FreeBSD
First CVE: Jan 20, 2005Active for: 22 years
206
CVEs Published
More CVEs Published than 80% of tracked CNAs
12.1
Avg CVEs / Year
More Avg CVEs / Year than 59% of tracked CNAs
7.2
Avg CVSS Score
Higher Avg CVSS Score than 50% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Self-Reporting Analysis
Of all the CVEs published by FreeBSD as a CNA, 90.3% affect products that FreeBSD develops as a vendor.
90.3%
Self-reported: 186Third-party: 20
Of all the CVEs published that affect products developed by FreeBSD, 31.6% are self-published by FreeBSD as a CNA.
31.6%
68.4%
Self-published: 186Published by other CNAs: 402
Trends Over Time
The number and severity of CVEs published by FreeBSD over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 20, 2005
21 years ago
Most Recent CVE
Jun 27, 2026
28 days ago
Top CVEs
All CVEs published by FreeBSD as a CNA, regardless of affected vendor or product.
206 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-4862HIGH Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU | Dec 25, 2011 | 10.0 | 92 | NO | YES |
CVE-2025-14558HIGH The rtsol(8) and rtsold(8) programs do not validate the domain search list options provided in router advertisement messages; the option body is passed to resolvconf(8) unmodified. | Mar 9, 2026 | 7.2 | 51 | NO | YES |
CVE-2020-7457HIGH In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p11, missing synchronization in the IPV6_ | Jul 9, 2020 | 8.1 | 47 | NO | YES |
CVE-2017-1084HIGH In FreeBSD before 11.2-RELEASE, multiple issues with the implementation of the stack guard-page reduce the protections afforded by the guard-page. This results in the possibility a | Sep 12, 2018 | 7.5 | 43 | NO | YES |
CVE-2018-17157CRITICAL In FreeBSD before 11.2-STABLE(r340854) and 11.2-RELEASE-p5, an integer overflow error when handling opcodes can cause memory corruption by sending a specially crafted NFSv4 request | Dec 4, 2018 | 9.8 | 42 | NO | NO |
CVE-2026-4747HIGH Each RPCSEC_GSS data packet is validated by a routine which checks a signature in the packet. This routine copies a portion of the packet into a stack buffer, but fails to ensure | Mar 26, 2026 | 8.8 | 40 | NO | NO |
CVE-2026-45250HIGH The setcred(2) system call is only available to privileged users. However, before the privilege level of the caller is checked, the user-supplied list of supplementary groups is c | May 21, 2026 | 7.8 | 38 | NO | NO |
CVE-2026-42511HIGH The BOOTP file field is written to the lease file without escaping embedded double-quotes, allowing injection of arbitrary dhclient.conf directives. When the lease file is subsequ | Apr 30, 2026 | 8.1 | 38 | NO | NO |
CVE-2026-45257HIGH The KTLS receive path decrypted each record in place, assuming that the mbufs holding received data were anonymous and safe to modify. This assumption does not hold for data place | Jun 26, 2026 | 7.8 | 37 | NO | NO |
CVE-2019-5596HIGH In FreeBSD 11.2-STABLE after r338618 and before r343786, 12.0-STABLE before r343781, and 12.0-RELEASE before 12.0-RELEASE-p3, a bug in the reference count implementation for UNIX d | Feb 12, 2019 | 8.8 | 37 | NO | YES |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA206 CVEs
33%
52%
11%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local66 (32.0%)
Network103 (50.0%)
Unknown33 (16.0%)
Physical3 (1.5%)
Adjacent Network1 (0.5%)
Attack Complexity
Low158 (76.7%)
High15 (7.3%)
Unknown33 (16.0%)
User Interaction
None171 (83.0%)
Unknown33 (16.0%)
Required2 (1.0%)
Privileges Required
Low67 (32.5%)
High11 (5.3%)
None95 (46.1%)
Unknown33 (16.0%)
Exploit Exposure
Signals from CVEs in this cna scope (206 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
1.5% of CVEs· 90th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
9 CVEs
4.4% of CVEs· 94th percentile
Social Chatter
An overview of all social media posts that mention a CVE ID published by FreeBSD as a CNA.
Media Mentions
Media articles that mention a CVE ID published by FreeBSD as a CNA — matched by CVE ID, not by organization name.