Lucene search

K
zdiM00nbsdZDI-20-949
HistoryAug 06, 2020 - 12:00 a.m.

FreeBSD Kernel sendmsg System Call Time-Of-Check Time-Of-Use Privilege Escalation Vulnerability

2020-08-0600:00:00
m00nbsd
www.zerodayinitiative.com
19

0.0004 Low

EPSS

Percentile

15.9%

This vulnerability allows local attackers to escalate privileges on affected installations of FreeBSD Kernel. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of arguments to the sendmsg system call. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of the kernel.

0.0004 Low

EPSS

Percentile

15.9%