| Title | FreeBSD における権限を取得される脆弱性 |
|---|---|
| Summary | FreeBSD には、(1) netgraph および (2) bluetooth ソケットに対して関数ポインタが適切に初期化されないため、権限を取得される脆弱性が存在します。 |
| Possible impacts | ローカルユーザにより、権限を取得される可能性があります。 |
| Solution | ベンダより正式な対策が公開されています。ベンダ情報を参照して適切な対策を実施してください。 |
| Publication Date | Dec. 23, 2008, midnight |
| Registration Date | June 26, 2012, 4:03 p.m. |
| Last Update | June 26, 2012, 4:03 p.m. |
| CVSS2.0 : 危険 | |
| Score | 7.2 |
|---|---|
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
| FreeBSD |
| FreeBSD 5.3 6.4-STABLE 未満の 6、6.3-RELEASE-p7 未満の 6.3、6.4-RELEASE-p1 未満の 6.4、7.0-RELEASE-p7 未満の 7.0、7.1-RC2 未満の 7.1、および 7.1-PRERELEASE 未満の 7 |
| No | Changed Details | Date of change |
|---|---|---|
| 0 | [2012年06月26日] 掲載 |
Feb. 17, 2018, 10:37 a.m. |
| Summary | Multiple unspecified vulnerabilities in FreeBSD 6 before 6.4-STABLE, 6.3 before 6.3-RELEASE-p7, 6.4 before 6.4-RELEASE-p1, 7.0 before 7.0-RELEASE-p7, 7.1 before 7.1-RC2, and 7 before 7.1-PRERELEASE allow local users to gain privileges via unknown attack vectors related to function pointers that are "not properly initialized" for (1) netgraph sockets and (2) bluetooth sockets. |
|---|---|
| Summary | Per http://security.freebsd.org/advisories/FreeBSD-SA-08:13.protosw.asc Solution Perform one of the following: 1) Upgrade your vulnerable system to 6-STABLE, or 7-STABLE, or to the 2) To patch your present system: The following patches have been verified to apply to FreeBSD 6.3, 6.4, a) Download the relevant patch from the location below, and verify the [FreeBSD 6.x] [FreeBSD 7.x] b) Apply the patch. # cd /usr/src c) Recompile your kernel as described in |
| Publication Date | Dec. 27, 2008, 3:30 a.m. |
| Registration Date | Jan. 29, 2021, 1:47 p.m. |
| Last Update | Aug. 3, 2019, 12:38 a.m. |
| Configuration1 | or higher | or less | more than | less than | |
| cpe:2.3:o:freebsd:freebsd:6.0:-:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:-:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:p1:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:p2:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:p3:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:p4:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:p5:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.3:p6:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:6.4:-:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.0:-:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.0:p1:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.0:p3:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.0:p4:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.0:p5:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.0:p6:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.1:-:*:*:*:*:*:* | |||||
| cpe:2.3:o:freebsd:freebsd:7.1:rc1:*:*:*:*:*:* | |||||