Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5rj6-cmvm-pw98

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver failed to check whether the caller has sufficient privileges allowing unprivileged users to trigger updates to the device's non-volatile memory.

In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver failed to check whether the caller has sufficient privileges allowing unprivileged users to trigger updates to the device's non-volatile memory.

EPSS

Процентиль: 15%
0.00047
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.5
nvd
почти 6 лет назад

In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver failed to check whether the caller has sufficient privileges allowing unprivileged users to trigger updates to the device's non-volatile memory.

EPSS

Процентиль: 15%
0.00047
Низкий

Дефекты

CWE-20