Known Vulnerabilities for products from FreeBSD

Listed below are 20 of the newest known vulnerabilities associated with the vendor "FreeBSD".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-45255 json When bsdinstall or bsdconfig are prompted to scan for nearby Wi-Fi networks, they build up a list of network names and use bs... Not Provided 2026-05-21 2026-05-21
CVE-2026-45254 json In the case of the cap_net service, when a key present in the old limit was omitted from the new limit, the missing key was t... Not Provided 2026-05-21 2026-05-21
CVE-2026-45253 json ptrace(PT_SC_REMOTE) failed to properly validate parameters for the syscall(2) and __syscall(2) meta-system calls. As a resu... Not Provided 2026-05-21 2026-05-21
CVE-2026-45252 json When a fusefs file system implements extended attributes, the kernel may send a FUSE_LISTXATTR message to the userspace daemo... Not Provided 2026-05-21 2026-05-21
CVE-2026-45251 json A file descriptor can be closed while a thread is blocked in a poll(2) or select(2) call waiting for that descriptor. Becaus... Not Provided 2026-05-21 2026-05-21
CVE-2026-45250 json The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is check... Not Provided 2026-05-21 2026-05-22
CVE-2026-45158 json Not Provided 2026-05-13 2026-05-14
CVE-2026-44195 json Not Provided 2026-05-13 2026-05-14
CVE-2026-44194 json Not Provided 2026-05-13 2026-05-14
CVE-2026-44193 json Not Provided 2026-05-13 2026-05-14
CVE-2026-42512 json As dhclient is building an environment to pass to dhclient-script, it may need to resize the array of string pointers. The c... Not Provided 2026-04-30 2026-05-01
CVE-2026-42511 json The BOOTP file field is written to the lease file without escaping embedded double-quotes, allowing injection of arbitrary dh... Not Provided 2026-04-30 2026-05-01
CVE-2026-39461 json libcasper(3) communicates with helper processes via UNIX domain sockets, and uses the select(2) system call to wait for data ... Not Provided 2026-05-21 2026-05-21
CVE-2026-39457 json When exchanging data over a socket, libnv uses select(2) to wait for data to arrive. However, it does not verify whether the... Not Provided 2026-04-30 2026-05-01
CVE-2026-35547 json When processing the header of an incoming message, libnv failed to properly validate the message size. The lack of validatio... Not Provided 2026-04-30 2026-05-01
CVE-2026-35362 json Not Provided 2026-04-22 2026-04-22
CVE-2026-34578 json Not Provided 2026-04-09 2026-04-09
CVE-2026-7270 json An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to ove... Not Provided 2026-04-30 2026-05-10
CVE-2026-7164 json Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack... Not Provided 2026-04-30 2026-05-01
CVE-2026-6386 json In order to apply a particular protection key to an address range, the kernel must update the corresponding page table entrie... Not Provided 2026-04-22 2026-05-01

Known software with vulnerabilities from FreeBSD

Type Vendor Product Version
ApplicationFreebsdAide-
ApplicationFreebsdCvsweb2.0.4
ApplicationFreebsdFetch-
Operating
System
FreebsdFreebsd-
ApplicationFreebsdFreebsd10.0
ApplicationFreebsdHeimdal-
ApplicationFreebsdJa-xklock-
ApplicationFreebsdLibarchive-
ApplicationFreebsdName Server Daemon-
ApplicationFreebsdSlashem-tty-