CVE-2024-51563

MEDIUM

virtio-vq-recordon - Use After Free

Title source: llm
STIX 2.1

Description

The virtio_vq_recordon function is subject to a time-of-check to time-of-use (TOCTOU) race condition.

References (2)

Core 2

Scores

CVSS v3 6.5
EPSS 0.0031
EPSS Percentile 21.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-367
Status published
Products (3)
FreeBSD/FreeBSD 13.3-RELEASE - p8
FreeBSD/FreeBSD 13.4-RELEASE - p2
FreeBSD/FreeBSD 14.1-RELEASE - p6
Published Nov 12, 2024
Tracked Since Feb 18, 2026