- EPSS 0.48%
- Veröffentlicht 29.03.2021 20:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:10
In FreeBSD 12.2-STABLE before r368250, 11.4-STABLE before r368253, 12.2-RELEASE before p1, 12.1-RELEASE before p11 and 11.4-RELEASE before p5 when processing a DNSSL option, rtsold(8) decodes domain name labels per an encoding specified in RFC 1035 i...
CVE-2020-7461
- EPSS 15.67%
- Veröffentlicht 26.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:37:11
In FreeBSD 12.1-STABLE before r365010, 11.4-STABLE before r365011, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-RELEASE before p13, dhclient(8) fails to handle certain malformed input related to handling of DHCP option 119 resulting a hea...
CVE-2020-7462
- EPSS 0.05%
- Veröffentlicht 26.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:37:11
In 11.4-PRERELEASE before r360733 and 11.3-RELEASE before p13, improper mbuf handling in the kernel causes a use-after-free bug by sending IPv6 Hop-by-Hop options over the loopback interface. The use-after-free situation may result in unintended kern...
CVE-2020-7463
- EPSS 0.05%
- Veröffentlicht 26.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:37:11
In FreeBSD 12.1-STABLE before r364644, 11.4-STABLE before r364651, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 11.3-RELEASE before p13, improper handling in the kernel causes a use-after-free bug by sending large user messages from multiple t...
CVE-2020-7464
- EPSS 0.35%
- Veröffentlicht 26.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:37:11
In FreeBSD 12.2-STABLE before r365730, 11.4-STABLE before r365738, 12.1-RELEASE before p10, 11.4-RELEASE before p4, and 11.3-RELEASE before p14, a programming error in the ure(4) device driver caused some Realtek USB Ethernet interfaces to incorrectl...
CVE-2020-7467
- EPSS 0.04%
- Veröffentlicht 26.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:37:12
In FreeBSD 12.2-STABLE before r365767, 11.4-STABLE before r365769, 12.1-RELEASE before p10, 11.4-RELEASE before p4 and 11.3-RELEASE before p14 a number of AMD virtualization instructions operate on host physical addresses, are not subject to nested p...
- EPSS 0.66%
- Veröffentlicht 26.03.2021 21:15:13
- Zuletzt bearbeitet 21.11.2024 05:37:12
In FreeBSD 12.2-STABLE before r365772, 11.4-STABLE before r365773, 12.1-RELEASE before p10, 11.4-RELEASE before p4 and 11.3-RELEASE before p14 a ftpd(8) bug in the implementation of the file system sandbox, combined with capabilities available to an ...
CVE-2020-25578
- EPSS 7.99%
- Veröffentlicht 26.03.2021 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:09
In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12.2-RELEASE before p3, 12.1-RELEASE before p13 and 11.4-RELEASE before p7 several file systems were not properly initializing the d_off field of the dirent structures returned by VOP...
CVE-2020-25579
- EPSS 0.42%
- Veröffentlicht 26.03.2021 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:09
In FreeBSD 12.2-STABLE before r368969, 11.4-STABLE before r369047, 12.2-RELEASE before p3, 12.1-RELEASE before p13 and 11.4-RELEASE before p7 msdosfs(5) was failing to zero-fill a pair of padding fields in the dirent structure, resulting in a leak of...
CVE-2020-25580
- EPSS 0.3%
- Veröffentlicht 26.03.2021 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:18:09
In FreeBSD 12.2-STABLE before r369346, 11.4-STABLE before r369345, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 a regression in the login.access(5) rule processor has the effect of causing rules to fail to match even when they should not. This m...