CVE-2024-6759: Freebsd
Medium severity, CVSS 5.3. EPSS: 0.7% chance of exploitation in the next 30 days.
When mounting a remote filesystem using NFS, the kernel did not sanitize remotely provided filenames for the path separator character, "/". This allows readdir(3) and related functions to return filesystem entries with names containing additional path components. The lack of validation described above gives rise to a confused deputy problem. For example, a program copying files from an NFS mount could be tricked into copying from outside the intended source directory, and/or to a location outside the intended destination directory.
Affected products
- Freebsd Freebsd: before 13.0 (fixed in 13.0); from 13.1, before 13.3 (fixed in 13.3); version 13.3 only; version 14.0 only; version 14.1 only
Published 2024-08-12. Last modified 2026-06-17.