CVE-2021-29632

HIGH

FreeBSD <13.0-STABLE - Memory Corruption

Title source: llm
STIX 2.1

Description

In FreeBSD 13.0-STABLE before n247428-9352de39c3dc, 12.2-STABLE before r370674, 13.0-RELEASE before p6, and 12.2-RELEASE before p12, certain conditions involving use of the highlight buffer while text is scrolling on the console, console data may overwrite data structures associated with the system console or other kernel memory.

References (2)

Core 2
Core References
Mitigation, Vendor Advisory x_refsource_misc
https://security.freebsd.org/advisories/FreeBSD-SA-22:01.vt.asc
Third Party Advisory x_refsource_confirm
https://security.netapp.com/advisory/ntap-20220217-0004/

Scores

CVSS v3 7.5
EPSS 0.0026
EPSS Percentile 48.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

Status published
Products (2)
freebsd/freebsd 12.2 (13 CPE variants)
freebsd/freebsd 13.0 (17 CPE variants)
Published Jan 18, 2022
Tracked Since Feb 18, 2026