Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Current firewall vulnerabilities CVE-2022-0934, CVE-2022-20698, CVE-2019-19906, CVE-2021-45079, CVE-2022-0547

    Scheduled Pinned Locked Moved pfSense Packages
    9 Posts 4 Posters 2.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • JonathanLeeJ
      JonathanLee
      last edited by JonathanLee

      Hello fellow netgate community members,

      is there any quick fix for any of the following CVEs on the stable version of the firewall?

      Fetching vuln.xml.xz: .......... done
      openvpn-2.5.4_1 is vulnerable:
      openvpn -- Potential authentication by-pass with multiple deferred authentication plug-ins
      CVE: CVE-2022-0547
      WWW: https://vuxml.FreeBSD.org/freebsd/45a72180-a640-11ec-a08b-85298243e224.html

      strongswan-5.9.4 is vulnerable:
      strongswan - Incorrect Handling of Early EAP-Success Messages
      CVE: CVE-2021-45079
      WWW: https://vuxml.FreeBSD.org/freebsd/ccaea96b-7dcd-11ec-93df-00224d821998.html

      cyrus-sasl-2.1.27_2 is vulnerable:
      cyrus-sasl -- Fix off by one error
      CVE: CVE-2019-19906
      WWW: https://vuxml.FreeBSD.org/freebsd/a80c6273-988c-11ec-83ac-080027415d17.html

      clamav-0.104.1,1 is vulnerable:
      clamav -- invalid pointer read that may cause a crash
      CVE: CVE-2022-20698
      WWW: https://vuxml.FreeBSD.org/freebsd/2a6106c6-73e5-11ec-8fa2-0800270512f4.html

      dnsmasq-2.86,1 is vulnerable:
      dnsmasq -- heap use-after-free in dhcp6_no_relay
      CVE: CVE-2022-0934
      WWW: https://vuxml.FreeBSD.org/freebsd/3f321a5a-b33b-11ec-80c2-1bb2c6a00592.html

      5 problem(s) in 5 installed package(s) found.

      Screen Shot 2022-04-03 at 9.24.15 AM.png
      (Image: current CVEs listed on firewall)

      Make sure to upvote

      W 2 Replies Last reply Reply Quote 0
      • W
        Woundeddog @JonathanLee
        last edited by

        This post is deleted!
        1 Reply Last reply Reply Quote 0
        • W
          Woundeddog @JonathanLee
          last edited by

          This post is deleted!
          1 Reply Last reply Reply Quote 0
          • Cool_CoronaC
            Cool_Corona
            last edited by

            Getting this on 2.5.2

            Fetching vuln.xml.xz: .......... done
            curl-7.76.1 is vulnerable:
            curl -- Multiple vulnerabilities
            CVE: CVE-2022-30115
            CVE: CVE-2022-27782
            CVE: CVE-2022-27781
            CVE: CVE-2022-27780
            CVE: CVE-2022-27779
            CVE: CVE-2022-27778
            WWW: https://vuxml.FreeBSD.org/freebsd/11e36890-d28c-11ec-a06f-d4c9ef517024.html

            cURL -- Multiple vulnerabilities
            CVE: CVE-2021-22926
            CVE: CVE-2021-22925
            CVE: CVE-2021-22924
            CVE: CVE-2021-22923
            CVE: CVE-2021-22922
            WWW: https://vuxml.FreeBSD.org/freebsd/aa646c01-ea0d-11eb-9b84-d4c9ef517024.html

            cURL -- Multiple vulnerabilities
            CVE: CVE-2021-22947
            CVE: CVE-2021-22946
            CVE: CVE-2021-22945
            WWW: https://vuxml.FreeBSD.org/freebsd/c9221ec9-17a2-11ec-b335-d4c9ef517024.html

            cURL -- Multiple vulnerabilities
            CVE: CVE-2022-27776
            CVE: CVE-2022-27775
            CVE: CVE-2022-27774
            CVE: CVE-2022-22576
            WWW: https://vuxml.FreeBSD.org/freebsd/92a4d881-c6cf-11ec-a06f-d4c9ef517024.html

            python38-3.8.10 is vulnerable:
            Python -- multiple vulnerabilities
            WWW: https://vuxml.FreeBSD.org/freebsd/145ce848-1165-11ec-ac7e-08002789875b.html

            openvpn-2.5.2_2 is vulnerable:
            openvpn -- Potential authentication by-pass with multiple deferred authentication plug-ins
            CVE: CVE-2022-0547
            WWW: https://vuxml.FreeBSD.org/freebsd/45a72180-a640-11ec-a08b-85298243e224.html

