Bsd Os
Vendor:
First CVE: Oct 19, 1995 · Active for 30 years
38
Total CVEs
More Total CVEs than 98% of tracked products
5.4
Avg CVEs / Year
Higher CVE frequency than 91% of tracked products
7.1
Avg CVSS
Higher Avg CVSS than 46% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Bsd Os over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 19, 1995
30 years ago
Most Recent CVE
Oct 20, 2008
6,489 days ago
CVE Severity & Scoring
Bsd Os38 CVEs
11%
21%
66%
All CVEs352,785 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (5.3%)
Network2 (5.3%)
Unknown34 (89.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (10.5%)
High0 (0.0%)
Unknown34 (89.5%)
User Interaction
None4 (10.5%)
Unknown34 (89.5%)
Required0 (0.0%)
Privileges Required
Low1 (2.6%)
High0 (0.0%)
None3 (7.9%)
Unknown34 (89.5%)
Top CVEs
Signals from CVEs in this product scope (38 CVEs).
38 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-1999-0046HIGH Buffer overflow of rlogin program using TERM environmental variable. | Feb 6, 1997 | 10.0 | 67 | NO | YES |
CVE-1999-0002HIGH Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems. | Oct 12, 1998 | 10.0 | 56 | NO | YES |
CVE-1999-0043CRITICAL Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others. | Dec 4, 1996 | 9.8 | 55 | NO | NO |
CVE-1999-0009HIGH Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases. | Apr 8, 1998 | 10.0 | 54 | NO | YES |
CVE-1999-0042HIGH Buffer overflow in University of Washington's implementation of IMAP and POP servers. | Apr 7, 1997 | 10.0 | 44 | NO | YES |
CVE-2008-4609HIGH The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cau | Oct 20, 2008 | 7.1 | 40 | NO | NO |
CVE-1999-0879HIGH Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file. | Oct 1, 1999 | 10.0 | 39 | NO | YES |
CVE-1999-0704HIGH Buffer overflow in Berkeley automounter daemon (amd) logging facility provided in the Linux am-utils package and others. | Sep 16, 1999 | 9.3 | 34 | NO | YES |
CVE-1999-0038HIGH Buffer overflow in xlock program allows local users to execute commands as root. | Apr 26, 1997 | 8.4 | 32 | NO | YES |
CVE-1999-0040HIGH Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges. | May 1, 1997 | 7.2 | 29 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (38 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
14 CVEs
36.8% of CVEs· 89th percentile
Social Chatter
Signals from CVEs in this product scope (38 CVEs).
Media Mentions
Signals from CVEs in this product scope (38 CVEs).
Top CNAs Publishing CVEs For Bsd Os
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.2 | 3 | 6.4 | 11.5% | 0 | 0 |
| 4.1 | 2 | 7.2 | 16.4% | 0 | 0 |
| 4.0.1 | 5 | 6.6 | 7.7% | 0 | 2 |
| 4.0 | 4 | 7.3 | 9.0% | 0 | 1 |
| 3.2 | 2 | 5.3 | 16.2% | 0 | 0 |
| 3.1 | 6 | 6.3 | 7.0% | 0 | 3 |
| 3.0 | 11 | 7.1 | 6.0% | 0 | 5 |
| 2.1 | 17 | 7.8 | 11.6% | 0 | 9 |
| 2.0.1 | 5 | 8.9 | 23.5% | 0 | 3 |
| 2.0 | 5 | 8.9 | 23.5% | 0 | 3 |
| 1.1 | 4 | 8.7 | 28.1% | 0 | 2 |