Freebsd

Freebsd

509 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.14%
  • Veröffentlicht 04.10.2023 04:15:15
  • Zuletzt bearbeitet 21.11.2024 08:41:37

On CPU 0 the check for the SMCCC workaround is called before SMCCC support has been initialized. This resulted in no speculative execution workarounds being installed on CPU 0.

  • EPSS 0.13%
  • Veröffentlicht 04.10.2023 04:15:14
  • Zuletzt bearbeitet 21.11.2024 08:41:37

On an msdosfs filesystem, the 'truncate' or 'ftruncate' system calls under certain circumstances populate the additional space in the file with unallocated data from the underlying disk device, rather than zero bytes. This may permit a user with wri...

  • EPSS 0.1%
  • Veröffentlicht 04.10.2023 04:15:14
  • Zuletzt bearbeitet 21.11.2024 08:41:37

Before correction, the copy_file_range system call checked only for the CAP_READ and CAP_WRITE capabilities on the input and output file descriptors, respectively. Using an offset is logically equivalent to seeking, and the system call must addition...

  • EPSS 0.48%
  • Veröffentlicht 06.09.2023 20:15:08
  • Zuletzt bearbeitet 13.02.2025 18:15:47

In pf packet processing with a 'scrub fragment reassemble' rule, a packet containing multiple IPv6 fragment headers would be reassembled, and then immediately processed. That is, a packet with multiple fragment extension headers would not be recogni...

  • EPSS 0.19%
  • Veröffentlicht 01.08.2023 23:15:31
  • Zuletzt bearbeitet 13.02.2025 17:16:57

The fwctl driver implements a state machine which is executed when a bhyve guest accesses certain x86 I/O ports. The interface lets the guest copy a string into a buffer resident in the bhyve process' memory. A bug in the state machine implementati...

  • EPSS 0.21%
  • Veröffentlicht 01.08.2023 23:15:30
  • Zuletzt bearbeitet 09.07.2025 14:15:26

A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field. This allows an attacker to trigger a kernel panic, resulting in a denial of service.

  • EPSS 0.48%
  • Veröffentlicht 22.06.2023 17:15:44
  • Zuletzt bearbeitet 21.11.2024 08:17:01

pam_krb5 authenticates a user by essentially running kinit with the password, getting a ticket-granting ticket (tgt) from the Kerberos KDC (Key Distribution Center) over the network, as a way to verify the password. However, if a keytab is not provis...

  • EPSS 0.33%
  • Veröffentlicht 08.02.2023 20:15:24
  • Zuletzt bearbeitet 25.03.2025 14:15:20

When GELI reads a key file from standard input, it does not reuse the key file to initialize multiple providers at once resulting in the second and subsequent devices silently using a NULL key as the user key file. If a user only uses a key file with...

  • EPSS 0.54%
  • Veröffentlicht 06.09.2022 18:15:15
  • Zuletzt bearbeitet 17.06.2025 20:15:25

sys/netinet/tcp_timer.h in FreeBSD before 7.0 contains a denial-of-service (DoS) vulnerability due to improper handling of TSopt on TCP connections. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

  • EPSS 0.32%
  • Veröffentlicht 18.01.2022 17:15:08
  • Zuletzt bearbeitet 21.11.2024 06:01:32

In FreeBSD 13.0-STABLE before n247428-9352de39c3dc, 12.2-STABLE before r370674, 13.0-RELEASE before p6, and 12.2-RELEASE before p12, certain conditions involving use of the highlight buffer while text is scrolling on the console, console data may ove...