The virtio_vq_recordon function is subject to a time-of-check to time-of-use (TOCTOU) race condition.

Project Subscriptions

Vendors Products
Freebsd Subscribe
Freebsd Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 03 Nov 2025 21:30:00 +0000

Type Values Removed Values Added
References

Tue, 26 Nov 2024 21:15:00 +0000

Type Values Removed Values Added
First Time appeared Freebsd
Freebsd freebsd
CPEs cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*
Vendors & Products Freebsd
Freebsd freebsd
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 12 Nov 2024 15:00:00 +0000

Type Values Removed Values Added
Description The virtio_vq_recordon function is subject to a time-of-check to time-of-use (TOCTOU) race condition.
Title bhyve(8) virtio_vq_recordon time-of-check to time-of-use race
Weaknesses CWE-367
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: freebsd

Published:

Updated: 2025-11-03T20:45:18.070Z

Reserved: 2024-10-29T17:16:43.254Z

Link: CVE-2024-51563

cve-icon Vulnrichment

Updated: 2024-11-26T20:23:47.773Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-11-12T15:15:10.903

Modified: 2025-11-03T21:17:20.513

Link: CVE-2024-51563

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses