Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Bsdi

First CVE: Oct 19, 1995Active for: 31 yearsTotal CVEs: 39
59.8
VTI Score
TOP TARGET

BSDI maintains a focused portfolio centered on its BSD operating system and Gauntlet firewall product, both of which have hosted a sustained stream of low-level system vulnerabilities over time. The exposure concentrates in memory-safety and input-handling weakness classes—buffer overflows, improper input validation, and OS command injection—that are characteristic of native-code infrastructure software, and public exploit code has frequently accompanied these disclosures. The vendor's small but durable presence in the vulnerability landscape reflects the historical role these products played in early internet infrastructure, though the portfolio does not skew toward critical severity. Defenders maintaining legacy BSD or Gauntlet deployments should treat memory-safety and command-injection fixes as high-priority; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
39
Total CVEs
More Total CVEs than 98% of tracked vendors
2.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 91% of tracked vendors
7.2
Avg CVSS Score
Higher Avg CVSS Score than 52% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Bsdi over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 19, 1995
30 years ago
Most Recent CVE
Oct 20, 2008
6,487 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (39 CVEs).

39 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-1999-0046HIGH
Buffer overflow of rlogin program using TERM environmental variable.
Feb 6, 199710.067NOYES
CVE-1999-0002HIGH
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
Oct 12, 199810.056NOYES
CVE-1999-0043CRITICAL
Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.
Dec 4, 19969.855NONO
CVE-1999-0009HIGH
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Apr 8, 199810.054NOYES
CVE-1999-0042HIGH
Buffer overflow in University of Washington's implementation of IMAP and POP servers.
Apr 7, 199710.044NOYES
CVE-2008-4609HIGH
The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cau
Oct 20, 20087.140NONO
CVE-1999-0879HIGH
Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file.
Oct 1, 199910.039NOYES
CVE-1999-0704HIGH
Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others.
Sep 16, 19999.334NOYES
CVE-1999-0038HIGH
Buffer overflow in xlock program allows local users to execute commands as root.
Apr 26, 19978.432NOYES
CVE-1999-0040HIGH
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
May 1, 19977.229NOYES
View all 39 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products39 CVEs
10%
21%
67%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (5.1%)
Network2 (5.1%)
Unknown35 (89.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (10.3%)
High0 (0.0%)
Unknown35 (89.7%)
User Interaction
None4 (10.3%)
Unknown35 (89.7%)
Required0 (0.0%)
Privileges Required
Low1 (2.6%)
High0 (0.0%)
None3 (7.7%)
Unknown35 (89.7%)

Exploit Exposure

Signals from CVEs in this vendor scope (39 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
14 CVEs
35.9% of CVEs· 80th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Bsdi.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Bsdi — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Bsdi's Products

View all 1 CNAs →

Top CWEs