CVE-2020-25584: Freebsd
High severity, CVSS 7.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, and 11.4-RELEASE before p9, a superuser inside a FreeBSD jail configured with the non-default allow.mount permission could cause a race condition between the lookup of ".." and remounting a filesystem, allowing access to filesystem hierarchy outside of the jail.
Affected products
- Freebsd Freebsd: before 11.4 (fixed in 11.4); from 12.0, before 12.2 (fixed in 12.2); version 11.4 only; version 12.2 only; version 13.0 only
Published 2021-04-07. Last modified 2026-06-17.