---
cve: "CVE-2019-5596"
severity: "LOW"
cvss: 3.1
epss: "1.2%"
vendor: "FreeBSD"
kev: false
exploited: false
published: "2019-02-12 05:29:00"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-09T22:52:41+02:00"
---

# CVE-2019-5596

> 3.1 LOW · 🧪 PoC

## Beschreibung

In FreeBSD 11.2-STABLE after r338618 and before r343786, 12.0-STABLE before r343781, and 12.0-RELEASE before 12.0-RELEASE-p3, a bug in the reference count implementation for UNIX domain sockets can cause a file structure to be incorrectly released potentially allowing a malicious local user to gain root privileges or escape from a jail.

## Exploit-Evidenz

- [EDB-47829 — FreeBSD-SA-19:02.fd - Privilege Escalation](https://www.exploit-db.com/exploits/47829) ✅
- [EDB-47081 — FreeBSD 12.0 - 'fd' Local Privilege Escalation](https://www.exploit-db.com/exploits/47081)

## Referenzen

- <https://security.FreeBSD.org/advisories/FreeBSD-SA-19:02.fd.asc>
- <http://packetstormsecurity.com/files/155790/FreeBSD-fd-Privilege-Escalation.html>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2019-5596) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
