6.4

CVE-2006-2654

Directory traversal vulnerability in smbfs smbfs on FreeBSD 4.10 up to 6.1 allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\\" sequences.  NOTE: this is similar to CVE-2006-1864, but this is a different implementation of smbfs, so it has a different CVE identifier.

Data is provided by the National Vulnerability Database (NVD)
FreebsdFreebsd Version5.0
FreebsdFreebsd Version5.0 Updatealpha
FreebsdFreebsd Version5.0 Updaterelease
FreebsdFreebsd Version5.0 Updaterelease_p14
FreebsdFreebsd Version5.0 Updatereleng
FreebsdFreebsd Version5.1
FreebsdFreebsd Version5.1 Updatealpha
FreebsdFreebsd Version5.1 Updaterelease
FreebsdFreebsd Version5.1 Updaterelease_p1
FreebsdFreebsd Version5.1 Updaterelease_p5
FreebsdFreebsd Version5.1 Updatereleng
FreebsdFreebsd Version5.2
FreebsdFreebsd Version5.2.1
FreebsdFreebsd Version5.2.1 Updaterelease
FreebsdFreebsd Version5.2.1 Updatereleng
FreebsdFreebsd Version5.3
FreebsdFreebsd Version5.3 Updaterelease
FreebsdFreebsd Version5.3 Updatereleng
FreebsdFreebsd Version5.3 Updatestable
FreebsdFreebsd Version5.4
FreebsdFreebsd Version5.4 Updatepre-release
FreebsdFreebsd Version5.4 Updaterelease
FreebsdFreebsd Version5.4 Updatereleng
FreebsdFreebsd Version5.4 Updatestable
FreebsdFreebsd Version6.0
FreebsdFreebsd Version6.0 Updaterelease
FreebsdFreebsd Version6.0 Updatestable
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.63% 0.679
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N