FreeBSD

FreeBSD 12 — mod_auth_mellon — vulnerability — patch and remediation guide — diagnosis and fix on FreeBSD 12

FreeBSD 12 — mod_auth_mellon — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 May 2026 Affected versions: FreeBSD 12 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: mod_auth_mellon — Redirect URL validation bypass Related CVEs: CVE-2019-13038 Upstream summary: Jakub Hrozek reports: Version 0.17.0 and older of mod_auth_mellon allows the redirect URL validation to be bypassed by specifying […]

Read more
FreeBSD 14 — tin — security advisory — patch and remediation guide — diagnosis and fix on FreeBSD 14

FreeBSD 14 — tin — security advisory — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 May 2026 Affected versions: FreeBSD 14 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: tin — buffer overflow vulnerabilities Upstream summary: Urs Janssen and Aleksey Salow report possible buffer overflows in tin versions 1.8.0 and 1.8.1. OpenPKG project elaborates there is an allocation off-by-one […]

Read more
FreeBSD 12 — gtk-pixbuf — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on FreeBSD 12

FreeBSD 12 — gtk-pixbuf — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 May 2026 Affected versions: FreeBSD 12 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: gdk-pixbuf — multiple vulnerabilities Related CVEs: CVE-2017-2862 CVE-2017-2870 Upstream summary: TALOS reports: An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality. An exploitable heap-overflow vulnerability exists in the gdk_pixbuf__jpeg_image_load_increment […]

Read more
FreeBSD 15 — age — security advisory — patch and remediation guide — diagnosis and fix on FreeBSD 15

FreeBSD 15 — age — security advisory — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 May 2026 Affected versions: FreeBSD 15 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: age — age vulnerable to malicious plugin names, recipients, or identities causing arbitrary binary execution Upstream summary: Filippo Valsorda reports: A plugin name containing a path separator may allow an […]

Read more
FreeBSD 14 — ziproxy — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on FreeBSD 14

FreeBSD 14 — ziproxy — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 May 2026 Affected versions: FreeBSD 14 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: ziproxy — security vulnerability in PNG decoder Related CVEs: CVE-2009-0804 CVE-2010-1513 Upstream summary: Daniel Mealha Cabrita reports: Fixed security vulnerability (heap-related) in PNG decoder. (new bug from 3.1.0) Table of […]

Read more
FreeBSD 15 — dillo — vulnerability — patch and remediation guide — diagnosis and fix on FreeBSD 15

FreeBSD 15 — dillo — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 25 May 2026 Affected versions: FreeBSD 15 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: dillo — format string vulnerability Related CVEs: CVE-2005-0012 Upstream summary: dillo contains a format string vulnerability which could lead to execution of arbitrary code simply by viewing a web page […]

Read more
FreeBSD 15 — roundcube — multiple vulnerabilities (16 CVEs) — patch and remediation guide — diagnosis and fix on FreeBSD 15

FreeBSD 15 — roundcube — multiple vulnerabilities (16 CVEs) — patch and remediation guide

🟠 High   ⏱ 15–60 min  Last verified: 25 May 2026 Affected versions: FreeBSD 15 📖 ~4 min read  •  Source: FreeBSD VuXML VuXML topic: Roundcube — Multiple vulnerabilities Related CVEs: CVE-2008-5619 CVE-2009-0413 CVE-2011-2937 CVE-2012-3508 CVE-2013-1904 CVE-2015-5381 CVE-2015-5383 CVE-2016-5103  +8 more Upstream summary: The Roundcube project reports: Cross-Site-Scripting vulnerability via SVG’s animate tag Information Disclosure […]

Read more
CHAT