FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-19 20:48:44 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
5ddbe47b-1891-11ed-9b22-002590c1f29cFreeBSD -- AIO credential reference count leak

Problem Description:

The aio_aqueue function, used by the lio_listio system call, fails to release a reference to a credential in an error case.

Impact:

An attacker may cause the reference count to overflow, leading to a use after free (UAF).


Discovery 2022-08-09
Entry 2022-08-10
Modified 2022-08-10
FreeBSD-kernel
ge 13.0 lt 13.0_12

ge 12.3 lt 12.3_6

CVE-2022-23090
SA-22:10.aio