FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
318016FreeBSD : www/gohugo -- CWE-79: XSS vulnerabilities (20d59b47-5ba3-11f1-bf1b-b42e991fc52e)
medium
318015FreeBSD : MariaDB -- Multiple vulnerabilities (2eb8a9ab-5b5d-11f1-8607-8447094a420f)
critical
317883FreeBSD : mail/mailpit -- memory-exhaustion DoS via unbounded JSON body (7ae38fde-5ab6-11f1-a242-10ffe07f9334)
high
317390FreeBSD : Erlang/OTP -- TLS hostname verification bypass via Subject CommonName fallback and name constraints (93576148-5a54-11f1-b886-4c526214c986)
high
317389FreeBSD : OpenEXR -- 3.4.12 fixes multiple vulnerabilities (ca91c020-5820-11f1-b38d-9be2e6022e28)
critical
317388FreeBSD : Erlang/OTP -- public_key accepts non-CA certificate as intermediate issuer (9357a450-5a54-11f1-b886-4c526214c986)
high
317387FreeBSD : Erlang/OTP -- OCSP responder certificate accepted after expiry in public_key (9357d6fb-5a54-11f1-b886-4c526214c986)
medium
317070FreeBSD : Grafana -- Grafana Testdata datasource can issue unbounded memory allocations (62717c0f-5901-11f1-b525-3c7c3fba4204)
medium
317069FreeBSD : Grafana -- Query resampling can cause unbounded memory allocations (c079e809-5900-11f1-b525-3c7c3fba4204)
medium
317068FreeBSD : Grafana -- RCE on Grafana via sqlExpressions (f45ad940-58ff-11f1-b525-3c7c3fba4204)
critical
317067FreeBSD : Grafana -- Grafana MSSQL Data Source Plugin: Restriction Bypass Leading to OOM DoS (9bcc3279-5901-11f1-b525-3c7c3fba4204)
medium
317066FreeBSD : Grafana -- XSS in Grafana Explore stack trace (6cc28c49-58fe-11f1-b525-3c7c3fba4204)
medium
317065FreeBSD : Grafana -- OpenFeature evaluation API reads input data with no bounds (138319f3-5901-11f1-b525-3c7c3fba4204)
high
317064FreeBSD : Grafana -- Public dashboards discloses all direct mode datasources (6b2bf8e9-5900-11f1-b525-3c7c3fba4204)
high
317063FreeBSD : Grafana -- Public Dashboards time range restriction on annotations can be bypassed (83cd53f7-58ff-11f1-b525-3c7c3fba4204)
medium
316664FreeBSD : gstreamer1 -- multiple vulnerabilities (ea4c5b9d-55f7-11f1-915c-8974b59277b5)
high
316663FreeBSD : putty -- multiple security vulnerabilities (5f7c686c-558e-11f1-b38d-9be2e6022e28)
high
316662FreeBSD : traefik -- Unauthorized exposure of the REST provider (4e221ca1-573a-11f1-9f6d-5404a68ad561)
medium
316661FreeBSD : jellyfin -- multiple vulnerabilities (87ff1d7e-6b24-4a5b-9825-90dcda5ee119)
high
316660FreeBSD : nginx -- heap buffer overflow in ngx_http_rewrite_module (36a3131d-5600-11f1-b339-3497f65b111b)
critical
316659FreeBSD : Roundcube Webmail -- Multiple vulnerabilities (b8777bc2-5758-11f1-8607-8447094a420f)
high
316658FreeBSD : gstreamer1 -- multiple vulnerabilities (05aadfcc-55f5-11f1-915c-8974b59277b5)
critical
316538FreeBSD : ner/rsync -- multiple vulnerabilities (ecca89eb-54e6-11f1-bc4a-40b034429ecf)
medium
