In FreeBSD 12.1-STABLE before r352509, 11.3-STABLE before r352509, and 11.3-RELEASE before p9, an unprivileged local user can trigger a use-after-free situation due to improper checking in SCTP when an application tries to update an SCTP-AUTH shared key.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: freebsd

Published: 2020-05-13T15:38:05

Updated: 2020-05-18T04:06:19

Reserved: 2019-09-03T00:00:00


Link: CVE-2019-15878

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2020-05-13T16:15:12.620

Modified: 2020-05-18T05:15:12.933


Link: CVE-2019-15878

JSON object: View

cve-icon Redhat Information

No data.

CWE