Re: CVE-2024-39281 allegedly not fixed in 14.1

2024-11-18 Thread Dag-Erling Smørgrav
Lasse Kliemann writes: > Since a few days, I see this warning: > > Checking for security vulnerabilities in base (userland & kernel): > Database fetched: 2024-11-15T19:30+00:00 > FreeBSD-kernel-14.1_5 is vulnerable: > FreeBSD -- Unbounded allocation in ctl(4) CAM Target Layer > CVE: CVE-2024-3

CVE-2024-39281 allegedly not fixed in 14.1

2024-11-16 Thread Lasse Kliemann
Since a few days, I see this warning: Checking for security vulnerabilities in base (userland & kernel): Database fetched: 2024-11-15T19:30+00:00 FreeBSD-kernel-14.1_5 is vulnerable: FreeBSD -- Unbounded allocation in ctl(4) CAM Target Layer CVE: CVE-2024-39281 WWW: https://vuxml.FreeBSD.or