Software Detail
Title
CVE
CRITICAL
HIGH
MEDIUM
LOW
CWE
Number of items displayed
FreeBSD Number Of NVD 488 CRITICAL 29 HIGH 219 MEDIUM 185 LOW 55
URL https://www.freebsd.org/
Explanation Starting with FreeBSD 11, we are switching to a model of supporting major versions for at least 5 years.
We plan to release updates to the major versions every two years.
Older versions will be supported until three months after a new minor version is released.
Tag
  • BSD

Add Information URL
No Type Name URL
1 https://www.freebsd.org/security/
2 https://www.freebsd.org/releases/
3 https://www.freebsd.org/security/unsupported.html

List Of Product  [ Click to show release history and vulnerability information ]
No Name Latest Version Release date Initial release Normal Support Security Support
Service Pack Support
Extended
for a fee
Critical High Medium Low
311 FreeBSD 15 15.1 June 16, 2026 June 16, 2026 March 31, 2027 March 31, 2027 0 0 0 0
312 FreeBSD 13 13.2 April 11, 2023 April 13, 2021 April 13, 2021 3 29 6 0
313 FreeBSD 12 12.4 Dec. 5, 2022 Dec. 11, 2018 June 30, 2024 18 39 22 2
314 FreeBSD 11 11.4 June 16, 2020 Oct. 10, 2016 Sept. 30, 2021 21 48 40 2
315 FreeBSD 10 10.4 Jan. 20, 2014 Jan. 20, 2014 Feb. 28, 2015 7 40 46 2
316 FreeBSD 9 9.3 July 16, 2014 Jan. 10, 2012 Dec. 31, 2016 5 38 33 6
317 FreeBSD 8 8.4 June 9, 2013 Nov. 25, 2009 Aug. 1, 2015 5 38 33 6
318 FreeBSD 7 7.4 Feb. 24, 2011 Feb. 27, 2008 Feb. 28, 2013 5 37 31 5
319 FreeBSD 6 6.4 Nov. 28, 2008 Nov. 4, 2005 Nov. 30, 2010 6 43 46 15
320 FreeBSD 5 5.5 May 25, 2006 Nov. 6, 2004 May 31, 2008 7 42 50 18
321 FreeBSD 4 4.0 March 14, 2000 Jan. 31, 2007 8 67 61 23
322 FreeBSD 3 3.0 Oct. 16, 1998 Jan. 1, 1900 6 57 47 16
323 FreeBSD 2 2.0.5 Nov. 22, 1994 Jan. 1, 1900 6 51 41 10
324 FreeBSD 1 1.0 Oct. 1, 1993 Jan. 1, 1900 26 112 90 9
325 FreeBSD 0.4_1 0.4_1 Jan. 1, 1900 6 27 30 4
NVD Vulnerability Information
  • CRITICAL
  • HIGH
  • MEDIUM
  • LOW
No CVSS3
CVSS2
Level
Attach Vector
Title CWE CVE cpe23Uri or higher or less more than less than Update date
Published date
Show Affected Exploit
PoC
Search
311 -
4.6
MEDIUM The syscons CONS_SCRSHOT ioctl in FreeBSD 5.x allows local users to read arbitrary kernel memory via (1) negative coordinates or (2) large coordinates. NVD-CWE-Other
CVE-2004-0919 cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:freebsd:freebsd:5.2.1:releng
cpe:2.3:o:freebsd:freebsd:5.2.1:release
2017-07-11 10:30
2004-12-31
Show GitHub Exploit DB Packet Storm
312 -
7.1
HIGH Format string vulnerability in wrapper.c in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16 allows remote attackers with CVSROOT commit access to cause a denial of service (application crash) a… NVD-CWE-Other
CVE-2004-1471 cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:freebsd:freebsd:5.2.1:releng
cpe:2.3:o:freebsd:freebsd:5.2.1:release
2017-07-11 10:31
2004-12-31
Show GitHub Exploit DB Packet Storm
313 -
2.1
LOW The binary compatibility mode for FreeBSD 4.x and 5.x does not properly handle certain Linux system calls, which could allow local users to access kernel memory to gain privileges or cause a system p… NVD-CWE-Other
CVE-2004-0602 cpe:2.3:o:freebsd:freebsd:5.0:*
cpe:2.3:o:freebsd:freebsd:4.0:*
2017-07-11 10:30
2004-12-6
Show GitHub Exploit DB Packet Storm
314 -
2.1
LOW FreeBSD 5.1 for the Alpha processor allows local users to cause a denial of service (crash) via an execve system call with an unaligned memory address as an argument. NVD-CWE-Other
CVE-2004-0618 cpe:2.3:o:freebsd:freebsd:5.2.1:release
cpe:2.3:o:freebsd:freebsd:5.1:releng
cpe:2.3:o:freebsd:freebsd:5.1:releas…
2017-07-11 10:30
2004-12-6
Show GitHub Exploit DB Packet Storm
315 -
5.0
MEDIUM OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test … NVD-CWE-Other
CVE-2004-0081 cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:freebsd:freebsd:5.2.1:release
cpe:2.3:o:freebsd:freebsd:5.1:releng
c…
2021-11-9 00:48
2004-11-23
Show GitHub Exploit DB Packet Storm
316 7.5
5.0
HIGH
Network
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null… CWE-476
 NULL Pointer Dereference
CVE-2004-0079 cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:freebsd:freebsd:5.2.1:release
cpe:2.3:o:freebsd:freebsd:5.1:releng
c…
2023-12-29 00:33
2004-11-23
Show GitHub Exploit DB Packet Storm
317 -
5.0
MEDIUM The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, which allows remote at… CWE-125
Out-of-bounds Read
CVE-2004-0112 cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:freebsd:freebsd:5.2.1:release
cpe:2.3:o:freebsd:freebsd:5.1:releng
c…
2024-02-16 05:54
2004-11-23
Show GitHub Exploit DB Packet Storm
318 -
3.6
LOW Certain "programming errors" in the msync system call for FreeBSD 5.2.1 and earlier, and 4.10 and earlier, do not properly handle the MS_INVALIDATE operation, which leads to cache consistency problem… NVD-CWE-Other
CVE-2004-0435 cpe:2.3:o:freebsd:freebsd:5.2:*
cpe:2.3:o:freebsd:freebsd:5.2.1:releng
cpe:2.3:o:freebsd:freebsd:5.2.1:release
2017-07-11 10:30
2004-08-18
Show GitHub Exploit DB Packet Storm
319 -
7.2
HIGH The jail system call in FreeBSD 4.x before 4.10-RELEASE does not verify that an attempt to manipulate routing tables originated from a non-jailed process, which could allow local users to modify the … NVD-CWE-Other
CVE-2004-0125 cpe:2.3:o:freebsd:freebsd:4.9:releng
cpe:2.3:o:freebsd:freebsd:4.9:pre-release
cpe:2.3:o:freebsd:freebsd:4.9:*
2017-07-11 10:29
2004-08-6
Show GitHub Exploit DB Packet Storm
320 -
2.1
LOW The setsockopt call in the KAME Project IPv6 implementation, as used in FreeBSD 5.2, does not properly handle certain IPv6 socket options, which could allow attackers to read kernel memory and cause … NVD-CWE-Other
CVE-2004-0370 cpe:2.3:o:freebsd:freebsd:5.2:* 2017-07-11 10:30
2004-05-4
Show GitHub Exploit DB Packet Storm