{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-23T07:15:53.931","vulnerabilities":[{"cve":{"id":"CVE-2023-5978","sourceIdentifier":"secteam@freebsd.org","published":"2023-11-08T09:15:07.933","lastModified":"2024-11-21T08:42:54.420","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In versions of FreeBSD 13-RELEASE before 13-RELEASE-p5, under certain circumstances the cap_net libcasper(3) service incorrectly validates that updated constraints are strictly subsets of the active constraints.  When only a list of resolvable domain names was specified without setting any other limitations, an application could submit a new list of domains including include entries not previously listed.  This could permit the application to resolve domain names that were previously restricted."},{"lang":"es","value":"En las versiones 13-RELEASE anteriores a 13-RELEASE-p5 de FreeBSD, bajo ciertas circunstancias el servicio cap_net libcasper(3) valida incorrectamente que las restricciones actualizadas son estrictamente subconjuntos de las restricciones activas. Cuando solo se especificaba una lista de nombres de dominio resolubles sin establecer otras limitaciones, una aplicación podía enviar una nueva lista de dominios que incluyeran entradas que no figuraban anteriormente. Esto podría permitir que la aplicación resuelva nombres de dominio que anteriormente estaban restringidos."}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}]},"weaknesses":[{"source":"secteam@freebsd.org","type":"Secondary","description":[{"lang":"en","value":"CWE-269"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*","versionStartIncluding":"13.0","versionEndExcluding":"13.2","matchCriteriaId":"BA49E374-9F1A-4F62-B88D-CD36EDEA6060"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:13.2:-:*:*:*:*:*:*","matchCriteriaId":"A87EFA20-DD6B-41C5-98FD-A29F67D2E732"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:13.2:p1:*:*:*:*:*:*","matchCriteriaId":"2888B0C1-4D85-42EC-9696-03FAD0A9C28F"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:13.2:p2:*:*:*:*:*:*","matchCriteriaId":"A3306F11-D3C0-41D6-BB5E-2ABDC3927715"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:13.2:p3:*:*:*:*:*:*","matchCriteriaId":"9E584FE1-3A34-492B-B10F-508DA7CBA768"},{"vulnerable":true,"criteria":"cpe:2.3:o:freebsd:freebsd:13.2:p4:*:*:*:*:*:*","matchCriteriaId":"A5605E90-D125-4CC9-8B9F-F5EED9D4EE0C"}]}]}],"references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-23:16.cap_net.asc","source":"secteam@freebsd.org","tags":["Vendor Advisory"]},{"url":"https://security.netapp.com/advisory/ntap-20231214-0003/","source":"secteam@freebsd.org"},{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-23:16.cap_net.asc","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]},{"url":"https://security.netapp.com/advisory/ntap-20231214-0003/","source":"af854a3a-2127-422b-91ae-364da2661108"}]}}]}