3.6

CVE-2004-1066

The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 through 5.3, and (2) linprocfs on FreeBSD 5.x through 5.3, do not properly validate a process argument vector, which allows local users to cause a denial of service (panic) or read portions of kernel memory.  NOTE: this candidate might be SPLIT into 2 separate items in the future.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
FreebsdFreebsd Version4.0
FreebsdFreebsd Version4.1
FreebsdFreebsd Version4.1.1
FreebsdFreebsd Version4.2
FreebsdFreebsd Version4.3
FreebsdFreebsd Version4.4
FreebsdFreebsd Version4.5
FreebsdFreebsd Version4.6
FreebsdFreebsd Version4.7
FreebsdFreebsd Version4.8
FreebsdFreebsd Version4.8 Updatereleng
FreebsdFreebsd Version4.9
FreebsdFreebsd Version4.10
FreebsdFreebsd Version4.10 Updaterelease
FreebsdFreebsd Version4.10 Updatereleng
FreebsdFreebsd Version5.0
FreebsdFreebsd Version5.1
FreebsdFreebsd Version5.2
FreebsdFreebsd Version5.2.1 Updaterelease
FreebsdFreebsd Version5.2.1 Updatereleng
FreebsdFreebsd Version5.3
FreebsdFreebsd Version5.3 Updaterelease
FreebsdFreebsd Version5.3 Updatestable
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.06% 0.158
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 3.6 3.9 4.9
AV:L/AC:L/Au:N/C:P/I:N/A:P