Permissions, Privileges, and Access Controls in FreeBSD - CVE-2023-5978
Published: November 10, 2023
FreeBSD
FreeBSD Foundation
Description
The vulnerability allows a local user to bypass implemented security restrictions.
The vulnerability exists due to incorrect libcap_net limitation list manipulation in libcasper. In certain scenarios, if only a list of resolvable domain names was specified without setting any other limitations, the application could submit a new list of domains including include entries not previously in the list.