CVE-2020-7469
Summary
| CVE | CVE-2020-7469 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-04 12:15:00 UTC |
| Updated | 2022-05-31 15:54:00 UTC |
| Description | In FreeBSD 12.2-STABLE before r367402, 11.4-STABLE before r368202, 12.2-RELEASE before p1, 12.1-RELEASE before p11 and 11.4-RELEASE before p5 the handler for a routing option caches a pointer into the packet buffer holding the ICMPv6 message. However, when processing subsequent options the packet buffer may be freed, rendering the cached pointer invalid. The network stack may later dereference the pointer, potentially triggering a use-after-free. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| CVE-2020-7469 FreeBSD Vulnerability in NetApp Products | NetApp Product Security |
CONFIRM |
security.netapp.com |
|
| security.FreeBSD.org/advisories/FreeBSD-SA-20:31.icmp6.asc |
MISC |
security.FreeBSD.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 690389 Free Berkeley Software Distribution (FreeBSD) Security Update for (8eed0c5c-3482-11eb-b87a-901b0ef719ab)