FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
148928FreeBSD : openvpn -- deferred authentication can be bypassed in specific circumstances (efb965be-a2c0-11eb-8956-1951a8617e30)
high
148869FreeBSD : MySQL -- Multiple vulnerabilities (56ba4513-a1be-11eb-9072-d4c9ef517024)
medium
148865FreeBSD : jenkins -- Denial of service vulnerability in bundled Jetty (e358b470-b37d-4e47-bc8a-2cd9adbeb63c)
high
148840FreeBSD : All versions of Apache OpenOffice through 4.1.9 can open non-http(s) hyperlinks. If the link is specifically crafted this could lead to untrusted code execution. (e87c2647-a188-11eb-8806-1c1b0d9ea7e6)
high
148750FreeBSD : Consul -- Multiple vulnerabilities (093a6baf-9f99-11eb-b150-000c292ee6b8)
high
148748FreeBSD : Apache Maven -- multiple vulnerabilities (20006b5f-a0bc-11eb-8ae6-fc4dd43e2b6a)
critical
148704FreeBSD : chromium -- multiple vulnerabilities (f3d86439-9def-11eb-97a0-e09467587c17)
critical
148703FreeBSD : AccountService -- Insufficient path check in user_change_icon_file_authorized_cb() (75aae50b-9e3c-11eb-9bc3-8c164582fbac)
medium
148702FreeBSD : Gitlab -- Vulnerabilities (fb6e53ae-9df6-11eb-ba8c-001b217b3468)
high
148697FreeBSD : mdbook -- XSS in mdBook's search page (40b481a9-9df7-11eb-9bc3-8c164582fbac)
medium
148599FreeBSD : chromium -- multiple vulnerabilities (7c0d71a9-9d48-11eb-97a0-e09467587c17)
high
148537FreeBSD : FreeBSD -- jail escape possible by mounting over jail root (a7b97d26-9792-11eb-b87a-901b0ef719ab)
high
148534FreeBSD : Node.js -- April 2021 Security Releases (c0c1834c-9761-11eb-acfd-0022489ad614)
critical
148530FreeBSD : gitea -- multiple vulnerabilities (8ba23a62-997d-11eb-9f0e-0800278d94f0)
high
148527FreeBSD : FreeBSD -- double free in accept_filter(9) socket configuration interface (f8e1e2a6-9791-11eb-b87a-901b0ef719ab)
high
148526FreeBSD : Gitlab -- Multiple vulnerabilities (56abf87b-96ad-11eb-a218-001b217b3468)
high
148525FreeBSD : ruby -- XML round-trip vulnerability in REXML (dec7e4b6-961a-11eb-9c34-080027f515ea)
high
148522FreeBSD : jenkins -- multiple vulnerabilities (9595d002-edeb-4602-be2d-791cd654247e)
high
148520FreeBSD : syncthing -- crash due to malformed relay protocol message (9ee01e60-6045-43df-98e5-a794007e54ef)
high
148519FreeBSD : curl -- Automatic referer leaks credentials (b1194286-958e-11eb-9c34-080027f515ea)
medium
148518FreeBSD : upnp -- stack overflow vulnerability (79fa9f23-9725-11eb-b530-7085c2fb2c14)
high
148517FreeBSD : curl -- TLS 1.3 session ticket proxy host mixup (d10fc771-958f-11eb-9c34-080027f515ea)
low
148516FreeBSD : clamav -- Multiple vulnerabilites (9ae2c00f-97d0-11eb-8cd6-080027f515ea)
high
148514FreeBSD : python -- Information disclosure via pydoc -p: /getfile?key=path allows to read arbitrary file on the filesystem (f671c282-95ef-11eb-9c34-080027f515ea)
medium
148511FreeBSD : FreeBSD -- Memory disclosure by stale virtual memory mapping (13d37672-9791-11eb-b87a-901b0ef719ab)
medium
148506FreeBSD : xorg-server -- Input validation failures in X server XInput extension (465db5b6-9c6d-11eb-8e8a-bc542f4bd1dd)
high
148505FreeBSD : chromium -- multiple vulnerabilities (bddadaa4-9227-11eb-99c5-e09467587c17)
high
148503FreeBSD : gitea -- multiple vulnerabilities (094fb2ec-9aa3-11eb-83cb-0800278d94f0)
high
148211FreeBSD : nettle 3.7.2 -- fix serious ECDSA signature verify bug (80f9dbd3-8eec-11eb-b9e8-3525f51429a0)
high
148207FreeBSD : samba -- Multiple Vulnerabilities (1f6d97da-8f72-11eb-b3f1-005056a311d1)
high
148200FreeBSD : OpenSSL -- Multiple vulnerabilities (5a668ab3-8d86-11eb-b8d6-d4c9ef517024)
high
148147FreeBSD : gitea -- multiple vulnerabilities (c4d2f950-8c27-11eb-a3ae-0800278d94f0)
high
148140FreeBSD : spamassassin -- Malicious rule configuration (.cf) files can be configured to run system commands (ec04f3d0-8cd9-11eb-bb9f-206a8a720317)
critical
147937FreeBSD : gitea -- quoting in markdown text (1431a25c-8a70-11eb-bd16-0800278d94f0)
high
147900FreeBSD : Gitlab -- Multiple vulnerabilities (50e59056-87f2-11eb-b6a2-001b217b3468)
high
147897FreeBSD : OpenSSH -- Double-free memory corruption in ssh-agent (76b5068c-8436-11eb-9469-080027f515ea)
high
147874FreeBSD : dnsmasq -- cache poisoning vulnerability in certain configurations (5b72b1ff-877c-11eb-bd4f-2f1d57dafe46)
medium
147872FreeBSD : minio -- MITM attack (b073677f-253a-41f9-bf2b-2d16072a25f6)
high
147857FreeBSD : LibreSSL -- use-after-free (eeca52dc-866c-11eb-b8d6-d4c9ef517024)
high
147848FreeBSD : chromium -- multiple vulnerabilities (b81ad6d6-8633-11eb-99c5-e09467587c17)
high
147814FreeBSD : squashfs-tools -- Integer overflow (317487c6-85ca-11eb-80fa-14dae938ec40)
medium
147697FreeBSD : go -- encoding/xml: infinite loop when using xml.NewTokenDecoder with a custom TokenReader; archive/zip: panic when calling Reader.Open (72709326-81f7-11eb-950a-00155d646401)
high
147688FreeBSD : mantis -- multiple vulnerabilities (2dc8927b-54e0-11eb-9342-1c697a013f4b)
high
147680FreeBSD : gitea -- multiple vulnerabilities (502ba001-7ffa-11eb-911c-0800278d94f0)
high
147558FreeBSD : Node.js -- February 2021 Security Releases (2f3cd69e-7dee-11eb-b92e-0022489ad614)
high
147172FreeBSD : Gitlab -- Multiple vulnerabilities (8bf856ea-7df7-11eb-9aad-001b217b3468)
medium
147152FreeBSD : chromium -- multiple vulnerabilities (f00b65d8-7ccb-11eb-b3be-e09467587c17)
high
147148FreeBSD : asterisk -- Crash when negotiating T.38 with a zero port (9e8f0766-7d21-11eb-a2be-001999f8d30b)
medium
147098FreeBSD : jasper -- multiple vulnerabilities (3a469cbc-7a66-11eb-bd3f-08002728f74c)
high
146985FreeBSD : salt -- multiple vulnerabilities (a1e03a3d-7be0-11eb-b392-20cf30e32f6d)
critical