A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption. On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: freebsd

Published: 2024-02-15T04:52:17.556Z

Updated: 2024-08-03T03:28:43.504Z

Reserved: 2022-01-10T22:07:46.040Z

Link: CVE-2022-23085

cve-icon Vulnrichment

Updated: 2024-08-03T03:28:43.504Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-02-15T05:15:09.110

Modified: 2024-08-01T13:42:36.137

Link: CVE-2022-23085

cve-icon Redhat

No data.