CVE-2019-5603
Published: Jul 26, 2019
Modified: Aug 4, 2024
Description
In FreeBSD 12.0-STABLE before r350261, 12.0-RELEASE before 12.0-RELEASE-p8, 11.3-STABLE before r350263, 11.3-RELEASE before 11.3-RELEASE-p1, and 11.2-RELEASE before 11.2-RELEASE-p12, system calls operating on file descriptors as part of mqueuefs did not properly release the reference allowing a malicious user to overflow the counter allowing access to files, directories, and sockets opened by processes owned by other users.
| Vendor | Product | Versions |
|---|---|---|
FreeBSD | FreeBSD | affected FreeBSD before 12.0-RELEASE-p8affected before 11.3-RELEASE-p1affected and before 11.2-RELEASE-p12 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now