FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
184466FreeBSD : h2o -- uninitialised memory access in HTTP3 (1d3677a8-9143-42d8-84a3-0585644dff4b)
medium
184465FreeBSD : opengrok -- Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise OpenGrok. (1135e939-62b4-11ec-b8e2-1c1b0d9ea7e6)
high
184464FreeBSD : p7zip -- usage of uninitialized memory (942fff11-5ac4-11ec-89ea-c85b76ce9b5a)
high
184463FreeBSD : cyrus-sasl -- Fix off by one error (a80c6273-988c-11ec-83ac-080027415d17)
high
184462FreeBSD : OpenDMARC - Remote denial of service (ede832bf-6576-11ec-a636-000c29061ce6)
high
184461FreeBSD : Grafana -- Stored XSS in TraceView panel (e7841611-b808-11ed-b695-6c3be5272acd)
medium
184460FreeBSD : tcpslice -- heap-based use-after-free in extract_slice() (61f416ff-aa00-11ec-b439-000d3a450398)
medium
184440FreeBSD : vorbistools -- heap buffer overflow in oggenc (a1a1f81c-7c13-11ee-bcf1-f8b156b6dcc8)
high
184385FreeBSD : PptiPNG -- Global-buffer-overflow (fe7ac70a-792b-11ee-bf9a-a04a5edf46d9)
high
184384FreeBSD : chromium -- multiple vulnerabilities (a1e27775-7a61-11ee-8290-a8a1599412c6)
high
184318FreeBSD : phpmyfaq -- multiple vulnerabilities (4f370c80-79ce-11ee-be8e-589cfc0f81b0)
critical
184185FreeBSD : open-vm-tools -- Multiple vulnerabilities (d2505ec7-78ea-11ee-9131-6f01853956d5)
high
184132FreeBSD : Gitlab -- Vulnerabilities (a612c25f-788a-11ee-8d57-001b217b3468)
high
183983FreeBSD : chromium -- multiple vulnerabilities (db33e250-74f7-11ee-8290-a8a1599412c6)
high
183982FreeBSD : zeek -- potential DoS vulnerabilities (386a14bb-1a21-41c6-a2cf-08d79213379b)
high
183885FreeBSD : xorg-server -- Multiple vulnerabilities (9e2fdfc7-e237-4393-9fa5-2d50908c66b3)
high
183878FreeBSD : squid -- Multiple vulnerabilities (a8fb8e3a-730d-11ee-ab61-b42e991fc52e)
high
183822FreeBSD : OpenSSL -- potential loss of confidentiality (4a4712ae-7299-11ee-85eb-84a93843eb75)
high
183755FreeBSD : MySQL -- Multiple vulnerabilities (22df5074-71cd-11ee-85eb-84a93843eb75)
critical
183489FreeBSD : Request Tracker -- multiple vulnerabilities (e14b9870-62a4-11ee-897b-000bab9f87f1)
high
183450FreeBSD : electron{25,26} -- Use after free in Site Isolation (9000591b-483b-45ac-9c87-b3df3a4198ec)
high
183404FreeBSD : Apache httpd -- Multiple vulnerabilities (f923205f-6e66-11ee-85eb-84a93843eb75)
high
183386FreeBSD : moonlight-embedded -- multiple vulnerabilities (f8c2f741-6be1-11ee-b33a-a04a5edf46d9)
high
183320FreeBSD : Roundcube -- XSS vulnerability in SVG (d2ad7647-6dd9-11ee-85eb-84a93843eb75)
high
183319FreeBSD : jenkins -- HTTP/2 denial of service vulnerability in bundled Jetty (1ee26d45-6ddb-11ee-9898-00e081b7aa2d)
high
183309FreeBSD : redis -- Possible bypassing Unix socket permissions (8706e097-6db7-11ee-8744-080027f5fec9)
low
183090FreeBSD : libcue -- out-of-bounds array access (ae0ee356-6ae1-11ee-bfb6-8c164567ca3c)
high
183088FreeBSD : traefik -- Resource exhaustion by malicious HTTP/2 client (7a1b2624-6a89-11ee-af06-5404a68ad561)
high
182981FreeBSD : x11/libXpm multiple vulnerabilities (199cdb4d-690d-11ee-9ed0-001fc69cd6dc)
medium
182980FreeBSD : 11/libX11 multiple vulnerabilities (bd92f1ab-690c-11ee-9ed0-001fc69cd6dc)
high
182960FreeBSD : chromium -- multiple vulnerabilities (07ee8c14-68f1-11ee-8290-a8a1599412c6)
high
182954FreeBSD : electron25 -- Use after free in extensions vulnerability (4281b712-ad6b-4c21-8f66-619a9150691f)
high
182913FreeBSD : curl -- SOCKS5 heap buffer overflow (d6c19e8c-6806-11ee-9464-b42e991fc52e)
critical
182842FreeBSD : h2o -- HTTP/2 Rapid Reset attack vulnerability (bf545001-b96d-42e4-9d2e-60fdee204a43)
high
182574FreeBSD : Django -- multiple vulnerabilities (4f254817-6318-11ee-b2ff-080027de9982)
high
182560FreeBSD : libspf2 -- Integer Underflow Remote Code Execution (915855ad-283d-4597-b01e-e0bf611db78b)
high
182515FreeBSD : chromium -- type confusion in v8 (4e45c45b-629e-11ee-8290-a8a1599412c6)
high
182477FreeBSD : FreeBSD -- msdosfs data disclosure (fefcd340-624f-11ee-8e38-002590c1f29c)
medium
182476FreeBSD : FreeBSD -- arm64 boot CPUs may lack speculative execution protections (162a675b-6251-11ee-8e38-002590c1f29c)
medium
182475FreeBSD : FreeBSD -- copy_file_range insufficient capability rights check (e261e71c-6250-11ee-8e38-002590c1f29c)
high
182415FreeBSD : mediawiki -- multiple vulnerabilities (e59fed96-60da-11ee-9102-000c29de725b)
high
182378FreeBSD : Remote Code Execution via web-accessible composer (33922b84-5f09-11ee-b63d-0897988a1c07)
high
182191FreeBSD : chromium -- multiple vulnerabilities (6d9c6aae-5eb1-11ee-8290-a8a1599412c6)
high
182190FreeBSD : electron{22,24,25} -- Heap buffer overflow in vp8 encoding in libvpx (2bcd6ba4-d8e2-42e5-9033-b50b722821fb)
high
182168FreeBSD : Gitlab -- vulnerabilities (6e0ebb4a-5e75-11ee-a365-001b217b3468)
high
182077FreeBSD : xrdp -- Improper handling of session establishment errors allows bypassing OS-level session restrictions (c9ff1150-5d63-11ee-bbae-1c61b4739ac9)
medium
182076FreeBSD : xrdp -- unchecked access to font glyph info (af065e47-5d62-11ee-bbae-1c61b4739ac9)
medium
181924FreeBSD : routinator -- Possible path traversal when storing RRDP responses (ea9d1fd2-5d24-11ee-8507-b42e991fc52e)
medium
181837FreeBSD : jenkins -- multiple vulnerabilities (402fccd0-5b6d-11ee-9898-00e081b7aa2d)
high
181830FreeBSD : Mailpit affected by vulnerability in included go markdown module (732282a5-5a10-11ee-bca0-001999f8d30b)
high