FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
272041FreeBSD : ISC KEA -- Invalid characters cause assert (55c4e822-b4e4-11f0-8438-001b217e4ee5)
high
272040FreeBSD : Erlang - Absolute Path in Zip Module (237f4f57-b50f-11f0-ae9b-b42e991fc52e)
medium
272037FreeBSD : py-social-auth-app-django -- Unsafe account association (3116b6f3-b433-11f0-82ac-901b0edee044)
medium
272021FreeBSD : SQLite -- CWE-190 Integer Overflow or Wraparound (c5889223-b4e1-11f0-ae9b-b42e991fc52e)
medium
271952FreeBSD : privatebin - Missing HTML sanitisation of attached filename in file size hint enabling persistent XSS (a8dacd4b-b416-11f0-9f23-ecf4bbefc954)
medium
271946FreeBSD : SQLite -- Integer Overflow vulnerability (2cd61f76-b41b-11f0-bf21-b42e991fc52e)
high
271784FreeBSD : chromium -- security fix (823b4e48-b340-11f0-b3f7-a8a1599412c6)
critical
271783FreeBSD : strongSwan -- Heap-based buffer overflow in eap-mschapv2 plugin due to improper handling of failure request packets (1f1cf967-b35c-11f0-bce7-bc2411002f50)
critical
271377FreeBSD : unbound -- Possible domain hijacking via promiscuous records in the authority section (ea1c485f-b025-11f0-bce7-bc2411002f50)
high
271364FreeBSD : RT -- CSV injection (b374df95-afa8-11f0-b4c8-792b26d8a051)
critical
271363FreeBSD : RT -- XSS via calendar invitations (269c2de7-afaa-11f0-b4c8-792b26d8a051)
medium
271254FreeBSD : Gitlab -- vulnerabilities (f741ea93-af61-11f0-98b5-2cf05da270f3)
medium
271228FreeBSD : FreeBSD -- SO_REUSEPORT_LB breaks connect(2) for UDP sockets (114cc98b-afad-11f0-af12-bc241121aa0a)
medium
271198FreeBSD : Mozilla -- spoofing (1e8a6581-ab7b-11f0-b961-b42e991fc52e)
high
271197FreeBSD : Mozilla -- integer overflow (c7383de4-ab7a-11f0-b961-b42e991fc52e)
high
271196FreeBSD : minio -- Privilege Escalation via Session Policy Bypass in Service Accounts and STS (511f5aac-ab46-11f0-9446-f02f7497ecda)
high
271195FreeBSD : Mozilla -- Memory safety bugs (20840621-ab82-11f0-b961-b42e991fc52e)
high
271194FreeBSD : Mozilla -- Memory safety bugs (7b9a8247-ab7b-11f0-b961-b42e991fc52e)
high
271178FreeBSD : chromium -- multiple security fixes (60ddafd2-ae9e-11f0-b3f7-a8a1599412c6)
critical
271177FreeBSD : Mongodb -- Use-after-free in the MongoDB (cdf2abf7-ae83-11f0-b5fb-b42e991fc52e)
medium
271175FreeBSD : chromium -- multiple security fixes (88f34edb-ae9b-11f0-b3f7-a8a1599412c6)
critical
270833FreeBSD : Hidden/Protected custom variables are prone to filter enumeration (4553e4b3-addf-11f0-9b8d-40a6b7c3b3b8)
medium
270777FreeBSD : Mozilla -- XSS in sites without content-type header (4355ce42-ad06-11f0-b2aa-b42e991fc52e)
medium
270776FreeBSD : Mozilla -- Memory safety bugs (247bc43f-ad02-11f0-b2aa-b42e991fc52e)
high
270775FreeBSD : Mozilla -- JavaScript Object property overriding (fff839db-ad04-11f0-b2aa-b42e991fc52e)
medium
270774FreeBSD : Mozilla -- Out-of-bounds reads and writes (b760c618-ad02-11f0-b2aa-b42e991fc52e)
critical
270773FreeBSD : Mozilla -- Memory disclosure (f7047dfc-ad02-11f0-b2aa-b42e991fc52e)
critical
270772FreeBSD : Mozilla -- Use-after-free (85c17eb8-ad02-11f0-b2aa-b42e991fc52e)
critical
270744FreeBSD : Mozilla -- Memory safety bugs (ed132d42-ab81-11f0-b961-b42e991fc52e)
critical
270743FreeBSD : Mozilla -- Information disclosure (4fe6f98e-ab7b-11f0-b961-b42e991fc52e)
medium
270742FreeBSD : Firefox -- Sandbox escape (f3550d26-ab7d-11f0-b961-b42e991fc52e)
high
270335FreeBSD : zeek -- information leak vulnerability (50fd6a75-0587-4987-bef2-bb933cd78ea1)
high
270330FreeBSD : Firefox -- JIT miscompilation in the JavaScript Engine (6dd86212-a859-11f0-bd95-b42e991fc52e)
high
270078FreeBSD : Gitlab -- vulnerabilities (87fdaf3c-a5b5-11f0-98b5-2cf05da270f3)
high
269959FreeBSD : Mailpit -- Performance information disclosure (0b5145e9-a500-11f0-a136-10ffe07f9334)
high
269695FreeBSD : Mozilla -- mitigation bypass vulnerability (a240c31b-a394-11f0-9617-b42e991fc52e)
medium
269694FreeBSD : Mozilla -- Incorrect boundary conditions (f60c790a-a394-11f0-9617-b42e991fc52e)
medium
266743FreeBSD : Mozilla -- Sandbox escape due to use-after-free (f2de2f64-a2cc-11f0-8402-b42e991fc52e)
high
266742FreeBSD : mongodb -- Certain Queries May Cause MongoDB Server to Crash (92880bca-a2c9-11f0-8402-b42e991fc52e)
medium
266741FreeBSD : mongodb -- Malformed $group Query May Cause MongoDB Server to Crash (a5395e02-a2ca-11f0-8402-b42e991fc52e)
medium
266740FreeBSD : mongodb -- MongoDB may be susceptible to Invariant Failure in Transactions due Upsert Operation (6d16b410-a2ca-11f0-8402-b42e991fc52e)
high
266739FreeBSD : mongodb -- MongoDB Server router will crash when incorrect lsid is set on a sharded query (4329e3bd-a2ca-11f0-8402-b42e991fc52e)
medium
266607FreeBSD : mongodb -- MongoDB Server access to non-initialized memory (a9dc3c61-a20f-11f0-91d8-b42e991fc52e)
critical
266601FreeBSD : redis,valkey -- Running Lua function as a different user (0258d37d-a118-11f0-9446-f02f7497ecda)
medium
266600FreeBSD : qt6-webengine -- Multiple vulnerabilities (c27c05a7-a0c8-11f0-8471-4ccc6adda413)
high
266599FreeBSD : redis,valkey -- Out of bound read due to a bug in LUA (0af2f18e-a119-11f0-9446-f02f7497ecda)
medium
266598FreeBSD : redis,valkey -- Lua Use-After-Free may lead to remote code execution (17e85cae-a115-11f0-9446-f02f7497ecda)
critical
266597FreeBSD : redis,valkey -- Lua library commands may lead to integer overflow and potential RCE (f6b8de04-a116-11f0-9446-f02f7497ecda)
high
266471FreeBSD : fetchmail -- potential crash when authenticating to SMTP server (21fba35e-a05f-11f0-a8b8-a1ef31191bc1)
medium
266470FreeBSD : chromium -- multiple security fixes (169a87de-a157-4558-9f97-a7395a9ae144)
high