PT-2022-6110 · Freebsd · Freebsd

Lucas Leong

+1

·

Published

2022-02-18

·

Updated

2024-12-09

·

CVE-2022-23086

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FreeBSD (affected versions not specified)
Description The issue is caused by a buffer overflow in the mpr, mps, and mpt drivers, which can lead to heap data overwrite and potentially result in privilege escalation. Users with access to the mpr, mps, or mpt device node, which is only accessible to root and members of the operator group, may exploit this issue. The vulnerability can be triggered by allocating a buffer of a caller-specified size and copying a fixed-size header to it, overwriting other heap content if the specified size is too small.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-00050
CVE-2022-23086
FREEBSD-SA-22_06
ZDI-22-1293
ZDI-22-1294

Affected Products

Freebsd