7.2
CVSSv2

CVE-2008-5736

Published: 26/12/2008 Updated: 02/08/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple unspecified vulnerabilities in FreeBSD 6 prior to 6.4-STABLE, 6.3 prior to 6.3-RELEASE-p7, 6.4 prior to 6.4-RELEASE-p1, 7.0 prior to 7.0-RELEASE-p7, 7.1 prior to 7.1-RC2, and 7 prior to 7.1-PRERELEASE allow local users to gain privileges via unknown attack vectors related to function pointers that are "not properly initialized" for (1) netgraph sockets and (2) bluetooth sockets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 6.0

freebsd freebsd 6.3

freebsd freebsd 7.0

freebsd freebsd 7.1

freebsd freebsd 6.4

Exploits

/* * FreeBSD <= 64-RELEASE Netgraph Exploit * by zx2c4 * * * This is an exploit for CVE-2008-5736, the FreeBSD protosw * and loosely based on Don Bailey's 2008 exploit - * wwwexploit-dbcom/exploits/7581/ The thing with * Don's exploit is that it relies on having a known location * of allproc, which means having access to t ...
FreeBSD versions 64 and below Netgraph local privilege escalation exploit ...