1.0 Introduction
Recently, FreeBSD has released security updates to address multiple critical vulnerabilities discovered in FreeBSD systems.
2.0 Impact
This vulnerability could allow a determined attacker to execute arbitrary code remotely with root privileges, potentially compromising the entire system, and denial of service.
3.0 Affected Products
- FreeBSD-SA-24:14.umtx
- FreeBSD-SA-24:13.openssl
- FreeBSD-SA-24:12.bhyve
- FreeBSD-SA-24:11.ctl
- FreeBSD-SA-24:10.bhyve
- FreeBSD-SA-24:09.libnv
4.0 Recommendations
CyberSecurity Malaysia encourages users and administrators to review the FreeBSD release and apply the necessary updates.
Kindly refer to the following URL:
- FreeBSD-SA-24:14.umtx: https://www.freebsd.org/security/advisories/FreeBSD-SA-24:14.umtx.asc
- FreeBSD-SA-24:13.openssl: https://www.freebsd.org/security/advisories/FreeBSD-SA-24:13.openssl.asc
- FreeBSD-SA-24:12.bhyve: https://www.freebsd.org/security/advisories/FreeBSD-SA-24:12.bhyve.asc
- FreeBSD-SA-24:11.ctl: https://www.freebsd.org/security/advisories/FreeBSD-SA-24:11.ctl.asc
- FreeBSD-SA-24:10.bhyve: https://www.freebsd.org/security/advisories/FreeBSD-SA-24:10.bhyve.asc
- FreeBSD-SA-24:09.libnv: https://www.freebsd.org/security/advisories/FreeBSD-SA-24:09.libnv.asc
For further enquiries, please contact Cyber999 Incident Response Centre through the following channels:
E-mail: cyber999[at]cybersecurity.my
Phone: 1-300-88-2999 (monitored during business hours)
Mobile: +60 19 2665850 (24x7 call incident reporting)
Business Hours: Mon - Fri 08:30 -17:30 MYT
Web: https://www.mycert.org.my
5.0 References
- https://www.freebsd.org/security/advisories/
- https://www.freebsd.org/security/advisories/FreeBSD-SA-24:09.libnv.asc
- https://www.freebsd.org/security/advisories/FreeBSD-SA-24:10.bhyve.asc
- https://www.freebsd.org/security/advisories/FreeBSD-SA-24:11.ctl.asc
- https://www.freebsd.org/security/advisories/FreeBSD-SA-24:12.bhyve.asc
- https://www.freebsd.org/security/advisories/FreeBSD-SA-24:13.openssl.asc
- https://www.freebsd.org/security/advisories/FreeBSD-SA-24:14.umtx.asc