FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
149514FreeBSD : PostgreSQL -- Memory disclosure in partitioned-table UPDATE ... RETURNING (76e0bb86-b4cb-11eb-b9c9-6cc21735f730)
high
149512FreeBSD : PostgreSQL server -- two security issues (62da9702-b4cc-11eb-b9c9-6cc21735f730)
high
149493FreeBSD : Prosody -- multiple vulnerabilities (fc75570a-b417-11eb-a23d-c7ab331fd711)
high
149489FreeBSD : ImageMagick7 -- multiple vulnerabilities (a7c60af1-b3f1-11eb-a5f7-a0f3c100ae18)
high
149483FreeBSD : ImageMagick6 -- multiple vulnerabilities (3e0ca488-b3f6-11eb-a5f7-a0f3c100ae18)
high
149464FreeBSD : Pillow -- multiple vulnerabilities (f947aa26-b2f9-11eb-a5f7-a0f3c100ae18)
critical
149425FreeBSD : chromium -- multiple vulnerabilities (3cac007f-b27e-11eb-97a0-e09467587c17)
high
149424FreeBSD : py-matrix-synapse -- malicious push rules may be used for a denial of service attack. (278561d7-b261-11eb-b788-901b0e934d69)
medium
149374FreeBSD : cyrus-imapd -- Remote authenticated users could bypass intended access restrictions on certain server annotations. (12156786-b18a-11eb-8cba-080027b00c2e)
medium
149361FreeBSD : FLAC -- out-of-bounds read (49346de2-b015-11eb-9bdf-f8b156b6dcc8)
medium
149360FreeBSD : Rails -- multiple vulnerabilities (f7a00ad7-ae75-11eb-8113-08002728f74c)
high
149346FreeBSD : go -- net/http: ReadRequest can stack overflow due to recursion with very large headers (7f242313-aea5-11eb-8151-67f74cf7c704)
medium
149343FreeBSD : Ansible -- Insecure Temporary File (50ec3a01-ad77-11eb-8528-8c164582fbac)
medium
149341FreeBSD : Django -- multiple vulnerabilities (1766359c-ad6e-11eb-b2a4-080027e50e6d)
high
149267FreeBSD : Python -- multiple vulnerabilities (bffa40db-ad50-11eb-86b8-080027846a02)
high
149249FreeBSD : RDoc -- command injection vulnerability (57027417-ab7f-11eb-9596-080027f515ea)
high
149247FreeBSD : redis -- multiple vulnerabilities (1606b03b-ac57-11eb-9bdd-8c164567ca3c)
high
149234FreeBSD : sympa -- Unauthorised full access via SOAP API due to illegal cookie (0add6e6b-6883-11eb-b0cb-f8b156c2bfe9)
low
149231FreeBSD : samba -- negative idmap cache entries vulnerability (6f33d38b-aa18-11eb-b3f1-005056a311d1)
medium
149079FreeBSD : Gitlab -- Vulnerabilities (518a119c-a864-11eb-8ddb-001b217b3468)
high
149073FreeBSD : sympa -- Inappropriate use of the cookie parameter can be a security threat. This parameter may also not provide sufficient security. (31a7ffb1-a80a-11eb-b159-f8b156c2bfe9)
high
149071FreeBSD : Carrierwave -- Multiple vulnerabilities (76a07f31-a860-11eb-8ddb-001b217b3468)
high
149039FreeBSD : chromium -- multiple vulnerabilities (9fba80e0-a771-11eb-97a0-e09467587c17)
high
149013FreeBSD : sbibboleth-sp -- denial of service vulnerability (e4403051-a667-11eb-b9c9-6cc21735f730)
high
148931FreeBSD : chromium -- multiple vulnerabilities (cb13a765-a277-11eb-97a0-e09467587c17)
critical
148930FreeBSD : zeek -- NULL pointer dereference vulnerability (bc83cfc9-42cf-4b00-97ad-d352ba0c5e2b)
high
148928FreeBSD : openvpn -- deferred authentication can be bypassed in specific circumstances (efb965be-a2c0-11eb-8956-1951a8617e30)
high
148869FreeBSD : MySQL -- Multiple vulnerabilities (56ba4513-a1be-11eb-9072-d4c9ef517024)
high
148865FreeBSD : jenkins -- Denial of service vulnerability in bundled Jetty (e358b470-b37d-4e47-bc8a-2cd9adbeb63c)
high
148840FreeBSD : All versions of Apache OpenOffice through 4.1.9 can open non-http(s) hyperlinks. If the link is specifically crafted this could lead to untrusted code execution. (e87c2647-a188-11eb-8806-1c1b0d9ea7e6)
high
148750FreeBSD : Consul -- Multiple vulnerabilities (093a6baf-9f99-11eb-b150-000c292ee6b8)
high
148748FreeBSD : Apache Maven -- multiple vulnerabilities (20006b5f-a0bc-11eb-8ae6-fc4dd43e2b6a)
critical
148704FreeBSD : chromium -- multiple vulnerabilities (f3d86439-9def-11eb-97a0-e09467587c17)
critical
148703FreeBSD : AccountService -- Insufficient path check in user_change_icon_file_authorized_cb() (75aae50b-9e3c-11eb-9bc3-8c164582fbac)
medium
148702FreeBSD : Gitlab -- Vulnerabilities (fb6e53ae-9df6-11eb-ba8c-001b217b3468)
high
148697FreeBSD : mdbook -- XSS in mdBook's search page (40b481a9-9df7-11eb-9bc3-8c164582fbac)
medium
148599FreeBSD : chromium -- multiple vulnerabilities (7c0d71a9-9d48-11eb-97a0-e09467587c17)
high
148537FreeBSD : FreeBSD -- jail escape possible by mounting over jail root (a7b97d26-9792-11eb-b87a-901b0ef719ab)
high
148534FreeBSD : Node.js -- April 2021 Security Releases (c0c1834c-9761-11eb-acfd-0022489ad614)
critical
148530FreeBSD : gitea -- multiple vulnerabilities (8ba23a62-997d-11eb-9f0e-0800278d94f0)
high
148527FreeBSD : FreeBSD -- double free in accept_filter(9) socket configuration interface (f8e1e2a6-9791-11eb-b87a-901b0ef719ab)
high
148526FreeBSD : Gitlab -- Multiple vulnerabilities (56abf87b-96ad-11eb-a218-001b217b3468)
high
148525FreeBSD : ruby -- XML round-trip vulnerability in REXML (dec7e4b6-961a-11eb-9c34-080027f515ea)
high
148522FreeBSD : jenkins -- multiple vulnerabilities (9595d002-edeb-4602-be2d-791cd654247e)
high
148520FreeBSD : syncthing -- crash due to malformed relay protocol message (9ee01e60-6045-43df-98e5-a794007e54ef)
high
148519FreeBSD : curl -- Automatic referer leaks credentials (b1194286-958e-11eb-9c34-080027f515ea)
medium
148518FreeBSD : upnp -- stack overflow vulnerability (79fa9f23-9725-11eb-b530-7085c2fb2c14)
high
148517FreeBSD : curl -- TLS 1.3 session ticket proxy host mixup (d10fc771-958f-11eb-9c34-080027f515ea)
low
148516FreeBSD : clamav -- Multiple vulnerabilites (9ae2c00f-97d0-11eb-8cd6-080027f515ea)
high
148514FreeBSD : python -- Information disclosure via pydoc -p: /getfile?key=path allows to read arbitrary file on the filesystem (f671c282-95ef-11eb-9c34-080027f515ea)
medium