FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
153814FreeBSD : nexus2-oss -- NXRM2 Directory Traversal vulnerability (b2f1f86f-20e6-11ec-a574-080027eedc6a)
high
153813FreeBSD : chromium -- use after free in Portals (b6c875f1-1d76-11ec-ae80-704d7b472482)
critical
153812FreeBSD : cURL -- Multiple vulnerabilities (c9221ec9-17a2-11ec-b335-d4c9ef517024)
critical
153435FreeBSD : seatd-launch -- privilege escalation with SUID (49c35943-0eeb-421c-af4f-78e04582e5fb)
high
153396FreeBSD : chromium -- multiple vulnerabilities (47b571f2-157b-11ec-ae98-704d7b472482)
critical
153285FreeBSD : Matrix clients -- several vulnerabilities (93eb0e48-14ba-11ec-875e-901b0e9408dc)
medium
153222FreeBSD : consul -- rpc: authorize raft requests (376df2f1-1295-11ec-859e-000c292ee6b8)
high
153220FreeBSD : go -- archive/zip: overflow in preallocation check can cause OOM panic (4ea1082a-1259-11ec-b4fa-dd5a552bdd17)
high
153205FreeBSD : Python -- multiple vulnerabilities (145ce848-1165-11ec-ac7e-08002789875b)
high
153181FreeBSD : MPD5 PPPoE Server remotely exploitable crash (f55921aa-10c9-11ec-8647-00e0670f2660)
high
153126FreeBSD : Python -- multiple vulnerabilities (0e561173-0fa9-11ec-a2fa-080027948c12)
high
153083FreeBSD : WeeChat -- Crash when decoding a malformed websocket frame in relay plugin. (65f05b71-0e3c-11ec-b335-d4c9ef517024)
high
153074FreeBSD : py-matrix-synapse -- several vulnerabilities (a67e358c-0bf6-11ec-875e-901b0e9408dc)
low
153073FreeBSD : cyrus-imapd -- multiple-minute daemon hang via input that is mishandled during hash-table interaction (3d915d96-0b1f-11ec-8d9f-080027415d17)
high
153072FreeBSD : Python -- multiple vulnerabilities (032643d7-0ba7-11ec-a689-080027e50e6d)
high
153062FreeBSD : chromium -- multiple vulnerabilities (a7732806-0b2a-11ec-836b-3065ec8fd3ec)
high
153061FreeBSD : Gitlab -- Vulnerabilities (6c22bb39-0a9a-11ec-a265-001b217b3468)
medium
152901FreeBSD : fetchmail -- STARTTLS bypass vulnerabilities (1d6410e8-06c1-11ec-a35d-03ca114d16d6)
medium
152860FreeBSD : FreeBSD -- Remote code execution in ggatec(8) (3e9d2fde-0567-11ec-b69d-4062311215d5)
high
152859FreeBSD : FreeBSD -- Missing error handling in bhyve(8) device models (a6d5d4c1-0564-11ec-b69d-4062311215d5)
high
152857FreeBSD : FreeBSD -- libfetch out of bounds read (d22b336d-0567-11ec-b69d-4062311215d5)
critical
152818FreeBSD : OpenSSL -- multiple vulnerabilities (96811d4a-04ec-11ec-9b84-d4c9ef517024)
critical
152748FreeBSD : gitea -- multiple vulnerabilities (d3180f02-031e-11ec-875f-0800273f11ea)
high
152747FreeBSD : bouncycastle15 -- EC math vulnerability (89d5bca6-0150-11ec-bf0c-080027eedc6a)
medium
152746FreeBSD : gitea -- multiple vulnerabilities (733afd81-01cf-11ec-aec9-0800273f11ea)
high
152745FreeBSD : bouncycastle15 -- bcrypt password checking vulnerability (70e71a24-0151-11ec-bf0c-080027eedc6a)
high
152668FreeBSD : binutils -- excessive debug section size can cause excessive memory consumption in bfd's dwarf2.c read_section() (f4c54b81-bcc8-11eb-a7a6-080027f515ea)
medium
152657FreeBSD : chromium -- multiple vulnerabilities (128deba6-ff56-11eb-8514-3065ec8fd3ec)
high
152571FreeBSD : lynx -- SSL certificate validation error (e9200f8e-fd34-11eb-afb1-c85b76ce9b5a)
high
152570FreeBSD : PostgreSQL server -- Memory disclosure in certain queries (b471130b-fb86-11eb-87db-6cc21735f730)
medium
152491FreeBSD : xtrlock -- xtrlock does not block multitouch events (e80073d7-f8ba-11eb-b141-589cfc007716)
medium
152490FreeBSD : x11/cde -- Local privilege escalation via CDE dtsession (848bdd06-f93a-11eb-9f7d-206a8a720317)
high
152288FreeBSD : go -- net/http: panic due to racy read of persistConn after handler panic (880552c4-f63f-11eb-9d56-7186043316e9)
medium
152227FreeBSD : Gitlab -- Gitlab (1d651770-f4f5-11eb-ba49-001b217b3468)
high
152226FreeBSD : Prosody -- Remote Information Disclosure (5ef14250-f47c-11eb-8f13-5b4de959822e)
high
152207FreeBSD : RabbitMQ -- Denial of Service in AMQP1.0 plugin (b1aa54ae-74cb-42a0-b462-cbb6831c5c50)
critical
152206FreeBSD : tomcat -- Remote Denial of Service in multiple versions (cc7c85d9-f30a-11eb-b12b-fc4dd43e2b6a)
high
152205FreeBSD : tomcat -- JNDI Realm Authentication Weakness in multiple versions (8b571fb2-f311-11eb-b12b-fc4dd43e2b6a)
medium
152204FreeBSD : tomcat -- HTTP request smuggling in multiple versions (d34bef0b-f312-11eb-b12b-fc4dd43e2b6a)
medium
152203FreeBSD : chromium -- multiple vulnerabilities (c3c6c4a3-f47d-11eb-b632-3065ec8fd3ec)
high
152150FreeBSD : fetchmail -- 6.4.19 and older denial of service or information disclosure (cbfd1874-efea-11eb-8fe9-036bd763ff35)
high
152126FreeBSD : redis -- Integer overflow issues with BITFIELD command on 32-bit systems (c561ce49-eabc-11eb-9c3f-0800270512f4)
high
152125FreeBSD : powerdns -- remotely triggered crash (ce79167f-ee1c-11eb-9785-b42e99a1b9c3)
high
152073FreeBSD : pjsip -- Race condition in SSL socket server (92ad12b8-ec09-11eb-aef1-0897988a1c07)
medium
152072FreeBSD : asterisk -- Remote Crash Vulnerability in PJSIP channel driver (ffa364e1-ebf5-11eb-aef1-0897988a1c07)
medium
152071FreeBSD : mosquitto -- NULL pointer dereference (cc553d79-e1f0-4b94-89f2-bacad42ee826)
high
152070FreeBSD : asterisk -- Remote crash when using IAX2 channel driver (fb3455be-ebf6-11eb-aef1-0897988a1c07)
high
152069FreeBSD : asterisk -- pjproject/pjsip: crash when SSL socket destroyed during handshake (53fbffe6-ebf7-11eb-aef1-0897988a1c07)
medium
151972FreeBSD : chromium -- multiple vulnerabilities (76487640-ea29-11eb-a686-3065ec8fd3ec)
critical
151971FreeBSD : cURL -- Multiple vulnerabilities (aa646c01-ea0d-11eb-9b84-d4c9ef517024)
medium