CVE-2019-15876
28.04.2020, 20:15
In FreeBSD 12.1-STABLE before r356089, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r356090, and 11.3-RELEASE before 11.3-RELEASE-p7, driver specific ioctl command handlers in the oce network driver failed to check whether the caller has sufficient privileges allowing unprivileged users to send passthrough commands to the device firmware.Enginsight
| Vendor | Product | Version |
|---|---|---|
| freebsd | freebsd | 11.3 |
| freebsd | freebsd | 11.3:p1 |
| freebsd | freebsd | 11.3:p2 |
| freebsd | freebsd | 11.3:p3 |
| freebsd | freebsd | 11.3:p4 |
| freebsd | freebsd | 11.3:p5 |
| freebsd | freebsd | 11.3:p6 |
| freebsd | freebsd | 12.1 |
| freebsd | freebsd | 12.1:p1 |
| freebsd | freebsd | 12.1:p2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration