CVE-2022-23084: Potential jail escape vulnerabilities in netmap
The total size of the user-provided nmreq to nmreqcopyin() was first computed and then trusted during the copyin. This time-of-check to time-of-use bug could lead to kernel memory corruption.
On systems configured to include netmap in their devfsruleset, a privileged process running in a jail can affect the host environment.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-23084?
CVE-2022-23084 is classified as a high-severity vulnerability due to its potential to lead to kernel memory corruption.
How do I fix CVE-2022-23084?
To address CVE-2022-23084, users should update to the latest patched version of FreeBSD that resolves this vulnerability.
What systems are affected by CVE-2022-23084?
CVE-2022-23084 affects FreeBSD versions 12.0 through 12.3 and versions from 13.0 to 13.0-rc5.
What kind of exploit can result from CVE-2022-23084?
CVE-2022-23084 can be exploited by a privileged process to potentially corrupt kernel memory, leading to system instability.
How can I identify if my FreeBSD system is vulnerable to CVE-2022-23084?
You can check the version of FreeBSD running on your system to determine if it falls within the affected version range for CVE-2022-23084.