In MidnightBSD before 1.2.6 and 1.3 before August 2020, and FreeBSD before 7, a NULL pointer dereference was found in the Linux emulation layer that allows attackers to crash the running kernel. During binary interaction, td->td_emuldata in sys/compat/linux/linux_emul.h is not getting initialized and returns NULL from em_find().
2020-09-03T15:15:11.457
2024-11-21T05:14:42.980
Modified
CVSSv3.1: 5.5 (MEDIUM)
AV:L/AC:L/Au:N/C:N/I:N/A:C
3.9
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | midnightbsd | midnightbsd | < 1.2.6 | Yes |
Application | midnightbsd | midnightbsd | ≤ 2020-08-19 | Yes |
Operating System | freebsd | freebsd | ≤ 7.0 | Yes |