PT-2022-6110 · Freebsd · Freebsd
Lucas Leong
+1
·
Published
2022-02-18
·
Updated
2024-12-09
·
CVE-2022-23086
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
FreeBSD (affected versions not specified)
Description
The issue is caused by a buffer overflow in the mpr, mps, and mpt drivers, which can lead to heap data overwrite and potentially result in privilege escalation. Users with access to the mpr, mps, or mpt device node, which is only accessible to root and members of the operator group, may exploit this issue. The vulnerability can be triggered by allocating a buffer of a caller-specified size and copying a fixed-size header to it, overwriting other heap content if the specified size is too small.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Memory Corruption
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Freebsd