The cmdline pseudofiles in (1) procfs on FreeBSD 4.8 up to and including 5.3, and (2) linprocfs on FreeBSD 5.x up to and including 5.3, do not properly validate a process argument vector, which allows local users to cause a denial of service (panic) or read portions of kernel memory. NOTE: this candidate might be SPLIT into 2 separate items in the future.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
freebsd freebsd 4.10 |
||
freebsd freebsd 4.7 |
||
freebsd freebsd 4.8 |
||
freebsd freebsd 5.3 |
||
freebsd freebsd 4.0 |
||
freebsd freebsd 4.3 |
||
freebsd freebsd 4.4 |
||
freebsd freebsd 5.0 |
||
freebsd freebsd 5.1 |
||
freebsd freebsd 4.2 |
||
freebsd freebsd 4.9 |
||
freebsd freebsd 4.1 |
||
freebsd freebsd 4.1.1 |
||
freebsd freebsd 4.5 |
||
freebsd freebsd 4.6 |
||
freebsd freebsd 5.2 |
||
freebsd freebsd 5.2.1 |