Remotely exploitable vulnerabilities in FreeBSD

In FreeBSD resolved Five vulnerabilities, including issues that could potentially lead to data overwrite at the kernel level when sending certain network packets, or allow a local user to escalate their privileges. The vulnerabilities have been fixed in updates 12.1-RELEASE-p5 and 11.3-RELEASE-p9.

The most dangerous vulnerability (CVE-2020-7454) is caused by inadequate packet size validation in the libalias library when parsing protocol-specific headers. The libalias library is used in the ipfw packet filter for address translation and includes standard functions for address replacement in IP packets and protocol parsing. This vulnerability allows reading or writing of data in the kernel memory area (when using the NAT implementation in the kernel) or in the natd process (when using the NAT implementation in user space) through the sending of specially crafted network packets. The issue does not affect NAT configurations built using pf and ipf packet filters, as well as ipfw configurations that do not use NAT.
CVE-2020-7455

Other vulnerabilities:

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster