CVE-2019-5600: Buffer Overflow
In FreeBSD 12.0-STABLE before r349622, 12.0-RELEASE before 12.0-RELEASE-p7, 11.3-PRERELEASE before r349624, 11.3-RC3 before 11.3-RC3-p1, and 11.2-RELEASE before 11.2-RELEASE-p11, a bug in iconv implementation may allow an attacker to write past the end of an output buffer. Depending on the implementation, an attacker may be able to create a denial of service, provoke incorrect program behavior, or induce a remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-5600?
CVE-2019-5600 is considered a high severity vulnerability due to the potential for buffer overflow attacks.
How do I fix CVE-2019-5600?
To fix CVE-2019-5600, update to FreeBSD version 12.0-RELEASE-p7 or higher, or 11.2-RELEASE-p11 or higher.
What systems are affected by CVE-2019-5600?
CVE-2019-5600 affects FreeBSD versions 11.2, 11.3, and 12.0 prior to specific security patches.
Can CVE-2019-5600 be exploited remotely?
Yes, CVE-2019-5600 can potentially be exploited remotely if the affected system is exposed.
Is my version of FreeBSD vulnerable to CVE-2019-5600?
If you are running FreeBSD versions earlier than 12.0-RELEASE-p7 or 11.2-RELEASE-p11, your system is vulnerable to CVE-2019-5600.