CVE-2014-3711: Freebsd

Medium severity, CVSS 5.0. EPSS: 1.6% chance of exploitation in the next 30 days.

namei in FreeBSD 9.1 through 10.1-RC2 allows remote attackers to cause a denial of service (memory exhaustion) via vectors that trigger a sandboxed process to look up a large number of nonexistent path names.

Affected products

  • Freebsd Freebsd: version 9.1 only; version 9.2 only; version 9.3 only; version 10.0 only; version 10.1 only

Published 2014-10-27. Last modified 2026-06-17.