CVE-2021-29628: High severity freebsd kernel vulnerability
In FreeBSD 13.0-STABLE before n245764-876ffe28796c, 12.2-STABLE before r369857, 13.0-RELEASE before p1, and 12.2-RELEASE before p7, a system call triggering a fault could cause SMAP protections to be disabled for the duration of the system call. This weakness could be combined with other kernel bugs to craft an exploit.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-29628?
CVE-2021-29628 is a vulnerability in FreeBSD that allows a system call triggering a fault to disable SMAP protections.
How does CVE-2021-29628 affect FreeBSD?
CVE-2021-29628 affects FreeBSD versions 13.0-STABLE before n245764-876ffe28796c, 12.2-STABLE before r369857, 13.0-RELEASE before p1, and 12.2-RELEASE before p7.
What is the severity of CVE-2021-29628?
The severity of CVE-2021-29628 is high with a CVSS score of 7.5.
How do I fix CVE-2021-29628?
To fix CVE-2021-29628, upgrade to FreeBSD versions n245764-876ffe28796c, r369857, p1, or p7 depending on the affected release.
Where can I find more information about CVE-2021-29628?
You can find more information about CVE-2021-29628 in the advisory published by FreeBSD and NetApp.