Impact
This vulnerability is a use‑after‑free in the Unix domain socket receive path for SOCK_STREAM. During error handling, freed control message buffers are left referenced in the socket buffer, allowing a malicious user to read or overwrite freed memory. An attacker with a standard user account can trigger the flaw to gain root privileges on the affected system.
Affected Systems
FreeBSD FreeBSD – the vulnerability applies to the operating system’s Unix socket implementation. No specific version range is provided in the advisory, so any recent releases before an official fix may be affected.
Risk and Exploitability
The flaw can be exploited locally by a non‑privileged user to obtain full system access. The CVSS score is 7.8, and the EPSS score is < 1%, but the severity remains high because the attack vector is local and the impact is complete impersonation. The vulnerability is not listed in the CISA KEV catalog, suggesting no known active exploits, yet the potential for privilege escalation warrants immediate attention. Since no public mitigation is available, patching or upgrading the FreeBSD stack is the recommended course.
OpenCVE Enrichment