PT-2021-12654 · Freebsd+1 · Freebsd+2
Megan2013678
·
Published
2020-09-02
·
Updated
2023-01-09
·
CVE-2020-7463
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
FreeBSD versions 11.3-RELEASE through 11.3-RELEASE before p13
FreeBSD versions 11.4-RELEASE through 11.4-RELEASE before p3
FreeBSD versions 12.1-RELEASE through 12.1-RELEASE before p9
FreeBSD versions 11.4-STABLE through 11.4-STABLE before r364651
FreeBSD versions 12.1-STABLE through 12.1-STABLE before r364644
Description:
The issue is caused by improper handling in the kernel, resulting in a use-after-free bug when sending large user messages from multiple threads on the same SCTP socket. This may lead to unintended kernel behavior, including a kernel panic. Improved memory management has been implemented to address the use-after-free issue.
Recommendations:
For FreeBSD versions 11.3-RELEASE through 11.3-RELEASE before p13, update to a version after p13.
For FreeBSD versions 11.4-RELEASE through 11.4-RELEASE before p3, update to a version after p3.
For FreeBSD versions 12.1-RELEASE through 12.1-RELEASE before p9, update to a version after p9.
For FreeBSD versions 11.4-STABLE through 11.4-STABLE before r364651, update to a version after r364651.
For FreeBSD versions 12.1-STABLE through 12.1-STABLE before r364644, update to a version after r364644.
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Freebsd
Apple Macos
Itunes