Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
291 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
292 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
293 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
294 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
295 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
296 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
297 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
298 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
299 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
300 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
301 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
302 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
303 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
304 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
305 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
291 -
5.0
MEDIUM A logic error in the IP fragment cache functionality in pf in FreeBSD 5.3, 5.4, and 6.0, and OpenBSD, when a 'scrub fragment crop' or 'scrub fragment drop-ovl' rule is being used, allows remote attac… NVD-CWE-Other
CVE-2006-0381 cpe:2.3:o:freebsd:freebsd:6.0:stable
cpe:2.3:o:freebsd:freebsd:6.0:release
cpe:2.3:o:freebsd:freebsd:5.4:releng
2017-07-20 10:29
2006-01-26
Show GitHub Exploit DB Packet Storm
292 -
10.0
HIGH Integer overflow in IEEE 802.11 network subsystem (ieee80211_ioctl.c) in FreeBSD before 6.0-STABLE, while scanning for wireless networks, allows remote attackers to execute arbitrary code by broadcas… NVD-CWE-Other
CVE-2006-0226 cpe:2.3:o:freebsd:freebsd:6.0:stable
cpe:2.3:o:freebsd:freebsd:6.0:release
2017-07-20 10:29
2006-01-19
Show GitHub Exploit DB Packet Storm
293 -
2.1
LOW The ispell_op function in ee on FreeBSD 4.10 to 6.0 uses predictable filenames and does not confirm which file is being written, which allows local users to overwrite arbitrary files via a symlink at… NVD-CWE-Other
CVE-2006-0055 cpe:2.3:o:freebsd:freebsd:6.0:stable
cpe:2.3:o:freebsd:freebsd:6.0:release
cpe:2.3:o:freebsd:freebsd:5.4:releng
2017-07-20 10:29
2006-01-12
Show GitHub Exploit DB Packet Storm
294 -
5.0
MEDIUM The ipfw firewall in FreeBSD 6.0-RELEASE allows remote attackers to cause a denial of service (firewall crash) via ICMP IP fragments that match a reset, reject or unreach action, which leads to an ac… CWE-824
 Access of Uninitialized Pointer
CVE-2006-0054 cpe:2.3:o:freebsd:freebsd:6.0:- 2024-02-14 02:43
2006-01-12
Show GitHub Exploit DB Packet Storm
295 -
4.3
MEDIUM The securelevels implementation in FreeBSD 7.0 and earlier, OpenBSD up to 3.8, DragonFly up to 1.2, and Linux up to 2.6.15 allows root users to bypass immutable settings for files by mounting another… NVD-CWE-Other
CVE-2005-4351 cpe:2.3:o:freebsd:freebsd:7.0:current
cpe:2.3:o:freebsd:freebsd:*:stable
6.0 2017-07-20 10:29
2005-12-31
Show GitHub Exploit DB Packet Storm
296 -
5.0
MEDIUM The AES-XCBC-MAC algorithm in IPsec in FreeBSD 5.3 and 5.4, when used for authentication without other encryption, uses a constant key instead of the one that was assigned by the system administrator… NVD-CWE-Other
CVE-2005-2359 cpe:2.3:o:freebsd:freebsd:5.4:*
cpe:2.3:o:freebsd:freebsd:5.3:*
2017-07-11 10:32
2005-08-5
Show GitHub Exploit DB Packet Storm
297 -
7.2
HIGH The device file system (devfs) in FreeBSD 5.x does not properly check parameters of the node type when creating a device node, which makes hidden devices available to attackers, who can then bypass r… NVD-CWE-Other
CVE-2005-2218 cpe:2.3:o:freebsd:freebsd:5.4:releng
cpe:2.3:o:freebsd:freebsd:5.4:release
cpe:2.3:o:freebsd:freebsd:5.4:pre-rele…
2017-07-11 10:32
2005-07-26
Show GitHub Exploit DB Packet Storm
298 -
5.0
MEDIUM ipfw in FreeBSD 5.4, when running on Symmetric Multi-Processor (SMP) or Uni Processor (UP) systems with the PREEMPTION kernel option enabled, does not sufficiently lock certain resources while perfor… NVD-CWE-Other
CVE-2005-2019 cpe:2.3:o:freebsd:freebsd:5.4:* 2008-09-6 05:50
2005-07-5
Show GitHub Exploit DB Packet Storm
299 -
5.0
MEDIUM FreeBSD 4.x through 4.11 and 5.x through 5.4 allows remote attackers to modify certain TCP options via a TCP packet with the SYN flag set for an already established session. NVD-CWE-Other
CVE-2005-2068 cpe:2.3:o:freebsd:freebsd:5.4:*
cpe:2.3:o:freebsd:freebsd:5.3:*
cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:free…
2008-09-6 05:50
2005-07-5
Show GitHub Exploit DB Packet Storm
300 -
5.0
MEDIUM Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spo… NVD-CWE-Other
CVE-2005-0356 cpe:2.3:o:freebsd:freebsd:5.4:release
cpe:2.3:o:freebsd:freebsd:5.4:pre-release
cpe:2.3:o:freebsd:freebsd:5.3:sta…
2019-04-30 23:27
2005-05-31
Show GitHub Exploit DB Packet Storm