CVE-2020-25582: Race Condition
Published Mar 26, 2021
·Updated
In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 when a process, such as jexec(8) or killall(1), calls jailattach(2) to enter a jail, the jailed root can attach to it using ptrace(2) before the current working directory is changed.
Affected Software
12 affected components
FreeBSD FreeBSD=11.4
FreeBSD FreeBSD=11.4-p1
FreeBSD FreeBSD=11.4-p2
FreeBSD FreeBSD=11.4-p3
FreeBSD FreeBSD=11.4-p4
FreeBSD FreeBSD=11.4-p5
FreeBSD FreeBSD=11.4-p6
FreeBSD FreeBSD=11.4-p7
FreeBSD FreeBSD=12.2
FreeBSD FreeBSD=12.2-p1
FreeBSD FreeBSD=12.2-p2
FreeBSD FreeBSD=12.2-p3
Event History
Mar 26, 2021
CVE Published
via MITRE·08:41 PM
Data Sourced
via MITRE·08:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this FreeBSD vulnerability?
The vulnerability ID is CVE-2020-25582.
2
What is the severity rating of CVE-2020-25582?
The severity rating of CVE-2020-25582 is 8.7 out of 10.
3
Which versions of FreeBSD are affected by CVE-2020-25582?
FreeBSD versions 11.4, 12.2, and their respective patches (p1, p2, etc.) are affected.
4
What is the impact of CVE-2020-25582?
An attacker with root access in a jail can attach to a process before the current working directory is changed, potentially allowing unauthorized access.
5
Where can I find more information about CVE-2020-25582?
You can find more information about CVE-2020-25582 in the FreeBSD Security Advisory FreeBSD-SA-21:05.jail_chdir.