In FreeBSD 12.2-STABLE before r369346, 11.4-STABLE before r369345, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 a regression in the login.access(5) rule processor has the effect of causing rules to fail to match even when they should not. This means that rules denying access may be ignored.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: freebsd

Published: 2021-03-26T20:38:30

Updated: 2024-08-04T15:33:05.683Z

Reserved: 2020-09-14T00:00:00

Link: CVE-2020-25580

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-03-26T21:15:12.787

Modified: 2022-07-12T17:42:04.277

Link: CVE-2020-25580

cve-icon Redhat

No data.