FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
299804FreeBSD : openexr -- buffer overflow in istream_nonparallel_read on invalid input data (716d25a6-0fdc-11f1-bfdf-ff9355aecb00)
high
299732FreeBSD : jenkins -- multiple vulnerabilities (428e782a-0e92-11f1-a9b1-0cc47ada5f32)
high
299731FreeBSD : Mozilla -- Heap buffer overflow (6a81dc74-0e8b-11f1-b7d1-b42e991fc52e)
high
299612FreeBSD : chromium -- security fixes (a977cb1c-0d7d-11f1-85c5-a8a1599412c6)
high
299351FreeBSD : powerdns-recursor -- Denial of Service (67793feb-0b5b-11f1-a1c0-0050569f0b83)
high
299325FreeBSD : png -- CWE-122: Heap-based Buffer Overflow (f9cb72e4-0b52-11f1-8e75-b42e991fc52e)
high
299142FreeBSD : chromium -- security fix (424d598b-09c4-11f1-85c5-a8a1599412c6)
high
299141FreeBSD : munge -- CWE-787: Out-of-bounds Write (17186409-09d2-11f1-a39c-b42e991fc52e)
high
299140FreeBSD : traefik -- TCP readTimeout bypass via STARTTLS on Postgres (590979aa-09f7-11f1-a730-5404a68ad561)
high
299011FreeBSD : PostgreSQL -- Multiple vulnerabilities (e3afc190-0821-11f1-a857-6cc21735f730)
high
299004FreeBSD : MongoDB Server -- CWE-617 Reachable Assertion (7b5671f9-0800-11f1-8a6f-b42e991fc52e)
high
299003FreeBSD : MongoDB Server -- CWE-704 Incorrect Type Conversion or Cast (7f9bac32-0800-11f1-8a6f-b42e991fc52e)
high
298958FreeBSD : MongoDB Server -- Multiple vulnerabilities (77e32b14-0800-11f1-8a6f-b42e991fc52e)
high
298957FreeBSD : expat -- multiple vulnerabilities (027c6c07-065b-11f1-baae-589cfc023192)
low
298644FreeBSD : Gitlab -- vulnerabilities (9d9940e7-071c-11f1-93ca-2cf05da270f3)
critical
298643FreeBSD : FreeBSD -- blocklistd(8) socket leak (8d8012e5-0705-11f1-8148-bc241121aa0a)
high
298386FreeBSD : chromium -- multiple security fixes (9bc5a730-0585-11f1-85c5-a8a1599412c6)
high
298385FreeBSD : Roundcube -- Multiple vulnerabilities (f301a241-04d3-11f1-a38c-8447094a420f)
high
298320FreeBSD : navidrome -- multiple vulnerabilities (a6effa17-1fd4-4895-8471-d5c684d7807c)
critical
298319FreeBSD : qt6-webengine -- multiple vulnerabilities (73ff246b-04b2-11f1-84fc-4ccc6adda413)
high
298318FreeBSD : traefik -- ACME TLS-ALPN fast path potential DoS (1a82bf18-0417-11f1-be6f-5404a68ad561)
high
298034FreeBSD : python -- several security vulnerabilities (bfe9adc8-0224-11f1-8790-c5fb948922ad)
medium
297436FreeBSD : xrdp -- remote code execution (232e16cc-fd83-11f0-981a-98b78501ef2a)
critical
297210FreeBSD : FreeBSD -- Jail escape by a privileged user via nullfs (90071333-fbe5-11f0-a13f-bc241121aa0a)
high
297209FreeBSD : OpenSSL -- Multiple vulnerabilities (4b824428-fb93-11f0-b194-8447094a420f)
high
297207FreeBSD : zeek -- potential DoS vulnerability (8173e68a-88f3-4862-882c-6e58779d98e7)
high
297125FreeBSD : chromium -- security fix (409d70ab-fc23-11f0-85c5-a8a1599412c6)
medium
297124FreeBSD : Firefox -- Multiple vulnerabilities (9dac4f05-fc65-11f0-96db-b42e991fc52e)
high
296523FreeBSD : MySQL -- Multiple vulnerabilities (ab01cb11-f911-11f0-b194-8447094a420f)
medium
296236FreeBSD : chromium -- multiple security fixes (f8560c1b-f772-11f0-85c5-a8a1599412c6)
critical
296235FreeBSD : wheel -- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (65439aa0-f77d-11f0-9821-b0416f0c4c67)
medium
294960FreeBSD : Gitlab -- vulnerabilities (61dc7f67-f6e5-11f0-b051-2cf05da270f3)
high
293765FreeBSD : mail/mailpit -- multiple vulnerabilities (01f34a27-f560-11f0-bbdc-10ffe07f9334)
high
291340FreeBSD : oauth2-proxy -- multiple vulnerabilities (fb561db9-0fc1-4d92-81a2-ee01839c9119)
medium
291283FreeBSD : Mozilla -- multiple vulnerabilities (06061c59-f212-11f0-9ca3-b42e991fc52e)
critical
291282FreeBSD : Mozilla -- multiple vulnerabilities (085101eb-f212-11f0-9ca3-b42e991fc52e)
critical
291281FreeBSD : Mozilla -- multiple vulnerabilities (ff20d3a3-f211-11f0-9ca3-b42e991fc52e)
critical
288035FreeBSD : chromium -- multiple security fixes (6f76a1db-f124-11f0-85c5-a8a1599412c6)
critical
282632FreeBSD : virtualenv -- CWE-59: Improper Link Resolution Before File Access ('Link Following') (fd3855b8-efbc-11f0-9e3f-b0416f0c4c67)
medium
282576FreeBSD : Gitlab -- vulnerabilities (c9b610e9-eebc-11f0-b051-2cf05da270f3)
critical
282575FreeBSD : libtasn1 -- Stack-based buffer overflow (7e63d0dd-eeff-11f0-b135-c01803b56cc4)
high
282564FreeBSD : phpmyfaq -- multiple vulnerabilities (79c3c751-ee20-11f0-b17e-50ebf6bdf8e9)
high
282561FreeBSD : mail/mailpit -- Cross-Site WebSocket Hijacking (d822839e-ee4f-11f0-b53e-0897988a1c07)
medium
282454FreeBSD : chromium -- multiple security fixes (8826fb1c-ebd8-11f0-a15a-a8a1599412c6)
high
282453FreeBSD : security/libsodium -- crypto_core_ed25519_is_valid_point mishandles checks for whether an elliptic curve point is valid (583b63f5-ebae-11f0-939f-47e3830276dd)
medium
281913FreeBSD : mail/mailpit -- Server-Side Request Forgery (df33c83b-eb4f-11f0-a46f-0897988a1c07)
medium
281911FreeBSD : net-mgmt/net-snmp -- Remote Code Execution (snmptrapd) (e2cd20fd-eb10-11f0-a1c0-0050569f0b83)
critical
281642FreeBSD : gstreamer1-plugins-bad -- Out-of-bounds reads in MIDI parser (500cc49c-e93b-11f0-b8d8-4ccc6adda413)
high
280144FreeBSD : Forgejo -- Symbolic Link (Symlink) Following (963f4e9d-e4d5-11f0-984f-b42e991fc52e)
critical
279987FreeBSD : fluidsynth -- Use after free when using DLS files (bf854a37-e180-11f0-ac0c-5404a68ad561)
high