AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-25584

HIGH · CVSS 7.5 EPSS 0.18%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-04-07 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. See the original NVD description below for full technical details.

CVE
CVE-2020-25584
Severity
HIGH
CVSS
7.5
EPSS
0.18%

Original NVD Description

In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-RELEASE before p6, and 11.4-RELEASE before p9, a superuser inside a FreeBSD jail configured with the non-default allow.mount permission could cause a race condition between the lookup of ".." and remounting a filesystem, allowing access to filesystem hierarchy outside of the jail.

Related CVEs

Other vulnerabilities affecting the same vendor(s)