CVE-2024-39281
Nov. 12, 2024, 3:48 p.m.
Tags
Product(s) Impacted
FreeBSD
Description
The command ctl_persistent_reserve_out allows the caller to specify an arbitrary size which will be passed to the kernel's memory allocator.
Weaknesses
CWE-20
Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
CWE ID: 20Date
Published: Nov. 12, 2024, 3:15 p.m.
Last Modified: Nov. 12, 2024, 3:48 p.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
secteam@freebsd.org