7.2

CVE-2005-0610

Multiple symlink vulnerabilities in portupgrade before 20041226_2 in FreeBSD allow local users to (1) overwrite arbitrary files and possibly replace packages to execute arbitrary code via pkg_fetch, (2) overwrite arbitrary files via temporary files when portupgrade upgrades a port or package, or (3) create arbitrary zero-byte files via the pkgdb.fixme temporary file.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
FreebsdFreebsd Version4.0
FreebsdFreebsd Version4.0 Updatealpha
FreebsdFreebsd Version4.0 Updatereleng
FreebsdFreebsd Version4.1
FreebsdFreebsd Version4.1.1
FreebsdFreebsd Version4.1.1 Updaterelease
FreebsdFreebsd Version4.1.1 Updatestable
FreebsdFreebsd Version4.2
FreebsdFreebsd Version4.2 Updatestable
FreebsdFreebsd Version4.3
FreebsdFreebsd Version4.3 Updaterelease
FreebsdFreebsd Version4.3 Updaterelease_p38
FreebsdFreebsd Version4.3 Updatereleng
FreebsdFreebsd Version4.3 Updatestable
FreebsdFreebsd Version4.4
FreebsdFreebsd Version4.4 Updaterelease_p42
FreebsdFreebsd Version4.4 Updatereleng
FreebsdFreebsd Version4.4 Updatestable
FreebsdFreebsd Version4.5
FreebsdFreebsd Version4.5 Updaterelease
FreebsdFreebsd Version4.5 Updaterelease_p32
FreebsdFreebsd Version4.5 Updatereleng
FreebsdFreebsd Version4.5 Updatestable
FreebsdFreebsd Version4.6
FreebsdFreebsd Version4.6 Updaterelease
FreebsdFreebsd Version4.6 Updaterelease_p20
FreebsdFreebsd Version4.6 Updatereleng
FreebsdFreebsd Version4.6 Updatestable
FreebsdFreebsd Version4.6.2
FreebsdFreebsd Version4.7
FreebsdFreebsd Version4.7 Updaterelease
FreebsdFreebsd Version4.7 Updaterelease_p17
FreebsdFreebsd Version4.7 Updatereleng
FreebsdFreebsd Version4.7 Updatestable
FreebsdFreebsd Version4.8
FreebsdFreebsd Version4.8 Updatepre-release
FreebsdFreebsd Version4.8 Updaterelease_p6
FreebsdFreebsd Version4.8 Updatereleng
FreebsdFreebsd Version4.9
FreebsdFreebsd Version4.9 Updatepre-release
FreebsdFreebsd Version4.9 Updatereleng
FreebsdFreebsd Version4.10
FreebsdFreebsd Version4.10 Updaterelease
FreebsdFreebsd Version4.10 Updatereleng
FreebsdFreebsd Version4.11 Updatestable
FreebsdFreebsd Version5.0
FreebsdFreebsd Version5.0 Updatealpha
FreebsdFreebsd Version5.0 Updaterelease_p14
FreebsdFreebsd Version5.0 Updatereleng
FreebsdFreebsd Version5.1
FreebsdFreebsd Version5.1 Updatealpha
FreebsdFreebsd Version5.1 Updaterelease
FreebsdFreebsd Version5.1 Updaterelease_p5
FreebsdFreebsd Version5.1 Updatereleng
FreebsdFreebsd Version5.2
FreebsdFreebsd Version5.2.1 Updaterelease
FreebsdFreebsd Version5.2.1 Updatereleng
FreebsdFreebsd Version5.3
FreebsdFreebsd Version5.3 Updaterelease
FreebsdFreebsd Version5.3 Updatereleng
FreebsdFreebsd Version5.3 Updatestable
FreebsdFreebsd Version5.4 Updatepre-release
FreebsdFreebsd Version5.4 Updaterelease
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.138
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C