inetd ident server in FreeBSD 4.x and earlier does not properly set group permissions, which allows remote attackers to read the first 16 bytes of files that are accessible by the wheel group.
2001-05-03T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | freebsd | freebsd | 3.5 | Yes |
Operating System | freebsd | freebsd | 3.5.1 | Yes |
Operating System | freebsd | freebsd | 4.1.1 | Yes |
Operating System | freebsd | freebsd | 4.2 | Yes |