Freebsd Security Vulnerabilities (CVEs)

Track 25 security vulnerabilities affecting Freebsd products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

7 Critical
18 High
🔔 Get Alerts for Freebsd
CVE-2024-42416 8.8

This vulnerability allows arbitrary write to kernel memory in FreeBSD's bhyve hypervisor due to insufficient validation in the ctl_report_supported_op...

Sep 5, 2024
CVE-2024-43102 10.0

This CVE describes a use-after-free vulnerability in FreeBSD's umtx (user mutex) subsystem where concurrent destruction of anonymous shared memory map...

Sep 5, 2024
CVE-2024-45063 8.8

This CVE describes a use-after-free vulnerability in the ctl_write_buffer function that allows malicious software in a guest VM to achieve code execut...

Sep 5, 2024
CVE-2024-7589 8.1

CVE-2024-7589 is a race condition vulnerability in OpenSSH's sshd on FreeBSD systems that allows unauthenticated remote attackers to potentially execu...

Aug 12, 2024
CVE-2024-6760 7.5

This CVE-2024-6760 vulnerability allows unprivileged users to trace setuid programs due to a kernel tracing logic bug, enabling them to inspect progra...

Aug 12, 2024
CVE-2024-29937 9.8

This critical vulnerability in NFS implementations allows remote attackers to execute arbitrary code on affected systems without requiring authenticat...

Apr 11, 2024
CVE-2022-23090 7.7

CVE-2022-23090 is a use-after-free vulnerability in FreeBSD's asynchronous I/O implementation where the aio_aqueue function fails to release a credent...

Feb 15, 2024
CVE-2022-23092 8.8

CVE-2022-23092 is a memory corruption vulnerability in lib9p's RWALK message handling that allows a malicious bhyve guest kernel to overwrite host mem...

Feb 15, 2024
CVE-2022-23085 8.2

CVE-2022-23085 is an integer overflow vulnerability in FreeBSD's netmap subsystem that allows kernel memory corruption. A privileged process within a ...

Feb 15, 2024
CVE-2022-23087 8.8

CVE-2022-23087 is a memory corruption vulnerability in the e1000 network adapter emulation in bhyve hypervisor. A malicious guest VM can overwrite hos...

Feb 15, 2024
CVE-2022-23088 9.8

This vulnerability allows remote attackers to execute arbitrary code on FreeBSD systems by sending specially crafted 802.11 beacon frames with malicio...

Feb 15, 2024
CVE-2023-6534 7.5

A vulnerability in FreeBSD's pf(4) packet filter incorrectly validates TCP sequence numbers, allowing attackers to execute denial-of-service attacks a...

Dec 13, 2023
CVE-2023-5941 9.8

A heap buffer overflow vulnerability in FreeBSD's libc stdio function __sflush() allows attackers to corrupt data or execute arbitrary code when write...

Nov 8, 2023
CVE-2023-5369 7.1

This CVE-2023-5369 vulnerability allows sandboxed processes with only read or write capabilities (but no seek capability) to bypass file position rest...

Oct 4, 2023
CVE-2023-4809 7.5

This CVE allows IPv6 packets with multiple fragment headers to bypass pf firewall rules by being incorrectly reassembled and processed. Systems using ...

Sep 6, 2023
CVE-2023-3494 8.8

A buffer overflow vulnerability in the fwctl driver of bhyve hypervisor allows malicious privileged software running in a guest VM to execute arbitrar...

Aug 1, 2023
CVE-2023-3326 9.8

CVE-2023-3326 is an authentication bypass vulnerability in pam_krb5 where the module fails to properly validate Kerberos ticket-granting tickets from ...

Jun 22, 2023
CVE-2021-29630 8.1

This is a stack-based buffer overflow vulnerability in FreeBSD's ggatec daemon that allows remote code execution. Attackers in a privileged network po...

Aug 30, 2021
CVE-2021-29631 7.8

This vulnerability in FreeBSD's bhyve hypervisor allows malicious virtual machine guests to cause memory corruption in the host's bhyve process. This ...

Aug 30, 2021
CVE-2021-36159 9.1

CVE-2021-36159 is an out-of-bounds read vulnerability in libfetch's FTP passive mode implementation that occurs when parsing numeric strings. This vul...

Aug 3, 2021
CVE-2020-7469 7.5

This is a use-after-free vulnerability in FreeBSD's ICMPv6 network stack that allows attackers to potentially execute arbitrary code or cause denial o...

Jun 4, 2021
CVE-2021-29628 7.5

This vulnerability in FreeBSD kernels allows system calls to disable SMAP (Supervisor Mode Access Prevention) protections temporarily, creating a wind...

May 28, 2021
CVE-2020-25584 7.5

This vulnerability allows a superuser inside a FreeBSD jail with the non-default allow.mount permission to exploit a race condition between directory ...

Apr 7, 2021
CVE-2021-29627 7.8

A double-free vulnerability in FreeBSD's accept filter implementation allows attackers to potentially execute arbitrary code or cause denial of servic...

Apr 7, 2021
CVE-2020-25583 9.8

This is a critical buffer overflow vulnerability in FreeBSD's rtsold IPv6 router advertisement daemon. Attackers can exploit it by sending malicious D...

Mar 29, 2021

Why Monitor Freebsd Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 25+ known vulnerabilities affecting Freebsd products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Freebsd packages in under 60 seconds. No agents required - completely agentless scanning that works across Freebsd deployments.

Free vulnerability database: Access detailed information about every Freebsd CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Freebsd CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Freebsd CVEs Free