FreeBSD Local Security Checks Family for Nessus

IDNameSeverity
51521FreeBSD : sudo -- local privilege escalation (908f4cf2-1e8b-11e0-a587-001b77d09812)
medium
51520FreeBSD : subversion -- multiple DoS (71612099-1e93-11e0-a587-001b77d09812)
medium
51508FreeBSD : php -- corruption of $GLOBALS and $this variables via extract() method (f3148a05-0fa7-11e0-becc-0022156e8794)
high
51507FreeBSD : php-filter -- Denial of Service (c623f058-10e7-11e0-becc-0022156e8794)
medium
51506FreeBSD : php -- open_basedir bypass (73634294-0fa7-11e0-becc-0022156e8794)
medium
51505FreeBSD : php -- NULL byte poisoning (3761df02-0f9c-11e0-becc-0022156e8794)
medium
51504FreeBSD : php-zip -- multiple Denial of Service vulnerabilities (2a41233d-10e7-11e0-becc-0022156e8794)
medium
51503FreeBSD : php-imap -- Denial of Service (1a0704e7-0edf-11e0-becc-0022156e8794)
medium
51450FreeBSD : php -- multiple vulnerabilities (2b6ed5c7-1a7f-11e0-b61d-000c29d1636d)
medium
51446FreeBSD : exim -- local privilege escalation (e4fcf020-0447-11e0-becc-0022156e8794)
medium
51420FreeBSD : mediawiki -- Clickjacking vulnerabilities (e177c410-1943-11e0-9d1c-000c29ba66d2)
high
51404FreeBSD : webkit-gtk2 -- Multiple vulnerabilities (06a12e26-142e-11e0-bea2-0015f2db7bde)
high
51393FreeBSD : django -- multiple vulnerabilities (14a37474-1383-11e0-8a58-00215c6a37bb)
medium
51387FreeBSD : Drupal Views plugin -- XSS (ff8b419a-0ffa-11e0-becc-0022156e8794)
medium
51379FreeBSD : redmine -- multiple vulnerabilities (584c506d-0e98-11e0-b59b-0050569b2d21)
high
51363FreeBSD : tor -- remote crash and potential remote code execution (4bd33bc5-0cd6-11e0-bfa4-001676740879)
critical
51194FreeBSD : YUI JavaScript library -- JavaScript injection exploits in Flash components (d560b346-08a2-11e0-bcca-0050568452ac)
medium
51132FreeBSD : mozilla -- multiple vulnerabilities (1d8ff4a2-0445-11e0-8e32-000f20797ede)
high
51104FreeBSD : krb5 -- unkeyed PAC checksum handling vulnerability (9f971cea-03f5-11e0-bf50-001a926c7637)
low
51103FreeBSD : krb5 -- client impersonation vulnerability (4ccbd40d-03f7-11e0-bf50-001a926c7637)
low
51102FreeBSD : krb5 -- RFC 3961 key-derivation checksum handling vulnerability (1d193bba-03f6-11e0-bf50-001a926c7637)
medium
51101FreeBSD : krb5 -- multiple checksum handling vulnerabilities (11bbccbc-03ee-11e0-bcdb-001fc61c2a55)
low
51100FreeBSD : krb5 -- multiple checksum handling vulnerabilities (0d57c1d9-03f4-11e0-bf50-001a926c7637)
low
51069FreeBSD : chromium -- multiple vulnerabilities (6887828f-0229-11e0-b84d-00262d5ed8ee)
critical
50980FreeBSD : proftpd -- Compromised source packages backdoor (ed7fa1b4-ff59-11df-9759-080027284eaa)
high
50838FreeBSD : phpMyAdmin -- XSS attack in database search (753f8185-5ba9-42a4-be02-3f55ee580093)
medium
50815FreeBSD : isc-dhcp-server -- Empty link-address denial of service (f154a3c7-f7f4-11df-b617-00e0815b8da8)
medium
50701FreeBSD : horde-base -- XSS: VCARD attachments vulnerability (a3314314-f731-11df-a757-0011098ad87f)
high
50700FreeBSD : proftpd -- remote code execution vulnerability (533d20e7-f71f-11df-9ae1-000bcdf0a03b)
critical
50699FreeBSD : OpenTTD -- Denial of service (server/client) via invalid read (373e412e-f748-11df-96cd-0015f2db7bde)
medium
50627FreeBSD : openssl -- TLS extension parsing race condition (3042c33a-f237-11df-9d02-0018fe623f2b)
high
50505FreeBSD : linux-flashplugin -- multiple vulnerabilities (76b597e4-e9c6-11df-9e10-001b2134ef46)
high
50500FreeBSD : Wireshark -- DoS in the BER-based dissectors (b2eaa7c2-e64a-11df-bc65-0022156e8794)
medium
50470FreeBSD : OTRS -- Multiple XSS and denial of service vulnerabilities (96e776c7-e75c-11df-8f26-00151735203a)
low
50469FreeBSD : Mailman -- XSS in web interface (4ab29e12-e787-11df-adfa-00e0815b8da8)
low
50404FreeBSD : mozilla -- Heap buffer overflow mixing document.write and DOM insertion (c223b00d-e272-11df-8e32-000f20797ede)
high
50351FreeBSD : opera -- multiple vulnerabilities (aab187d4-e0f3-11df-b1ea-001999392805)
high
50338FreeBSD : FreeBSD -- Insufficient environment sanitization in jail(8) (f6eb2279-ca3f-11df-aade-0050568f000c)
high
50337FreeBSD : FreeBSD -- BIND named(8) cache poisoning with DNSSEC validation (e500b9bf-ca3e-11df-aade-0050568f000c)
medium
50336FreeBSD : FreeBSD -- Improper environment sanitization in rtld(1) (ad08d14b-ca3d-11df-aade-0050568f000c)
high
50335FreeBSD : FreeBSD -- ZFS ZIL playback with insecure permissions (97f09f2f-ca3f-11df-aade-0050568f000c)
high
50334FreeBSD : FreeBSD -- Lost mbuf flag resulting in data corruption (7a09a8df-ca41-11df-aade-0050568f000c)
high
50333FreeBSD : FreeBSD -- OPIE off-by-one stack overflow (768cfe70-ca40-11df-aade-0050568f000c)
high
50332FreeBSD : FreeBSD -- Inappropriate directory permissions in freebsd-update(8) (6e87b696-ca3e-11df-aade-0050568f000c)
high
50331FreeBSD : FreeBSD -- ntpd mode 7 denial of service (48103b0a-ca3f-11df-aade-0050568f000c)
medium
50330FreeBSD : FreeBSD -- SSL protocol flaw (406779fd-ca3b-11df-aade-0050568f000c)
medium
50329FreeBSD : FreeBSD -- Integer overflow in bzip2 decompression (18dc48fe-ca42-11df-aade-0050568f000c)
high
50328FreeBSD : bzip2 -- integer overflow vulnerability (0ddb57a9-da20-4e99-b048-4366092f3d31)
medium
50327FreeBSD : FreeBSD -- Unvalidated input in nfsclient (0dc91089-ca41-11df-aade-0050568f000c)
high
50320FreeBSD : monotone -- remote denial of service in default setup (c9a6ae4a-df8b-11df-9573-00262d5ed8ee)
high