CVE-2022-23085
—CVSS 3.1
8.2 high
EPSS
<1%p41
Published
()
Modified
Description
A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption. On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.
- Vendors
- freebsd
- Products
- freebsd
- Weakness
- CWE-787, CWE-120
- Vector
- CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.