Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
freebsd freebsd 11.2 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2018-17156
In FreeBSD prior to 11.2-STABLE(r340268) and 11.2-RELEASE-p5, due to incorrectly accounting for padding on 64-bit platforms, a buffer underwrite could occur when constructing an ICMP reply packet when using a non-standard value for the net.inet.icmp.quotelen sysctl.
Freebsd Freebsd 11.2
Freebsd Freebsd
10
CVSSv2
CVE-2018-17157
In FreeBSD prior to 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error when handling opcodes can cause memory corruption by sending a specially crafted NFSv4 request. Unprivileged remote users with access to the NFS server may be able to execute arbitrary code.
Freebsd Freebsd
Freebsd Freebsd 11.2
7.8
CVSSv2
CVE-2018-17158
In FreeBSD prior to 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error can occur when handling the client address length field in an NFSv4 request. Unprivileged remote users with access to the NFS server can crash the system by sending a specially crafted NFSv4 r...
Freebsd Freebsd 11.2
Freebsd Freebsd
7.8
CVSSv2
CVE-2018-17159
In FreeBSD prior to 11.2-STABLE(r340854) and 11.2-RELEASE-p5, the NFS server lacks a bounds check in the READDIRPLUS NFS request. Unprivileged remote users with access to the NFS server can cause a resource exhaustion by forcing the server to allocate an arbitrarily large memory ...
Freebsd Freebsd 11.2
Freebsd Freebsd
10
CVSSv2
CVE-2018-17160
In FreeBSD prior to 11.2-STABLE(r341486) and 11.2-RELEASE-p6, insufficient bounds checking in one of the device models provided by bhyve can permit a guest operating system to overwrite memory in the bhyve host possibly permitting arbitrary code execution. A guest OS using a firm...
Freebsd Freebsd 11.2
Freebsd Freebsd
4.9
CVSSv2
CVE-2018-17154
In FreeBSD prior to 11.2-STABLE(r338987), 11.2-RELEASE-p4, and 11.1-RELEASE-p15, due to insufficient memory checking in the freebsd4_getfsstat system call, a NULL pointer dereference can occur. Unprivileged authenticated local users may be able to cause a denial of service.
Freebsd Freebsd 11.1
Freebsd Freebsd 11.2
Freebsd Freebsd
5.6
CVSSv2
CVE-2018-6924
In FreeBSD prior to 11.1-STABLE, 11.2-RELEASE-p3, 11.1-RELEASE-p14, 10.4-STABLE, and 10.4-RELEASE-p12, insufficient validation in the ELF header parser could allow a malicious ELF binary to cause a kernel crash or disclose kernel memory.
Freebsd Freebsd 11.2
Freebsd Freebsd 10.4
Freebsd Freebsd
1 Github repository
4.9
CVSSv2
CVE-2018-6925
In FreeBSD prior to 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of IPv6 protocol control block flags through various failure paths, an unprivileged authenticated local user may be able to cause a...
Freebsd Freebsd 11.2
Freebsd Freebsd
Freebsd Freebsd 10.4
Freebsd Freebsd 11.1
2.1
CVSSv2
CVE-2018-17155
In FreeBSD prior to 11.2-STABLE(r338983), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338984), and 10.4-RELEASE-p13, due to insufficient initialization of memory copied to userland in the getcontext and swapcontext system calls, small amounts of kernel memory may be disclosed...
Freebsd Freebsd 11.2
Freebsd Freebsd 10.4
Freebsd Freebsd 11.1
Freebsd Freebsd
2.1
CVSSv2
CVE-2019-5595
In FreeBSD prior to 11.2-STABLE(r343782), 11.2-RELEASE-p9, 12.0-STABLE(r343781), and 12.0-RELEASE-p3, kernel callee-save registers are not properly sanitized before return from system calls, potentially allowing some kernel data used in the system call to be exposed.
Freebsd Freebsd 11.2
Freebsd Freebsd 12.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48654
CVE-2024-2757
authentication bypass
CVE-2024-3194
CVE-2024-33640
CVE-2024-21111
dos
insecure direct object reference
CVE-2024-21345
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »