 8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted ASCONF chunk. NVD-CWE-Other
CVE-2012-3549 cpe:2.3:o:freebsd:freebsd:8.2:* 2024-11-21 10:41
2012-10-10
Show GitHub Exploit DB Packet Storm
224 -
5.0
MEDIUM The ipalloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD does not properly allocate memory, which makes it easier for context-dependent attackers to perform memory-… CWE-189
Numeric Errors
CVE-2007-6754 cpe:2.3:o:freebsd:freebsd:6.4:* 2024-11-21 09:40
2012-07-26
Show GitHub Exploit DB Packet Storm
225 -
5.0
MEDIUM Integer overflow in the calloc function in libc/stdlib/malloc.c in jemalloc in libc for FreeBSD 6.4 and NetBSD makes it easier for context-dependent attackers to perform memory-related attacks such a… CWE-189
Numeric Errors
CVE-2006-7252 cpe:2.3:o:freebsd:freebsd:6.4:* 2024-11-21 09:24
2012-07-26
Show GitHub Exploit DB Packet Storm
226 -
4.3
MEDIUM The crypt_des (aka DES-based crypt) function in FreeBSD before 9.0-RELEASE-p2, as used in PHP, PostgreSQL, and other products, does not process the complete cleartext password if this password contai… CWE-310
Cryptographic Issues
CVE-2012-2143 cpe:2.3:o:freebsd:freebsd:8.3:*
cpe:2.3:o:freebsd:freebsd:8.2:*
cpe:2.3:o:freebsd:freebsd:8.1:*
cpe:2.3:o:free…
9.0 2024-11-21 10:38
2012-07-5
Show GitHub Exploit DB Packet Storm
227 -
7.2
HIGH The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos before r13724; Joyent Sm… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0217 cpe:2.3:o:freebsd:freebsd:*:* 9.0 2024-11-21 10:34
2012-06-13
Show GitHub Exploit DB Packet Storm
228 -
10.0
HIGH Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and poss… CWE-120
Classic Buffer Overflow
CVE-2011-4862 cpe:2.3:o:freebsd:freebsd:*:* 7.3 9.0 2024-11-21 10:33
2011-12-25
Show GitHub Exploit DB Packet Storm
229 -
6.9
MEDIUM Directory traversal vulnerability in openpam_configure.c in OpenPAM before r478 on FreeBSD 8.1 allows local users to load arbitrary DSOs and gain privileges via a .. (dot dot) in the service_name arg… CWE-22
Path Traversal
CVE-2011-4122 cpe:2.3:o:freebsd:freebsd:8.1:* 2024-11-21 10:31
2011-11-18
Show GitHub Exploit DB Packet Storm
230 -
7.2
HIGH Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-4062 cpe:2.3:o:freebsd:freebsd:9.0:beta3
cpe:2.3:o:freebsd:freebsd:9.0:beta2
cpe:2.3:o:freebsd:freebsd:9.0:beta1
cp…
2024-11-21 10:31
2011-10-18
Show GitHub Exploit DB Packet Storm