Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
CVE-2020-25584
CVE information
Published
Last Modified
CVSSv2.0 Severity
CVSSv3.1 Severity
Impact Analysis
Description
In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, and 11.4-RELEASE before p9, a superuser inside a FreeBSD jail configured with the non-default allow.mount permission could cause a race condition between the lookup of ".." and remounting a filesystem, allowing access to filesystem hierarchy outside of the jail..
CVSSv2.0 Score
- Severity
- Medium
- Base Score
- 6.2/10
- Exploit Score
- 1.9/10
- Access Vector
- Local
- Access Complexity
- High
- Authentication Required
- None
- Impact Score
- 10/10
- Confidentiality Impact
- Complete
- Availability Impact
- Complete
- Integrity Impact
- Complete
CVSSv3.1 Score
- Severity
- High
- Base Score
- 7.5/10
- Exploit Score
- 0.8/10
- Access Vector
- Local
- Access Complexity
- High
- Privileges Required
- High
- Impact Score
- 6/10
- Confidentiality Impact
- High
- Availability Impact
- High
- Integrity Impact
- High
- Scope
- Changed
- User Interaction
- None
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:o:freebsd:freebsd:11.4:beta1:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:-:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:rc2:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:rc1:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:p1:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:p3:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:p2:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:12.2:p1:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:12.2:p2:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:12.2:-:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:* |
Yes
|
- | 11.4 | |
cpe:2.3:o:freebsd:freebsd:11.4:p4:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:11.4:p5:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:rc5:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:rc1:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:rc2:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:rc4:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:beta1:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:beta2:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:beta3:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:beta4:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:13.0:rc3:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:* |
Yes
|
12.0 | 12.2 |