CVE-2020-7457: Race Condition
In FreeBSD 12.1-STABLE before r359565, 12.1-RELEASE before p7, 11.4-STABLE before r362975, 11.4-RELEASE before p1, and 11.3-RELEASE before p11, missing synchronization in the IPV62292PKTOPTIONS socket option set handler contained a race condition allowing a malicious application to modify memory after being freed, possibly resulting in code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-7457?
CVE-2020-7457 is a vulnerability in FreeBSD that allows a malicious application to modify memory.
What is the severity of CVE-2020-7457?
The severity of CVE-2020-7457 is high with a CVSS score of 8.1.
How does CVE-2020-7457 impact FreeBSD?
CVE-2020-7457 impacts FreeBSD by allowing a malicious application to modify memory.
How can I fix CVE-2020-7457?
To fix CVE-2020-7457, it is recommended to apply the patches provided by FreeBSD.
Where can I find more information about CVE-2020-7457?
You can find more information about CVE-2020-7457 on the FreeBSD Security Advisories website and the NetApp Security Advisory website.