FreeBSD 7.1 through 8.1-PRERELEASE does not copy the read-only flag when creating a duplicate mbuf buffer reference, which allows local users to cause a denial of service (system file corruption) and gain privileges via the sendfile system call.
2010-07-13T20:30:12.313
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.1 | Yes |
Operating System | freebsd | freebsd | 7.2 | Yes |
Operating System | freebsd | freebsd | 7.2 | Yes |
Operating System | freebsd | freebsd | 7.2 | Yes |
Operating System | freebsd | freebsd | 7.3 | Yes |
Operating System | freebsd | freebsd | 8.0 | Yes |
Operating System | freebsd | freebsd | 8.1 | Yes |