CNNVD-202510-2811 Information

CNNVD ID

CNNVD-202510-2811

CVE-2025-24934

  • CNNVD Published: 2025-10-22

Description (Chinese)

FreeBSD是FreeBSD基金会的一套类Unix操作系统。 FreeBSD存在安全漏洞,该漏洞源于内核未检查连接状态即添加套接字至负载均衡组,且连接状态下仍匹配负载均衡组套接字,可能导致欺骗攻击。

Description (English)

FreeBSD is a type Unix operating system of the FreeBSD Foundation. FreeBSD has a security loophole, which stems from the fact that the kernel does not check for a connection, i.e. by adding a socket to the load balance group, and still matches the load balance group.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

freeBSD

Published

2025-10-22

Last Modified

2026-02-24

References

https://security.freebsd.org/advisories/FreeBSD-SA-25:09.netinet.asc https://vigilance.fr/vulnerability/FreeBSD-information-disclosure-via-SO-REUSEPORT-LB-Connected-Sockets-48559

Patch

https://www.freebsd.org/where/

Share on: