This page displays vulnerability information about FreeBSD Ports.
The last vuln.xml file processed by FreshPorts is:
Revision: 567419 Date: 2021-03-05 Time: 21:18:20Z Committer: mfechner
List all Vulnerabilities, by package
List all Vulnerabilities, by date
These are the vulnerabilities relating to the commit you have selected:
VuXML ID | Description |
---|---|
91a337d8-83ed-11e6-bf52-b499baebfeaf | OpenSSL -- multiple vulnerabilities OpenSSL reports:
Discovery 2016-09-26 Entry 2016-09-26 Modified 2016-10-10 openssl lt 1.0.2j,1 openssl-devel lt 1.1.0b libressl lt 2.4.3 libressl-devel lt 2.4.3 FreeBSD ge 11.0 lt 11.0_1 https://www.openssl.org/news/secadv/20160926.txt CVE-2016-6309 CVE-2016-7052 SA-16:27.openssl |
b7cff5a9-31cc-11e8-8f07-b499baebfeaf | OpenSSL -- multiple vulnerabilities The OpenSSL project reports:
Discovery 2018-03-27 Entry 2018-03-27 openssl lt 1.0.2o,1 openssl-devel lt 1.1.0h https://www.openssl.org/news/secadv/20180327.txt CVE-2018-0739 CVE-2017-3738 |
1d56cfc5-3970-11eb-929d-d4c9ef517024 | OpenSSL -- NULL pointer de-reference The OpenSSL project reports:
Discovery 2020-12-08 Entry 2020-12-08 Modified 2020-12-15 openssl ge 1.0.2,1 lt 1.1.1i,1 FreeBSD ge 12.2 lt 12.2_2 ge 12.1 lt 12.1_12 ge 11.4 lt 11.4_6 https://www.openssl.org/news/secadv/20201208.txt CVE-2020-1971 SA-20:33.openssl |
0fcd3af0-a0fe-11e6-b1cf-14dae9d210b8 | FreeBSD -- OpenSSL Remote DoS vulnerabilityProblem Description:Due to improper handling of alert packets, OpenSSL would consume an excessive amount of CPU time processing undefined alert messages. Impact:A remote attacker who can initiate handshakes with an OpenSSL based server can cause the server to consume a lot of computation power with very little bandwidth usage, and may be able to use this technique in a leveraged Denial of Service attack. Discovery 2016-11-02 Entry 2016-11-02 Modified 2017-02-22 FreeBSD ge 10.3 lt 10.3_12 ge 10.2 lt 10.2_25 ge 10.1 lt 10.1_42 ge 9.3 lt 9.3_50 openssl lt 1.0.2i,1 openssl-devel lt 1.1.0a linux-c6-openssl lt 1.0.1e_13 linux-c7-openssl-libs lt 1.0.1e_3 CVE-2016-8610 SA-16:35.openssl http://seclists.org/oss-sec/2016/q4/224 |
7700061f-34f7-11e9-b95c-b499baebfeaf | OpenSSL -- Padding oracle vulnerability The OpenSSL project reports:
Discovery 2019-02-19 Entry 2019-02-20 Modified 2019-03-07 openssl lt 1.0.2r,1 linux-c6-openssl lt 1.0.1e_16 https://www.openssl.org/news/secadv/20190226.txt CVE-2019-1559 |
43eaa656-80bc-11e6-bf52-b499baebfeaf | OpenSSL -- multiple vulnerabilities OpenSSL reports:
Discovery 2016-09-22 Entry 2016-09-22 Modified 2016-10-11 openssl-devel ge 1.1.0 lt 1.1.0_1 openssl lt 1.0.2i,1 linux-c6-openssl lt 1.0.1e_11 FreeBSD ge 10.3 lt 10.3_8 ge 10.2 lt 10.2_21 ge 10.1 lt 10.1_38 ge 9.3 lt 9.3_46 https://www.openssl.org/news/secadv/20160922.txt CVE-2016-6304 CVE-2016-6305 CVE-2016-2183 CVE-2016-6303 CVE-2016-6302 CVE-2016-2182 CVE-2016-2180 CVE-2016-2177 CVE-2016-2178 CVE-2016-2179 CVE-2016-2181 CVE-2016-6306 CVE-2016-6307 CVE-2016-6308 SA-16:26.openssl |
8f353420-4197-11e8-8777-b499baebfeaf | OpenSSL -- Cache timing vulnerability The OpenSSL project reports:
Discovery 2018-04-16 Entry 2018-04-16 openssl lt 1.0.2o_2,1 openssl-devel lt 1.1.0h_1 https://www.openssl.org/news/secadv/20180416.txt CVE-2018-0737 |
9e0c6f7a-d46d-11e9-a1c7-b499baebfeaf | OpenSSL -- Multiple vulnerabilities The OpenSSL project reports:
Discovery 2019-09-10 Entry 2019-09-11 openssl lt 1.0.2t,1 openssl111 lt 1.1.1d https://www.openssl.org/news/secadv/20190910.txt CVE-2019-1547 CVE-2019-1549 |
c82ecac5-6e3f-11e8-8777-b499baebfeaf | OpenSSL -- Client DoS due to large DH parameter The OpenSSL project reports:
Discovery 2018-06-12 Entry 2018-06-12 Modified 2018-07-24 libressl libressl-devel lt 2.6.5 ge 2.7.0 lt 2.7.4 openssl lt 1.0.2o_4,1 openssl-devel lt 1.1.0h_2 https://www.openssl.org/news/secadv/20180612.txt CVE-2018-0732 |
d778ddb0-2338-11ea-a1c7-b499baebfeaf | OpenSSL -- Overflow vulnerability The OpenSSL project reports:
Discovery 2019-12-06 Entry 2019-12-20 openssl lt 1.0.2u,1 https://www.openssl.org/news/secadv/20191206.txt CVE-2019-1551 |
f40f07aa-c00f-11e7-ac58-b499baebfeaf | OpenSSL -- Multiple vulnerabilities The OpenSSL project reports:
Discovery 2017-11-02 Entry 2017-11-02 openssl lt 1.0.2m,1 openssl-devel lt 1.1.0g https://www.openssl.org/news/secadv/20171102.txt CVE-2017-3735 CVE-2017-3736 |
d455708a-e3d3-11e6-9940-b499baebfeaf | OpenSSL -- multiple vulnerabilities The OpenSSL project reports:
Discovery 2017-01-26 Entry 2017-01-26 Modified 2017-05-26 openssl lt 1.0.2k,1 openssl-devel lt 1.1.0d linux-c6-openssl lt 1.0.1e_13 linux-c7-openssl-libs lt 1.0.1e_3 FreeBSD ge 11.0 lt 11.0_8 ge 10.3 lt 10.3_17 https://www.openssl.org/news/secadv/20170126.txt CVE-2016-7055 CVE-2017-3730 CVE-2017-3731 CVE-2017-3732 SA-17:02.openssl |