← Back to CVE List

CVE-2022-23085

Published: 2024-02-15T05:15Z
Last Modified: 2024-12-09T17:27Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A user-provided integer option was passed to nmreq_copyin() without checking if it would overflow. This insufficient bounds checking could lead to kernel memory corruption. On systems configured to include netmap in their devfs_ruleset, a privileged process running in a jail can affect the host environment. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt