CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.9. See the original NVD description below for full technical details.
CVE
CVE-2013-6834
Severity
MEDIUM
CVSS
4.9
EPSS
0.44%
Original NVD Description
The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in FreeBSD 10 and earlier does not validate a certain size parameter, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call.