FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
87269FreeBSD : libressl -- NULL pointer dereference (215e740e-9c56-11e5-90e7-b499baebfeaf)
high
87229FreeBSD : Salt -- information disclosure (e6b974ab-9d35-11e5-8f5c-002590263bf5)
low
87228FreeBSD : libraw -- index overflow in smal_decode_segment (db04bf07-9cc8-11e5-8c2b-c335fa8985d7)
critical
87227FreeBSD : KeePassX -- information disclosure (918a5d1f-9d40-11e5-8f5c-002590263bf5)
high
87226FreeBSD : passenger -- client controlled header overwriting (84fdd1bb-9d37-11e5-8f5c-002590263bf5)
low
87225FreeBSD : libraw -- memory objects not properly initialized (6bc6eed2-9cca-11e5-8c2b-c335fa8985d7)
critical
87213FreeBSD : openssl -- multiple vulnerabilities (4c8d1d72-9b38-11e5-aece-d050996490d0)
high
87188FreeBSD : PHPmailer -- SMTP injection vulnerability (8a90dc87-89f9-11e5-a408-00248c0c745d)
high
87178FreeBSD : ffmpeg -- multiple vulnerabilities (b0da85af-21a3-4c15-a137-fe9e4bc86002)
high
87177FreeBSD : chromium -- multiple vulnerabilities (548f74bd-993c-11e5-956b-00262d5ed8ee)
critical
87176FreeBSD : piwik -- multiple vulnerabilities (11351c82-9909-11e5-a9c8-14dae9d5a9d2)
high
87165FreeBSD : cyrus-imapd -- integer overflow in the start_octet addition (d62ec98e-97d8-11e5-8c0e-080027b00c2e)
high
87114FreeBSD : django -- information leak vulnerability (11c52bc6-97aa-11e5-b8df-14dae9d210b8)
medium
87002FreeBSD : kibana4 -- CSRF vulnerability (fb2475c2-9125-11e5-bd18-002590263bf5)
medium
87001FreeBSD : libxslt -- DoS vulnerability due to type confusing error (ecc268f2-8fc2-11e5-918c-bcaec565249c)
medium
87000FreeBSD : libxml2 -- multiple vulnerabilities (e5423caf-8fb8-11e5-918c-bcaec565249c)
high
86999FreeBSD : a2ps -- format string vulnerability (e359051d-90bd-11e5-bd18-002590263bf5)
high
86955FreeBSD : mozilla -- multiple vulnerabilities (9d04936c-75f1-4a2c-9ade-4c1708be5df9)
critical
86922FreeBSD : gdm -- lock screen bypass when holding escape key (68847b20-8ddc-11e5-b69c-c86000169601)
high
86889FreeBSD : strongswan -- authentication bypass vulnerability in the eap-mschapv2 plugin (3eb0ccc2-8c6a-11e5-8519-005056ac623e)
medium
86879FreeBSD : moodle -- multiple vulnerabilities (82b3ca2a-8c07-11e5-bd18-002590263bf5)
high
86878FreeBSD : flash -- multiple vulnerabilities (547fbd98-8b1f-11e5-b48b-bcaec565249c)
critical
86877FreeBSD : xen-kernel -- CPU lockup during exception delivery (2cabfbab-8bfb-11e5-bd18-002590263bf5)
medium
86876FreeBSD : libpng buffer overflow in png_set_PLTE (1886e195-8b87-11e5-90e7-b499baebfeaf)
high
86860FreeBSD : chromium -- multiple vulnerabilities (f0b9049f-88c4-11e5-aed7-00262d5ed8ee)
high
86859FreeBSD : jenkins -- remote code execution via unsafe deserialization (b665668a-91db-4f13-8113-9e4b5b0e47f7)
high
86858FreeBSD : MySQL - Multiple vulnerabilities (851a0eea-88aa-11e5-90e7-b499baebfeaf)
medium
86857FreeBSD : owncloudclient -- Improper validation of certificates when using self-signed certificates (71af4ded-8864-11e5-af1b-001999f8d30b)
medium
86842FreeBSD : xen-kernel -- leak of main per-domain vcpu pointer array (fc1f8795-881d-11e5-ab94-002590263bf5)
medium
86841FreeBSD : xen-kernel -- some pmu and profiling hypercalls log without rate limiting (e4848ca4-8820-11e5-ab94-002590263bf5)
low
86840FreeBSD : xen-kernel -- leak of per-domain profiling-related vcpu pointer array (e3792855-881f-11e5-ab94-002590263bf5)
medium
86839FreeBSD : xen-tools -- populate-on-demand balloon size inaccuracy can crash guests (c0e76d33-8821-11e5-ab94-002590263bf5)
low
86838FreeBSD : xen-kernel -- Long latency populate-on-demand operation is not preemptible (83350009-881e-11e5-ab94-002590263bf5)
medium
86837FreeBSD : libvpx -- buffer overflow in vp9_init_context_buffers (6ca7eddd-d436-486a-b169-b948436bcf14)
medium
86836FreeBSD : xen-kernel -- Uncontrolled creation of large page mappings by PV guests (3d9f6260-881d-11e5-ab94-002590263bf5)
high
86835FreeBSD : xen-tools -- libxl fails to honour readonly flag on disks with qemu-xen (301b04d7-881c-11e5-ab94-002590263bf5)
low
86834FreeBSD : p5-HTML-Scrubber -- XSS vulnerability (2f7f4db2-8819-11e5-ab94-002590263bf5)
low
86806FreeBSD : powerdns -- Denial of Service (56665ccb-8723-11e5-9b13-14dae9d210b8)
medium
86805FreeBSD : PuTTY -- memory corruption in terminal emulator's erase character handling (0cb0afd9-86b8-11e5-bf60-080027ef73ec)
medium
86775FreeBSD : OpenOffice 4.1.1 -- multiple vulnerabilities (18b3c61b-83de-11e5-905b-ac9e174be3af)
medium
86686FreeBSD : codeigniter -- multiple vulnerabilities (698403a7-803d-11e5-ab94-002590263bf5)
high
86645FreeBSD : openafs -- information disclosure (017a493f-7db6-11e5-a762-14dae9d210b8)
medium
86621FreeBSD : xscreensaver - lock bypass (4b9393b8-7c0c-11e5-a010-080027ddead3)
low
86620FreeBSD : lldpd -- Buffer overflow/Denial of service (2a4a112a-7c1b-11e5-bd77-0800275369e2)
critical
86593FreeBSD : Joomla! -- Core - XSS Vulnerability (f8c37915-7ac5-11e5-b35a-002590263bf5)
medium
86592FreeBSD : Joomla! -- Core - CSRF Protection vulnerabilities (ec2d1cfd-7ac5-11e5-b35a-002590263bf5)
medium
86591FreeBSD : Joomla! -- Core - Open Redirect vulnerability (deaba148-7ac5-11e5-b35a-002590263bf5)
medium
86590FreeBSD : Joomla! -- Core - Remote File Execution/Denial of Service vulnerabilities (cec4d01a-7ac5-11e5-b35a-002590263bf5)
high
86589FreeBSD : Joomla! -- Core - Unauthorized Login vulnerability (beb3d5fc-7ac5-11e5-b35a-002590263bf5)
high
86588FreeBSD : Joomla! -- Core - XSS Vulnerability (adbb32d9-7ac5-11e5-b35a-002590263bf5)
medium