FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
137342FreeBSD : znc -- Authenticated users can trigger an application crash (10a24ce0-ab68-11ea-b9b8-641c67a117d8)
medium
137287FreeBSD : zeek -- Various vulnerabilities (9f7ae7ea-da93-4f86-b257-ba76707f6d5d)
high
137286FreeBSD : FreeBSD -- USB HID descriptor parsing error (32c92a75-aa71-11ea-92ab-00163e433440)
medium
137285FreeBSD : Flash Player -- arbitrary code execution (196b31b8-aa9a-11ea-a59a-6451062f0f7a)
critical
137249FreeBSD : FreeRDP -- multiple vulnerabilities (669f3fe8-a07a-11ea-b83e-f0def1f5c5a2)
medium
137216FreeBSD : chromium -- multiple vulnerabilities (a2caf7bd-a719-11ea-a857-e09467587c17)
critical
137169FreeBSD : GnuTLS -- flaw in TLS session ticket key construction (ef5b4f5f-a658-11ea-80d7-001cc0382b2f)
high
137168FreeBSD : malicious URLs may present credentials to wrong server (ced2d47e-8469-11ea-a283-b42e99a1b9c3)
high
137167FreeBSD : malicious URLs can cause git to send a stored credential to wrong server (67765237-8470-11ea-a283-b42e99a1b9c3)
high
137166FreeBSD : Django -- multiple vulnerabilities (597d02ce-a66c-11ea-af32-080027846a02)
medium
137165FreeBSD : Gitlab -- Multiple Vulnerabilities (40bfab16-a68b-11ea-9ea5-001b217b3468)
high
137127FreeBSD : websocket-extensions -- ReDoS vulnerability (ca8327f7-a5a5-11ea-a860-08002728f74c)
high
137126FreeBSD : nghttp2 -- DoS vulnerability (4bb56d2f-a5b0-11ea-a860-08002728f74c)
high
136990FreeBSD : gitea -- multiple vulnerabilities (1650cee2-a320-11ea-a090-08002734b9ed)
high
136957FreeBSD : Gitlab -- Multiple Vulnerabilities (69cf62a8-a0aa-11ea-9ea5-001b217b3468)
high
136956FreeBSD : kaminari -- potential XSS vulnerability (4e6875a2-a126-11ea-b385-08002728f74c)
medium
136955FreeBSD : Sane -- Multiple Vulnerabilities (28481349-7e20-4f80-ae1e-e6bf48d4f17c)
high
136942FreeBSD : powerdns-recursor -- multiple vulnerabilities (f9c5a410-9b4e-11ea-ac3f-6805ca2fa271)
high
136941FreeBSD : sympa -- Denial of service caused by malformed CSRF token (9908a1cc-35ad-424d-be0b-7e56abd5931a)
high
136940FreeBSD : sympa - Security flaws in setuid wrappers (61bc44ce-9f5a-11ea-aff3-f8b156c2bfe9)
high
136853FreeBSD : drupal -- Multiple Vulnerabilities (c5ec57a9-9c2b-11ea-82b8-4c72b94353b5)
high
136852FreeBSD : unbound -- mutliple vulnerabilities (a2cb7c31-9c79-11ea-a9c2-d05099c0ae8c)
high
136851FreeBSD : Apache Tomcat Remote Code Execution via session persistence (676ca486-9c1e-11ea-8b5e-b42e99a1b9c3)
high
136850FreeBSD : piwigo -- Multible Vulnerabilities (436d7f93-9cf0-11ea-82b8-4c72b94353b5)
medium
136849FreeBSD : chromium -- multiple vulnerabilities (38c676bd-9def-11ea-a94c-3065ec8fd3ec)
critical
136758FreeBSD : Zabbix -- Remote code execution (4d11d37e-9a8d-11ea-b9b8-641c67a117d8)
critical
136726FreeBSD : Rails -- multiple vulnerabilities (85fca718-99f6-11ea-bf1d-08002728f74c)
critical
136706FreeBSD : Dovecot -- Multiple vulnerabilities (37d106a8-15a4-483e-8247-fcb68b16eaf8)
high
136689FreeBSD : Rails -- remote code execution vulnerability (ce6db19b-976e-11ea-93c4-08002728f74c)
high
136688FreeBSD : clamav -- multiple vulnerabilities (91ce95d5-cd15-4105-b942-af5ccc7144c1)
high
136687FreeBSD : salt -- multiple vulnerabilities in salt-master process (6bf55af9-973b-11ea-9f2c-38d547003487)
critical
136635FreeBSD : json-c -- integer overflow and out-of-bounds write via a large JSON file (abc3ef37-95d4-11ea-9004-25fadb81abf4)
high
136596FreeBSD : typo3 -- multiple vulnerabilities (59fabdf2-9549-11ea-9448-08002728f74c)
critical
136537FreeBSD : FreeBSD -- Use after free in cryptodev module (9f15c2da-947e-11ea-92ab-00163e433440)
high
136536FreeBSD : FreeBSD -- Memory disclosure vulnerability in libalias (78992249-947c-11ea-92ab-00163e433440)
medium
136535FreeBSD : FreeBSD -- Insufficient packet length validation in libalias (30ce591c-947b-11ea-92ab-00163e433440)
critical
136534FreeBSD : FreeBSD -- Improper checking in SCTP-AUTH shared key update (253486f5-947d-11ea-92ab-00163e433440)
high
136533FreeBSD : FreeBSD -- Insufficient cryptodev MAC key length check (0bfcae0b-947f-11ea-92ab-00163e433440)
high
136444FreeBSD : glpi -- stored XSS (d222241d-91cc-11ea-82b8-4c72b94353b5)
medium
136443FreeBSD : Python -- CRLF injection via the host part of the url passed to urlopen() (ca595a25-91d8-11ea-b470-080027846a02)
medium
136442FreeBSD : qutebrowser -- Reloading page with certificate errors shows a green URL (452d16bb-920d-11ea-9d20-18a6f7016652)
low
136387FreeBSD : Wagtail -- potential timing attack vulnerability (d5fead4f-8efa-11ea-a5c8-08002728f74c)
medium
136386FreeBSD : cacti -- XSS exposure (cd864f1a-8e5a-11ea-b5b4-641c67a117d8)
medium
136385FreeBSD : mailman -- arbitrary content injection vulnerability via options or private archive login pages (88760f4d-8ef7-11ea-a66d-4b2ef158be83)
medium
136384FreeBSD : zeek -- Various vulnerabilities (1a6b7641-aed2-4ba1-96f4-c282d5b09c37)
high
136304FreeBSD : Gitlab -- Multiple Vulnerabilities (e8483115-8b8e-11ea-bdcf-001b217b3468)
high
136303FreeBSD : taglib -- heap-based buffer over-read via a crafted audio file (d3f3e818-8d10-11ea-8668-e0d55e2a8bf9)
medium
136302FreeBSD : Squid -- multiple vulnerabilities (57c1c2ee-7914-11ea-90bf-0800276545c1)
high
136160FreeBSD : ceph14 -- multiple security issues (5b6bc863-89dc-11ea-af8b-00155d0a0200)
medium
136159FreeBSD : vlc -- Multiple vulnerabilities fixed in VLC media player (4a10902f-8a48-11ea-8668-e0d55e2a8bf9)
high