2.1
CVSSv2

CVE-2001-1029

Published: 20/09/2001 Updated: 10/10/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

libutil in OpenSSH on FreeBSD 4.4 and previous versions does not drop privileges before verifying the capabilities for reading the copyright and welcome files, which allows local users to bypass the capabilities checks and read arbitrary files by specifying alternate copyright or welcome files.

Vulnerable Product Search on Vulmon Subscribe to Product

openbsd openssh 4.5

freebsd freebsd

Exploits

source: wwwsecurityfocuscom/bid/3344/info FreeBSD is a freely available, open source implementation of the BSD UNIX Operating System It is developed and maintained by the FreeBSD Project It is possible for a user with access to a system via SSH to gain access to privileged information This problem is caused by a mixture of problems wi ...