Back to search
CVE-2024-25941
Published: Feb 15, 2024
Modified: Feb 13, 2025
PUBLISHED
Description
The jail(2) system call has not limited a visiblity of allocated TTYs (the kern.ttys sysctl). This gives rise to an information leak about processes outside the current jail. Attacker can get information about TTYs allocated on the host or in other jails. Effectively, the information printed by "pstat -t" may be leaked.
| Vendor | Product | Versions |
|---|---|---|
FreeBSD | FreeBSD | affected 14.0-RELEASE - < p5affected 13.2-RELEASE - < p10 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now