Exposure of FreeBSD

Operating systems
135
exposure score
2,482
sites use
0
exploited
9
critical
Vexday analysis

Com 162 CVEs catalogadas e nenhuma entrada no catálogo CISA KEV, o FreeBSD apresenta taxa de exploração ativa abaixo da média geral do catálogo, o que sugere um perfil de risco relativamente contido em termos de ameaças confirmadas em produção. Ainda assim, 7 vulnerabilidades de severidade crítica e 16 surgidas nos últimos 90 dias indicam uma superfície ativa que requer monitoramento contínuo. O tipo de falha mais frequente é CWE-787 (escrita fora dos limites de memória), classe de vulnerabilidade com histórico relevante de exploração em sistemas de baixo nível. A CVE com maior pontuação EPSS no conjunto é CVE-2020-7457, com valor de 0,33, sinalizando probabilidade não desprezível de exploração e merecendo atenção prioritária em ambientes que ainda não aplicaram a correção correspondente.

CVEs

203 results
CVE-2026-45253HIGHMissing validation in ptrace(PT_SC_REMOTE)EPSS 0.2%CVE-2026-45254MEDIUMIncorrect libcap_net limitation list manipulationEPSS 0.2%CVE-2023-5370arm64 boot CPUs may lack speculative execution protectionsEPSS 0.2%CVE-2023-5369copy_file_range insufficient capability rights checkEPSS 0.2%CVE-2024-25941LOWjail(2) information leakEPSS 0.2%CVE-2020-25584In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, aEPSS 0.2%CVE-2026-7270HIGHLocal privilege escalation via execve()EPSS 0.2%CVE-2026-45257HIGHArbitrary file overwrite via the KTLS receive pathEPSS 0.2%CVE-2022-23089MEDIUMOut of bound read in elf_note_prpsinfo()EPSS 0.2%CVE-2022-23091MEDIUMMemory disclosure by stale virtual memory mappingEPSS 0.2%CVE-2026-39461HIGHselect(2) file descriptor set overflow causes stack overflowEPSS 0.2%CVE-2026-45251HIGHKernel use-after-free via file descriptor syscallsEPSS 0.2%CVE-2026-5398HIGHKernel use-after-free bug in the TIOCNOTTY handlerEPSS 0.2%CVE-2026-49429HIGHKernel heap overflow in ZFS_IOC_USERSPACE_MANY ioctlEPSS 0.2%CVE-2026-49430HIGHKernel heap overflow in ZFS_IOC_RECV_NEW ioctlEPSS 0.2%CVE-2026-6386MEDIUMMissing large page handling in pmap_pkru_update_range()EPSS 0.2%CVE-2026-45258HIGHMultiple vulnerabilities in the sound(4) mmap pathEPSS 0.2%CVE-2026-49416HIGHInteger overflow in vt(4) CONS_HISTORY ioctlEPSS 0.2%CVE-2026-49414HIGHASLR bypass for setuid executables via procctl(2)EPSS 0.2%CVE-2026-49412HIGHUse-after-free bug in the IPV6_MSFILTER socket option handlerEPSS 0.2%