VYPR
Medium severity5.5NVD Advisory· Published Sep 3, 2020· Updated Jun 17, 2026

CVE-2020-24863

CVE-2020-24863

Description

A memory corruption vulnerability was found in the kernel function kern_getfsstat in MidnightBSD before 1.2.7 and 1.3 through 2020-08-19, and FreeBSD through 11.4, that allows an attacker to trigger an invalid free and crash the system via a crafted size value in conjunction with an invalid mode.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:midnightbsd:midnightbsd:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:midnightbsd:midnightbsd:*:*:*:*:*:*:*:*range: <1.2.7
    • (no CPE)range: <1.2.7, 1.3 through 2020-08-19
  • FreeBSD/FreeBSD2 versions
    cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*range: <=11.4
    • (no CPE)range: <=11.4

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.