Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
301 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
302 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
303 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
304 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
305 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
306 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
307 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
308 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
309 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
310 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
311 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
312 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
313 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
314 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
315 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
301 -
4.6
MEDIUM FreeBSD 4.6 to 4.11 and 5.x to 5.4 uses insecure default permissions for the /dev/iir device, which allows local users to execute restricted ioctl calls to read or modify data on hardware that is con… NVD-CWE-Other
CVE-2005-1399 cpe:2.3:o:freebsd:freebsd:5.4:*
cpe:2.3:o:freebsd:freebsd:5.3:*
cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:free…
2008-09-6 05:49
2005-05-6
Show GitHub Exploit DB Packet Storm
302 -
4.6
MEDIUM The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values. NVD-CWE-Other
CVE-2005-1400 cpe:2.3:o:freebsd:freebsd:5.4:*
cpe:2.3:o:freebsd:freebsd:5.3:*
cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:free…
2008-09-6 05:49
2005-05-6
Show GitHub Exploit DB Packet Storm
303 -
4.6
MEDIUM The kernel in FreeBSD 4.x to 4.11 and 5.x to 5.4 does not properly clear certain fixed-length buffers when copying variable-length data for use by applications, which could allow those applications t… NVD-CWE-Other
CVE-2005-1406 cpe:2.3:o:freebsd:freebsd:5.4:*
cpe:2.3:o:freebsd:freebsd:5.3:*
cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:free…
2011-03-8 11:21
2005-05-6
Show GitHub Exploit DB Packet Storm
304 -
10.0
HIGH The sendfile system call in FreeBSD 4.8 through 4.11 and 5 through 5.4 can transfer portions of kernel memory if a file is truncated while it is being sent, which could allow remote attackers to obta… NVD-CWE-Other
CVE-2005-0708 cpe:2.3:o:freebsd:freebsd:5.4:pre-release
cpe:2.3:o:freebsd:freebsd:5.3:stable
cpe:2.3:o:freebsd:freebsd:5.3:rele…
2017-10-12 10:29
2005-05-2
Show GitHub Exploit DB Packet Storm
305 -
3.7
LOW Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a gzipped file, allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being dec… NVD-CWE-Other
CVE-2005-0988 cpe:2.3:o:freebsd:freebsd:5.4:releng
cpe:2.3:o:freebsd:freebsd:5.4:release
cpe:2.3:o:freebsd:freebsd:5.4:pre-rele…
2017-10-11 10:30
2005-05-2
Show GitHub Exploit DB Packet Storm
306 7.8
7.2
HIGH
Local
FreeBSD 5.x to 5.4 on AMD64 does not properly initialize the IO permission bitmap used to allow user access to certain hardware, which allows local users to bypass intended access restrictions to cau… CWE-909
 Missing Initialization of Resource
CVE-2005-1036 cpe:2.3:o:freebsd:freebsd:*:* 5.0 5.4 2024-02-9 08:47
2005-05-2
Show GitHub Exploit DB Packet Storm
307 -
2.1
LOW The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer before using it, which allows local users to obtain portions of sensitive kern… CWE-399
 Resource Management Errors
CVE-2005-1126 cpe:2.3:o:freebsd:freebsd:5.3:stable
cpe:2.3:o:freebsd:freebsd:5.3:releng
cpe:2.3:o:freebsd:freebsd:5.3:release
2017-07-11 10:32
2005-04-15
Show GitHub Exploit DB Packet Storm
308 -
7.2
HIGH Multiple symlink vulnerabilities in portupgrade before 20041226_2 in FreeBSD allow local users to (1) overwrite arbitrary files and possibly replace packages to execute arbitrary code via pkg_fetch, … NVD-CWE-Other
CVE-2005-0610 cpe:2.3:o:freebsd:freebsd:5.4:release
cpe:2.3:o:freebsd:freebsd:5.4:pre-release
cpe:2.3:o:freebsd:freebsd:5.3:sta…
2008-09-6 05:46
2005-04-12
Show GitHub Exploit DB Packet Storm
309 5.6
4.7
MEDIUM
Local
Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, … NVD-CWE-Other
CVE-2005-0109 cpe:2.3:o:freebsd:freebsd:5.4:pre-release
cpe:2.3:o:freebsd:freebsd:5.3:stable
cpe:2.3:o:freebsd:freebsd:5.3:rele…
2018-10-16 21:06
2005-03-5
Show GitHub Exploit DB Packet Storm
310 -
3.6
LOW The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 through 5.3, and (2) linprocfs on FreeBSD 5.x through 5.3, do not properly validate a process argument vector, which allows local users to cause a… NVD-CWE-Other
CVE-2004-1066 cpe:2.3:o:freebsd:freebsd:5.3:stable
cpe:2.3:o:freebsd:freebsd:5.3:release
cpe:2.3:o:freebsd:freebsd:5.3:*
cpe…
2017-07-11 10:30
2005-01-10
Show GitHub Exploit DB Packet Storm