Skip to content

Commit

Permalink
security/vuxml: add FreeBSD SA-21:14.ggatec
Browse files Browse the repository at this point in the history
  • Loading branch information
ppaeps committed Aug 25, 2021
1 parent 7f941a9 commit 9d7f0b3
Showing 1 changed file with 31 additions and 0 deletions.
31 changes: 31 additions & 0 deletions security/vuxml/vuln-2021.xml
@@ -1,3 +1,34 @@
<vuln vid="3e9d2fde-0567-11ec-b69d-4062311215d5">
<topic>FreeBSD -- Remote code execution in ggatec(8)</topic>
<affects>
<package>
<name>FreeBSD</name>
<range><ge>13.0</ge><lt>13.0_4</lt></range>
<range><ge>12.2</ge><lt>12.2_10</lt></range>
<range><ge>11.4</ge><lt>11.4_13</lt></range>
</package>
</affects>
<description>
<body xmlns="http://www.w3.org/1999/xhtml">
<h1>Problem Description:</h1>
<p>The ggatec(8) daemon does not validate the size of a response before writing
it to a fixed-sized buffer. This allows to overwrite the stack of ggatec(8).</p>
<h1>Impact:</h1>
<p>A malicious ggated(8) or an attacker in a priviledged network position can
overwrite the stack with crafted content and potentially execute arbitrary
code.</p>
</body>
</description>
<references>
<cvename>CVE-2021-29630</cvename>
<freebsdsa>SA-21:14.ggatec</freebsdsa>
</references>
<dates>
<discovery>2021-08-24</discovery>
<entry>2021-08-25</entry>
</dates>
</vuln>

<vuln vid="a6d5d4c1-0564-11ec-b69d-4062311215d5">
<topic>FreeBSD -- Missing error handling in bhyve(8) device models</topic>
<affects>
Expand Down

0 comments on commit 9d7f0b3

Please sign in to comment.