Critical severity9.8NVD Advisory· Published May 13, 2020· Updated Jun 17, 2026
CVE-2019-15880
CVE-2019-15880
Description
In FreeBSD 12.1-STABLE before r356911, and 12.1-RELEASE before p5, insufficient checking in the cryptodev module allocated the size of a kernel buffer based on a user-supplied length allowing an unprivileged process to trigger a kernel panic.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:o:freebsd:freebsd:12.1:-:*:*:*:*:*:*+ 4 more
- cpe:2.3:o:freebsd:freebsd:12.1:-:*:*:*:*:*:*
- cpe:2.3:o:freebsd:freebsd:12.1:p1:*:*:*:*:*:*
- cpe:2.3:o:freebsd:freebsd:12.1:p2:*:*:*:*:*:*
- cpe:2.3:o:freebsd:freebsd:12.1:p3:*:*:*:*:*:*
- cpe:2.3:o:freebsd:freebsd:12.1:p4:*:*:*:*:*:*
- FreeBSD/FreeBSD cryptodev moduledescription
- Range: <=12.1-RELEASE before p5, <12.1-STABLE before r356911
Patches
Vulnerability mechanics
References
2- security.freebsd.org/advisories/FreeBSD-SA-20:16.cryptodev.ascnvdVendor Advisory
- security.netapp.com/advisory/ntap-20200518-0008/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.