PT-2019-17773 · Freebsd · Bhyve+1
Reno Robert
·
Published
2019-07-24
·
Updated
2023-03-01
·
CVE-2019-5604
CVSS v3.1
9.6
Critical
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
FreeBSD versions 11.2-RELEASE through 11.2-RELEASE-p11
FreeBSD versions 11.3-RELEASE through 11.3-RELEASE-p0
FreeBSD versions 12.0-RELEASE through 12.0-RELEASE-p7
FreeBSD versions 11.3-STABLE before r350247
FreeBSD versions 12.0-STABLE before r350246
Description
The emulated XHCI device included with the bhyve hypervisor in FreeBSD does not properly validate data provided by the guest, allowing an out-of-bounds read. This provides a malicious guest the possibility to crash the system or access system memory.
Recommendations
For FreeBSD versions 11.2-RELEASE through 11.2-RELEASE-p11, update to 11.2-RELEASE-p12 or later.
For FreeBSD versions 11.3-RELEASE through 11.3-RELEASE-p0, update to 11.3-RELEASE-p1 or later.
For FreeBSD versions 12.0-RELEASE through 12.0-RELEASE-p7, update to 12.0-RELEASE-p8 or later.
For FreeBSD versions 11.3-STABLE before r350247, update to r350247 or later.
For FreeBSD versions 12.0-STABLE before r350246, update to r350246 or later.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Freebsd
Bhyve