Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Security issues that affect the FreeBSD operating system or applications in the FreeBSD Ports Collection are documented using the Vulnerabilities and Exposures Markup Language (VuXML). The current VuXML document that serves as the source for the content of this site can be found:

Please report security issues to the FreeBSD Security Team at . Full contact details, including information handling policies and PGP key, can be found on the FreeBSD Security page.


Entered Topic
2023-02-08 LibreSSL -- Arbitrary memory read
2022-03-16 OpenSSL -- Infinite loop in BN_mod_sqrt parsing certificates
2021-03-16 LibreSSL -- use-after-free
2020-12-11 LibreSSL -- NULL pointer dereference
2018-10-29 OpenSSL -- Multiple vulnerabilities in 1.1 branch
2018-06-12 OpenSSL -- Client DoS due to large DH parameter
2017-04-28 LibreSSL -- TLS verification vulnerability
2017-01-11 openssl -- timing attack vulnerability
2016-09-26 OpenSSL -- multiple vulnerabilities
2016-06-09 OpenSSL -- vulnerability in DSA signing
2016-05-03 OpenSSL -- multiple vulnerabilities
2015-12-08 libressl -- NULL pointer dereference
2015-10-16 LibreSSL -- Memory leak and buffer overflow
2015-06-11 openssl -- multiple vulnerabilities
2015-03-19 OpenSSL -- multiple vulnerabilities
2015-01-22 LibreSSL -- DTLS vulnerability