Midnightbsd is a niche operating system that, despite limited disclosure volume, occupies a distinctive position in the BSD ecosystem. Its sparse vulnerability record centers on the core operating system and reflects memory-safety and pointer-handling weakness classes including NULL-pointer dereferences and out-of-bounds writes. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Midnightbsd over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-4609HIGH The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cau | Oct 20, 2008 | 7.1 | 40 | NO | NO |
CVE-2009-0687HIGH The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote | Aug 11, 2009 | 7.8 | 33 | NO | YES |
CVE-2020-24863MEDIUM A memory corruption vulnerability was found in the kernel function kern_getfsstat in MidnightBSD before 1.2.7 and 1.3 through 2020-08-19, and FreeBSD through 11.4, that allows an a | Sep 3, 2020 | 5.5 | 19 | NO | NO |
CVE-2020-24385MEDIUM In MidnightBSD before 1.2.6 and 1.3 before August 2020, and FreeBSD before 7, a NULL pointer dereference was found in the Linux emulation layer that allows attackers to crash the r | Sep 3, 2020 | 5.5 | 19 | NO | NO |
Integer signedness error in the fw_ioctl (FW_IOCTL) function in the FireWire (IEEE-1394) drivers (dev/firewire/fwdev.c) in various BSD kernels, including DragonFlyBSD, FreeBSD 5.5, | Nov 21, 2006 | 2.1 | 11 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Midnightbsd.
Media articles that mention a CVE ID that affects a product developed by Midnightbsd — matched by CVE ID, not by vendor name.