FreeBSD Local Security Checks Family for Nessus

ID Name Severity
173722 FreeBSD : Gitlab -- Multiple Vulnerabilities (54006796-cf7b-11ed-a5d5-001b217b3468)
medium
173719 FreeBSD : rubygem-uri -- ReDoS vulnerability (9b60bba1-cf18-11ed-bd44-080027f5fec9)
critical
173716 FreeBSD : powerdns-recursor -- denial of service (dc33795f-ced7-11ed-b1fe-6805ca2fa271)
high
173715 FreeBSD : rubygem-time -- ReDoS vulnerability (6bd2773c-cf1a-11ed-bd44-080027f5fec9)
critical
173657 FreeBSD : xorg-server -- Overlay Window Use-After-Free (96d84238-b500-490b-b6aa-2b77090a0410)
critical
173647 FreeBSD : OpenSSL -- Multiple vulnerabilities (425b9538-ce5f-11ed-ade3-d4c9ef517024)
high
173613 FreeBSD : Matrix clients -- Prototype pollution in matrix-js-sdk (5b0ae405-cdc7-11ed-bb39-901b0e9408dc)
high
173401 FreeBSD : phpmyfaq -- multiple vulnerabilities (6bacd9fd-ca56-11ed-bc52-589cfc0f81b0)
high
173392 FreeBSD : rack -- possible denial of service vulnerability in header parsing (2fdb053c-ca25-11ed-9d7e-080027f5fec9)
high
173388 FreeBSD : OpenSSL -- Excessive Resource Usage Verifying X.509 Policy Constraints (1ba034fb-ca38-11ed-b242-d4c9ef517024)
medium
173371 FreeBSD : dino -- Insufficient message sender validation in Dino (dec6b8e9-c9fe-11ed-bb39-901b0e9408dc)
critical
173331 FreeBSD : libXpm -- Issues handling XPM files (38f213b6-8f3d-4067-91ef-bf14de7ba518)
high
173330 FreeBSD : curl -- multiple vulnerabilities (0d7d104c-c6fb-11ed-8a4b-080027f5fec9)
medium
173329 FreeBSD : tailscale -- security vulnerability in Tailscale SSH (1b15a554-c981-11ed-bb39-901b0e9408dc)
critical
173328 FreeBSD : redis -- specially crafted MSETNX command can lead to denial-of-service (a60cc0e4-c7aa-11ed-8a4b-080027f5fec9)
medium
173327 FreeBSD : chromium -- multiple vulnerabilities (c8b334e0-6e83-4575-81d1-f9d5803ceb07)
critical
172393 FreeBSD : mantis -- multiple vulnerabilities (bed545c6-bdb8-11ed-bca8-a33124f1beb1)
medium
172261 FreeBSD : go -- crypto/elliptic: incorrect P-256 ScalarMult and ScalarBaseMult results (742279d6-bdbe-11ed-a179-2b68e9d12706)
medium
172248 FreeBSD : Apache OpenOffice -- master password vulnerabilities (6678211c-bd47-11ed-beb0-1c1b0d9ea7e6)
high
172115 FreeBSD : rack -- possible DoS vulnerability in multipart MIME parsing (f0798a6a-bbdb-11ed-ba99-080027f5fec9)
high
172105 FreeBSD : strongSwan -- certificate verification vulnerability (3f9b6943-ba58-11ed-bbbd-00e0670f2660)
critical
172104 FreeBSD : curl -- multiple vulnerabilities (be233fc6-bae7-11ed-a4fb-080027f5fec9)
critical
172086 FreeBSD : Gitlab -- Multiple Vulnerabilities (f7c5b3a9-b9fb-11ed-99c6-001b217b3468)
high
172084 FreeBSD : Grafana -- Stored XSS in text panel plugin (6dccc186-b824-11ed-b695-6c3be5272acd)
medium
172083 FreeBSD : Grafana -- Stored XSS in geomap panel plugin via attribution (e2a8e2bd-b808-11ed-b695-6c3be5272acd)