316537FreeBSD : qt6-webengine -- multiple vulnerabilities (738f5590-550c-11f1-9f97-3fa0ea3edd7d)
critical
316082FreeBSD : FreeBSD -- Missing validation in ptrace(PT_SC_REMOTE) (6c96da5e-54b6-11f1-8d7a-bc241121aa0a)
high
316081FreeBSD : FreeBSD -- Stack buffer overflow via setcred(2) (39728e41-54b5-11f1-8d7a-bc241121aa0a)
high
316080FreeBSD : FreeBSD -- Heap overflow in FUSE_LISTXATTR (3cc34467-54b6-11f1-8d7a-bc241121aa0a)
medium
316051FreeBSD : FreeBSD -- Incorrect libcap_net limitation list manipulation (37ab0cbc-54b7-11f1-8d7a-bc241121aa0a)
medium
315998FreeBSD : FreeBSD -- Remote code execution via installer Wi-Fi access point scans (039c0ab0-54b7-11f1-8d7a-bc241121aa0a)
high
315997FreeBSD : FreeBSD -- select(2) file descriptor set overflow causes stack overflow (90fe1784-54b6-11f1-8d7a-bc241121aa0a)
high
315996FreeBSD : FreeBSD -- Kernel use-after-free via file descriptor syscalls (ee21f41f-54b5-11f1-8d7a-bc241121aa0a)
high
315600FreeBSD : nginx-devel -- multiple vulnerabilities (1ed77d8e-53bb-11f1-b339-3497f65b111b)
critical
315593FreeBSD : MySQL -- Multiple vulnerabilities (f69dbfcc-535b-11f1-8b62-8447094a420f)
high
315580FreeBSD : MariaDB -- Multiple vulnerabilities (31b7e7bc-5358-11f1-8b62-8447094a420f)
medium
315242FreeBSD : Vinyl/Varnish -- HTTP/2 parsing deficiency (f0f4bb64-52c6-11f1-a1c0-0050569f0b83)
high
314916FreeBSD : py-setuptools -- Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (690144e9-4f88-11f1-982e-00a098b42aeb)
high
314915FreeBSD : www/nginx -- Remote Code Execution/DoS (3414ac89-4f9f-11f1-a1c0-0050569f0b83)
critical
314914FreeBSD : PostgreSQL -- Multiple vulnerabilities (7185ecc9-4fb7-11f1-bc50-6cc21735f730)
high
314913FreeBSD : mail/mailpit -- multiple vulnerabilities (6e701ad2-4f61-11f1-af6d-10ffe07f9334)
high
314593FreeBSD : Gitlab -- vulnerabilities (b3cb8f40-4f4c-11f1-80f1-2cf05da270f3)
high
314378FreeBSD : zeek -- potential DoS vulnerability (e665f0a2-fe6d-44b0-ba9e-d383f055a8a3)
high
314370FreeBSD : postorius -- XSS (5b3b7f60-4de9-11f1-873e-0f64d023d0c7)
medium
314369FreeBSD : dnsmasq -- multiple vulnerabilities (eeb4d69a-4d74-11f1-9a9c-994b98c88011)
high
314367FreeBSD : Vulnerability found in Expat (bacc1417-4d82-11f1-87f3-18dbf25a98c6)
high
314285FreeBSD : dash -- arith: INTMAX_MIN / -1 overflow (ab2258a2-4cea-11f1-aec8-bc241107513d)
high
313463FreeBSD : chromium -- security fixes (da4d7162-4aa3-11f1-b189-a8a1599412c6)
critical
313462FreeBSD : firefox -- Memory safety bugs present in Firefox ESR 115 (7a9f1c15-4aae-11f1-88d3-b42e991fc52e)
high
313461FreeBSD : Mozilla -- Incorrect boundary conditions (76763f24-4aae-11f1-88d3-b42e991fc52e)
critical
313460FreeBSD : firefox -- Use-after-free (7360cdae-4aae-11f1-88d3-b42e991fc52e)
high
313459FreeBSD : firefox -- Memory safety bugs present in Firefox 150 (7eae7f45-4aae-11f1-88d3-b42e991fc52e)
high