            strongswan-5.9.2_2 is vulnerable:
            strongswan - Incorrect Handling of Early EAP-Success Messages
            CVE: CVE-2021-45079
            WWW: https://vuxml.FreeBSD.org/freebsd/ccaea96b-7dcd-11ec-93df-00224d821998.html

            strongswan - denial-of-service vulnerability in the gmp plugin/denial-of-service vulnerability in the in-memory certificate cache
            CVE: CVE-2021-41991
            CVE: CVE-2021-41990
            WWW: https://vuxml.FreeBSD.org/freebsd/58528a94-5100-4208-a04d-edc01598cf01.html

            cyrus-sasl-2.1.27_1 is vulnerable:
            cyrus-sasl -- Fix off by one error
            CVE: CVE-2019-19906
            WWW: https://vuxml.FreeBSD.org/freebsd/a80c6273-988c-11ec-83ac-080027415d17.html

            hiredis-0.13.3 is vulnerable:
            hiredis -- integer/buffer overflow
            CVE: CVE-2021-32765
            WWW: https://vuxml.FreeBSD.org/freebsd/2220827b-c732-11ec-b272-901b0e934d69.html

            mpd5-5.9 is vulnerable:
            MPD5 PPPoE Server remotely exploitable crash
            WWW: https://vuxml.FreeBSD.org/freebsd/f55921aa-10c9-11ec-8647-00e0670f2660.html

            nss-3.66 is vulnerable:
            NSS -- Memory corruption
            CVE: CVE-2021-43527
            WWW: https://vuxml.FreeBSD.org/freebsd/47695a9c-5377-11ec-8be6-d4c9ef517024.html

            redis-6.0.14 is vulnerable:
            redis -- multiple vulnerabilities
            CVE: CVE-2021-32626
            CVE: CVE-2021-32627
            CVE: CVE-2021-32628
            CVE: CVE-2021-32672
            CVE: CVE-2021-32675
            CVE: CVE-2021-32687
            CVE: CVE-2021-32762
            CVE: CVE-2021-41099
            WWW: https://vuxml.FreeBSD.org/freebsd/9b4806c1-257f-11ec-9db5-0800270512f4.html

            redis -- Multiple vulnerabilities
            CVE: CVE-2022-24736
            CVE: CVE-2022-24735
            WWW: https://vuxml.FreeBSD.org/freebsd/cc42db1c-c65f-11ec-ad96-0800270512f4.html

            redis -- Integer overflow issues with BITFIELD command on 32-bit systems
            CVE: CVE-2021-32761
            WWW: https://vuxml.FreeBSD.org/freebsd/c561ce49-eabc-11eb-9c3f-0800270512f4.html

            dnsmasq-2.85_1,1 is vulnerable:
            dnsmasq -- heap use-after-free in dhcp6_no_relay
            CVE: CVE-2022-0934
            WWW: https://vuxml.FreeBSD.org/freebsd/3f321a5a-b33b-11ec-80c2-1bb2c6a00592.html

            16 problem(s) in 10 installed package(s) found.

            Would be nice to see patches to the stable versions.

            JonathanLeeJ 1 Reply Last reply Reply Quote 1
            • W
              Woundeddog
              last edited by stephenw10

              [removed]

              stephenw10S 1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator @Woundeddog
                last edited by

                @woundeddog said in Current firewall vulnerabilities CVE-2022-0934, CVE-2022-20698, CVE-2019-19906, CVE-2021-45079, CVE-2022-0547:

                thats nothing BUCH of command in dos, i created a script of you all want it funny

                Um...wat?! This looks like a setup for spam. Justify it or it will removed.

                Steve

                JonathanLeeJ 1 Reply Last reply Reply Quote 1
                • JonathanLeeJ
                  JonathanLee @stephenw10
                  last edited by

                  @stephenw10 I agree 💯

                  Make sure to upvote

                  1 Reply Last reply Reply Quote 0
                  • JonathanLeeJ
                    JonathanLee @Cool_Corona
                    last edited by

                    @cool_corona I had honestly couldn't believe they have a built in command that will check CVE numbers similar to Kali when you run pen tests. But it's built in to pfSense.

                    Make sure to upvote

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by stephenw10

                      It's built into the FreeBSD package system. It would be silly for us not to carry that across.

                      1 Reply Last reply Reply Quote 1
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.