Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w8p8-q938-ccr8

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption.

On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.

A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption.

On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.

EPSS

Процентиль: 40%
0.00185
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-120
CWE-787

Связанные уязвимости

CVSS3: 8.2
nvd
почти 2 года назад

A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption. On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.

CVSS3: 8.2
fstec
почти 4 года назад

Уязвимость функции nmreq_copyin() компонента netmap операционных систем FreeBSD, позволяющая нарушителю выполнить произвольный код в контексте ядра

EPSS

Процентиль: 40%
0.00185
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-120
CWE-787