Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-23085


A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption. On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.


Published

2024-02-15T05:15:09.110

Last Modified

2024-12-09T17:27:22.803

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.2 (HIGH)

Weaknesses
  • Type: Primary
    CWE-787
  • Type: Secondary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System freebsd freebsd < 12.3 Yes
Operating System freebsd freebsd 12.3 Yes
Operating System freebsd freebsd 12.3 Yes
Operating System freebsd freebsd 12.3 Yes
Operating System freebsd freebsd 12.3 Yes
Operating System freebsd freebsd 12.3 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes
Operating System freebsd freebsd 13.0 Yes

References