A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption.
On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: freebsd
Published: 2024-02-15T04:52:17.556Z
Updated: 2024-08-03T03:28:43.504Z
Reserved: 2022-01-10T22:07:46.040Z
Link: CVE-2022-23085
Vulnrichment
Updated: 2024-08-03T03:28:43.504Z
NVD
Status : Awaiting Analysis
Published: 2024-02-15T05:15:09.110
Modified: 2024-08-01T13:42:36.137
Link: CVE-2022-23085
Redhat
No data.