6.2
CVSSv2

CVE-2001-1185

Published: 10/12/2001 Updated: 05/09/2008
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 625
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 4.4

Exploits

source: wwwsecurityfocuscom/bid/3661/info aioh is a library implementing the POSIX standard for asynchronous I/O Support for AIO may be enabled in FreeBSD by compiling the kernel with the VFS_AIO option This option is not enabled in the default kernel configuration Under some circumstances, pending reads from an input socket may pers ...