medium
172010 FreeBSD : redis -- multiple vulnerabilities (b17bce48-b7c6-11ed-b304-080027f5fec9)
medium
171931 FreeBSD : emacs -- multiple vulnerabilities (a75929bd-b6a4-11ed-bad6-080027f5fec9)
critical
171899 FreeBSD : freerdp -- clients using `/parallel` command line switch might read uninitialized data (c682923d-b444-11ed-9268-b42e991fc52e)
high
171898 FreeBSD : freerdp -- clients using the `/video` command line switch might read uninitialized data (dd271de6-b444-11ed-9268-b42e991fc52e)
high
171839 FreeBSD : chromium -- multiple vulnerabilities (4d6b5ea9-bc64-4e77-a7ee-d62ba68a80dd)
high
171744 FreeBSD : libde256 -- multiple vulnabilities (421c0af9-b206-11ed-9fe5-f4a47516fb57)
critical
171743 FreeBSD : zeek -- potential DoS vulnerabilities (7a425536-74f7-4ce4-9768-0079a9d44d11)
high
171697 FreeBSD : git -- git apply overwriting paths outside the working tree (21f12de8-b1db-11ed-b0f4-002590f2a714)
high
171695 FreeBSD : git -- Heap overflow in `git archive`, `git log --format` leading to RCE (2fcca7e4-b1d7-11ed-b0f4-002590f2a714)
critical
171694 FreeBSD : git -- Local clone-based data exfiltration with non-local transports (9548d6ed-b1da-11ed-b0f4-002590f2a714)
medium
171693 FreeBSD : git -- gitattributes parsing integer overflow (8fafbef4-b1d9-11ed-b0f4-002590f2a714)
critical
171638 FreeBSD : gitea -- password hash quality (5048ed45-b0f1-11ed-ab04-9106b1b896dd)
high
171635 FreeBSD : traefik -- Use of vulnerable Go module x/net/http2 (428922c9-b07e-11ed-8700-5404a68ad561)
high
171634 FreeBSD : Rundeck3 -- Log4J RCE vulnerability (27c822a0-addc-11ed-a9ee-dca632b19f10)
medium
171625 FreeBSD : MinIO -- unprivileged users can create service accounts for admin users (8e20430d-a72b-11ed-a04f-40b034455553)
high
171583 FreeBSD : clamav -- Multiple vulnerabilities (fd792048-ad91-11ed-a879-080027f5fec9)
critical
171512 FreeBSD : go -- multiple vulnerabilities (3d73e384-ad1f-11ed-983c-83fe35862e3a)
high
171434 FreeBSD : Django -- multiple vulnerabilities (9c9ee9a6-ac5e-11ed-9323-080027d3a315)
high
171387 FreeBSD : GnuTLS -- timing sidechannel in RSA decryption (0a7a5dfb-aba4-11ed-be2c-001cc0382b2f)
high
171384 FreeBSD : phpmyfaq -- multiple vulnerabilities (3eccc968-ab17-11ed-bd9e-589cfc0f81b0)
high
171366 FreeBSD : chromium -- multiple vulnerabilities (310ca30e-a951-11ed-8314-a8a1599412c6)
high
171247 FreeBSD : Grafana -- Spoofing originalUrl of snapshots (e6281d88-a7a7-11ed-8d6a-6c3be5272acd)
low
171246 FreeBSD : PostgreSQL server -- Client memory disclosure when connecting, with Kerberos, to modified server. (7a8b6170-a889-11ed-bbae-6cc21735f730)
low
171245 FreeBSD : Grafana -- Stored XSS in ResourcePicker component (ecffb881-a7a7-11ed-8d6a-6c3be5272acd)
medium
171185 FreeBSD : LibreSSL -- Arbitrary memory read (1dd84344-a7da-11ed-86e9-d4c9ef517024)
high