Security Advisory

CVE-2019-15877

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-04-28 19:11:36
Last updated 2024-08-05 01:03:32
Assigner freebsd
State PUBLISHED

Description

In FreeBSD 12.1-STABLE before r356606 and 12.1-RELEASE before 12.1-RELEASE-p3, driver specific ioctl command handlers in the ixl network driver failed to check whether the caller has sufficient privileges allowing unprivileged users to trigger updates to the devices non-volatile memory.