FreeBSD OS Vulnerabilities Allow DoS, Code Execution, Bypass
Summary
CERT-Bund has issued a security advisory for FreeBSD OS, detailing multiple vulnerabilities with a CVSS base score of 7.5. Exploitation could lead to denial of service, arbitrary code execution, and security bypass. The advisory affects FreeBSD OS versions prior to 15.0, 14.4, and 13.5.
What changed
CERT-Bund has released security advisory WID-SEC-2026-0878 concerning multiple vulnerabilities in FreeBSD Project FreeBSD OS. These vulnerabilities, rated with a CVSS base score of 7.5 (High) and a temporal score of 6.5 (Medium), allow remote attackers to perform denial-of-service attacks, execute arbitrary code, and bypass security mechanisms. The advisory specifically impacts FreeBSD OS Stable versions prior to 15.0, 14.4, and 13.5.
Organizations using affected FreeBSD OS versions should review the advisory and apply available mitigations promptly. While the advisory does not specify a compliance deadline, immediate action is recommended to address the identified risks of code execution and denial of service. Affected systems include Linux and UNIX operating systems, with FreeBSD being a Unix derivative. Further information and version history can be found via the provided CVE and information links.
What to do next
- Review CERT-Bund advisory WID-SEC-2026-0878 for affected FreeBSD OS versions.
- Apply available mitigations for identified vulnerabilities.
- Update FreeBSD OS to patched versions (15.0, 14.4, 13.5 or later).
Source document (simplified)
[WID-SEC-2026-0878] FreeBSD Project FreeBSD OS: Mehrere Schwachstellen CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 25.03.2026 Stand 26.03.2026 Mitigation ja
Betroffene Systeme
Betriebssystem
- Linux
- UNIX
Produktbeschreibung
FreeBSD ist ein Open Source Betriebssystem aus der BSD Familie und gehört damit zu den Unix Derivaten.
Produkte
25.03.2026
- FreeBSD Project FreeBSD OS Stable <15.0
FreeBSD Project FreeBSD OS Stable <14.4
FreeBSD Project FreeBSD OS Stable <13.5
Angriff
Angriff
Ein Angreifer kann mehrere Schwachstellen in FreeBSD Project FreeBSD OS ausnutzen, um einen Denial of Service Angriff durchzuführen, um beliebigen Programmcode auszuführen, und um Sicherheitsvorkehrungen zu umgehen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Related changes
Source
Classification
Who this affects
Taxonomy
Browse Categories
Get Data Privacy & Cybersecurity alerts
Weekly digest. AI-summarized, no noise.
Free. Unsubscribe anytime.
Get alerts for this source
We'll email you when CERT-Bund Security Advisories publishes new changes.