Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
251 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
252 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
253 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
254 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
255 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
256 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
257 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
258 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
259 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
260 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
261 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
262 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
263 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
264 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
265 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
251 -
7.2
HIGH Multiple unspecified vulnerabilities in FreeBSD 6 before 6.4-STABLE, 6.3 before 6.3-RELEASE-p7, 6.4 before 6.4-RELEASE-p1, 7.0 before 7.0-RELEASE-p7, 7.1 before 7.1-RC2, and 7 before 7.1-PRERELEASE a… CWE-264
NVD-CWE-noinfo
Permissions, Privileges, and Access Controls
CVE-2008-5736 cpe:2.3:o:freebsd:freebsd:7.1:rc1
cpe:2.3:o:freebsd:freebsd:7.1:-
cpe:2.3:o:freebsd:freebsd:7.0:p6
cpe:2.3:o:f…
2026-04-23 09:35
2008-12-27
Show GitHub Exploit DB Packet Storm
252 7.0
6.9
HIGH
Local
The arc4random function in the kernel in FreeBSD 6.3 through 7.1 does not have a proper entropy source for a short time period immediately after boot, which makes it easier for attackers to predict t… CWE-330
 Use of Insufficiently Random Values
CVE-2008-5162 cpe:2.3:o:freebsd:freebsd:7.1:rc2
cpe:2.3:o:freebsd:freebsd:7.1:rc1
cpe:2.3:o:freebsd:freebsd:7.1:p9
cpe:2.3:o…
6.4 7.0 2026-04-23 09:35
2008-11-27
Show GitHub Exploit DB Packet Storm
253 -
7.1
HIGH The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of serv… CWE-16
NVD-CWE-noinfo
Configuration
CVE-2008-4609 cpe:2.3:o:freebsd:freebsd:7.1:*
cpe:2.3:o:freebsd:freebsd:7.0:*
cpe:2.3:o:freebsd:freebsd:6.3:*
cpe:2.3:o:free…
2026-04-23 09:35
2008-10-21
Show GitHub Exploit DB Packet Storm
254 -
9.3
HIGH The IPv6 Neighbor Discovery Protocol (NDP) implementation in (1) FreeBSD 6.3 through 7.1, (2) OpenBSD 4.2 and 4.3, (3) NetBSD, (4) Force10 FTOS before E7.7.1.1, (5) Juniper JUNOS, and (6) Wind River … CWE-20
 Improper Input Validation 
CVE-2008-2476 cpe:2.3:o:freebsd:freebsd:7.1:*
cpe:2.3:o:freebsd:freebsd:6.3:*
2026-04-23 09:35
2008-10-4
Show GitHub Exploit DB Packet Storm
255 -
7.5
HIGH ftpd in OpenBSD 4.3, FreeBSD 7.0, NetBSD 4.0, Solaris, and possibly other operating systems interprets long commands from an FTP client as multiple commands, which allows remote attackers to conduct … CWE-352
 Origin Validation Error
CVE-2008-4247 cpe:2.3:o:freebsd:freebsd:7.0:* 2026-04-23 09:35
2008-09-26
Show GitHub Exploit DB Packet Storm
256 -
7.1
HIGH sys/netinet6/icmp6.c in the kernel in FreeBSD 6.3 through 7.1, NetBSD 3.0 through 4.0, and possibly other operating systems does not properly check the proposed new MTU in an ICMPv6 Packet Too Big Me… CWE-20
 Improper Input Validation 
CVE-2008-3530 cpe:2.3:o:freebsd:freebsd:7.1:*
cpe:2.3:o:freebsd:freebsd:7.0:*
cpe:2.3:o:freebsd:freebsd:6.3:*
2026-04-23 09:35
2008-09-6
Show GitHub Exploit DB Packet Storm
257 -
6.9
MEDIUM Stack-based buffer overflow in sys/kern/vfs_mount.c in the kernel in FreeBSD 7.0 and 7.1, when vfs.usermount is enabled, allows local users to gain privileges via a crafted (1) mount or (2) nmount sy… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-3531 cpe:2.3:o:freebsd:freebsd:7.1:*
cpe:2.3:o:freebsd:freebsd:7.0:*
2026-04-23 09:35
2008-09-6
Show GitHub Exploit DB Packet Storm
258 -
7.2
HIGH The kernel in FreeBSD 6.3 through 7.0 on amd64 platforms can make an extra swapgs call after a General Protection Fault (GPF), which allows local users to gain privileges by triggering a GPF during t… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-3890 cpe:2.3:o:freebsd:freebsd:7.0:*
cpe:2.3:o:freebsd:freebsd:6.3:*
2026-04-23 09:35
2008-09-6
Show GitHub Exploit DB Packet Storm
259 -
7.5
HIGH Multiple integer overflows in libc in NetBSD 4.x, FreeBSD 6.x and 7.x, and probably other BSD and Apple Mac OS platforms allow context-dependent attackers to execute arbitrary code via large values o… CWE-189
Numeric Errors
CVE-2008-1391 cpe:2.3:o:freebsd:freebsd:7.0_releng:*
cpe:2.3:o:freebsd:freebsd:7.0_beta4:*
cpe:2.3:o:freebsd:freebsd:7.0:pre-re…
2026-04-23 09:35
2008-03-28
Show GitHub Exploit DB Packet Storm
260 -
4.6
MEDIUM Stack-based buffer overflow in the command_Expand_Interpret function in command.c in ppp (aka user-ppp), as distributed in FreeBSD 6.3 and 7.0, OpenBSD 4.1 and 4.2, and the net/userppp package for Ne… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-1215 cpe:2.3:o:freebsd:freebsd:7.0:*
cpe:2.3:o:freebsd:freebsd:6.3:*
2026-04-23 09:35
2008-03-9
Show GitHub Exploit DB Packet Storm