FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
21440FreeBSD : thunderbird -- javascript execution (61349f77-c620-11da-b2fb-000e0c2e438a)
high
21439FreeBSD : clamav -- possible heap overflow in the UPX code (612a34ec-81dc-11da-a043-0002a5c3d308)
high
21438FreeBSD : openvpn -- arbitrary code execution on client through malicious or compromised server (6129fdc7-6462-456d-a3ef-8fc3fbf44d16)
high
21437FreeBSD : gtar -- invalid headers buffer overflow (6107efb9-aae3-11da-aea1-000854d03344)
medium
21436FreeBSD : WebCalendar -- remote file inclusion vulnerability (60f8fe7b-3cfb-11da-baa2-0004614cc33d)
high
21435FreeBSD : openssl -- potential SSL 2.0 rollback (60e26a40-3b25-11da-9484-00123ffe8333)
medium
21434FreeBSD : tor -- diffie-hellman handshake flaw (5fde5c30-0f4e-11da-bc01-000e0c2e438a)
medium
21433FreeBSD : openvpn -- multiple TCP clients connecting with the same certificate at the same time can crash the server (5ad3e437-e527-4514-b9ed-280b2ca1a8c9)
low
21432FreeBSD : phpmyadmin -- XSS vulnerabilities (59ada6e5-676a-11da-99f6-00123ffe8333)
medium
21431FreeBSD : SSH.COM SFTP server -- format string vulnerability (594ad3c5-a39b-11da-926c-0800209adf0e)
medium
21430FreeBSD : mantis -- 'view_filters_page.php' XSS vulnerability (592815da-9eed-11da-b410-000e0c2e438a)
medium
21429FreeBSD : sge -- local root exploit in bundled rsh executable (57a0242d-8c4e-11da-8ddf-000ae42e9b93)
high
21428FreeBSD : phpSysInfo -- XSS vulnerability (50457509-d05e-11d9-9aed-000e0c2e438a)
medium
21427FreeBSD : squid -- Denial Of Service Vulnerability in sslConnectTimeout (4e210d72-1c5c-11da-92ce-0048543d60ce)
medium
21426FreeBSD : kaffeine -- buffer overflow vulnerability (4bfcd857-c628-11da-b2fb-000e0c2e438a)
medium
21425FreeBSD : postgresql -- character conversion and tsearch2 vulnerabilities (486aff57-9ecd-11da-b410-000e0c2e438a)
high
21424FreeBSD : gallery2 -- file disclosure vulnerability (47bdabcf-3cf9-11da-baa2-0004614cc33d)
medium
21423FreeBSD : bugzilla -- multiple vulnerabilities (46f7b598-a781-11da-906a-fde5cdde365e)
high
21422FreeBSD : squid -- possible denial of service condition regarding NTLM authentication (44e7764c-2614-11da-9e1e-c296ac722cb3)
medium
21421FreeBSD : pear-PEAR -- PEAR installer arbitrary code execution vulnerability (44e5f5bd-4d76-11da-bf37-000fb586ba73)
high
21420FreeBSD : nbd-server -- buffer overflow vulnerability (43770b1c-72f6-11da-8c1d-000e0c2e438a)
high
21419FreeBSD : kpdf -- heap based buffer overflow (432bf98d-9e25-11da-b410-000e0c2e438a)
high
21418FreeBSD : cyrus-sasl -- DIGEST-MD5 Pre-Authentication Denial of Service (408f6ebf-d152-11da-962f-000b972eb521)
low
21417FreeBSD : trac -- Wiki Macro Script Insertion Vulnerability (400d9d22-d6c5-11da-a14b-00123ffe8333)
high
21416FreeBSD : openvpn -- potential denial-of-service on servers in TCP mode (3de49331-0dec-422c-93e5-e4719e9869c5)
medium
21415FreeBSD : libxine -- format string vulnerability (3bc5691e-38dd-11da-92f5-020039488e34)
high
21414FreeBSD : libgadu -- multiple vulnerabilities (3b4a6982-0b24-11da-bc08-0001020eed82)
critical
21413FreeBSD : pam_ldap -- authentication bypass vulnerability (38c76fcf-1744-11da-978e-0001020eed82)
high
21412FreeBSD : freeradius -- EAP-MSCHAPv2 Authentication Bypass (37a5c10f-bf56-11da-b0e9-00123ffe8333)
high
21411FreeBSD : kronolith -- XSS vulnerabilities in several of the calendar name and event data fields (36494478-6a88-11da-b96e-000fb586ba73)
high
21410FreeBSD : bind9 -- denial of service (30e4ed7b-1ca6-11da-bc01-000e0c2e438a)
medium
21409FreeBSD : xloadimage -- buffer overflows in NIFF image title handling (2f0cb4bb-416d-11da-99fe-000854d03344)
medium
21408FreeBSD : firefox & mozilla -- command line URL shell command injection (2e28cefb-2aee-11da-a263-0001020eed82)
high
21407FreeBSD : awstats -- arbitrary command execution vulnerability (2df297a2-dc74-11da-a22b-000c6ec775d9)
high
21406FreeBSD : horde -- remote code execution vulnerability in the help viewer (2db97aa6-be81-11da-9b82-0050bf27ba24)
high
21405FreeBSD : phpbb -- multiple vulnerabilities (28c9243a-72ed-11da-8c1d-000e0c2e438a)
high
21404FreeBSD : ghostscript -- insecure temporary file creation vulnerability (27a70a01-5f6c-11da-8d54-000cf18bbe54)
high
21403FreeBSD : clamav -- arbitrary code execution and DoS vulnerabilities (271498a9-2cd4-11da-a263-0001020eed82)
high
21402FreeBSD : linux-realplayer -- buffer overrun (25858c37-bdab-11da-b7d4-00123ffe8333)
high
21401FreeBSD : mnemo -- XSS vulnerabilities in several of the notepad name and note data fields (2506f558-6a8a-11da-b96e-000fb586ba73)
high
21400FreeBSD : xpdf -- disk fill DoS vulnerability (24eee285-09c7-11da-bc08-0001020eed82)
low
21399FreeBSD : phpmyadmin -- register_globals emulation 'import_blacklist' manipulation (23afd91f-676b-11da-99f6-00123ffe8333)
high
21398FreeBSD : plone -- 'member_id' Parameter Portrait Manipulation Vulnerability (22c6b826-cee0-11da-8578-00123ffe8333)
medium
21397FreeBSD : ethereal -- Multiple Protocol Dissector Vulnerabilities (21c223f2-d596-11da-8098-00123ffe8333)
critical
21396FreeBSD : imap-uw -- mailbox name handling remote buffer vulnerability (1f6e2ade-35c2-11da-811d-0050bf27ba24)
high
21395FreeBSD : uim -- privilege escalation vulnerability (1e606080-3293-11da-ac91-020039488e34)
high
21394FreeBSD : ruby -- vulnerability in the safe level settings (1daea60a-4719-11da-b5c6-0004614cc33d)
high
21393FreeBSD : squid -- FTP server response handling denial of service (1c3142a3-4ab2-11da-932d-00055d790c25)
medium
21392FreeBSD : sudo -- arbitrary command execution (1b725079-9ef6-11da-b410-000e0c2e438a)
medium
21391FreeBSD : openvpn -- denial of service: malicious authenticated 'tap' client can deplete server virtual memory (1986449a-8b74-40fa-b7cc-0d8def8aad65)
low