PT-2019-17773 · Freebsd · Bhyve+1

Reno Robert

·

Published

2019-07-24

·

Updated

2023-03-01

·

CVE-2019-5604

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions FreeBSD versions 11.2-RELEASE through 11.2-RELEASE-p11 FreeBSD versions 11.3-RELEASE through 11.3-RELEASE-p0 FreeBSD versions 12.0-RELEASE through 12.0-RELEASE-p7 FreeBSD versions 11.3-STABLE before r350247 FreeBSD versions 12.0-STABLE before r350246
Description The emulated XHCI device included with the bhyve hypervisor in FreeBSD does not properly validate data provided by the guest, allowing an out-of-bounds read. This provides a malicious guest the possibility to crash the system or access system memory.
Recommendations For FreeBSD versions 11.2-RELEASE through 11.2-RELEASE-p11, update to 11.2-RELEASE-p12 or later. For FreeBSD versions 11.3-RELEASE through 11.3-RELEASE-p0, update to 11.3-RELEASE-p1 or later. For FreeBSD versions 12.0-RELEASE through 12.0-RELEASE-p7, update to 12.0-RELEASE-p8 or later. For FreeBSD versions 11.3-STABLE before r350247, update to r350247 or later. For FreeBSD versions 12.0-STABLE before r350246, update to r350246 or later.

Fix

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2019-5604
FREEBSD-SA-19_16

Affected Products

Freebsd
Bhyve