A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption. On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.
2024-02-15T05:15:09.110
2024-12-09T17:27:22.803
Analyzed
CVSSv3.1: 8.2 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | freebsd | freebsd | < 12.3 | Yes |
Operating System | freebsd | freebsd | 12.3 | Yes |
Operating System | freebsd | freebsd | 12.3 | Yes |
Operating System | freebsd | freebsd | 12.3 | Yes |
Operating System | freebsd | freebsd | 12.3 | Yes |
Operating System | freebsd | freebsd | 12.3 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |
Operating System | freebsd | freebsd | 13.0 | Yes |