Lucene search

K
cveMitreCVE-2005-2218
HistoryJul 26, 2005 - 4:00 a.m.

CVE-2005-2218

2005-07-2604:00:00
mitre
web.nvd.nist.gov
41
freebsd
devfs
device file system
security
cve-2005-2218
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

Low

EPSS

0.001

Percentile

25.3%

The device file system (devfs) in FreeBSD 5.x does not properly check parameters of the node type when creating a device node, which makes hidden devices available to attackers, who can then bypass restrictions on a jailed process.

Affected configurations

Nvd
Node
freebsdfreebsdMatch5.0
OR
freebsdfreebsdMatch5.0alpha
OR
freebsdfreebsdMatch5.0release_p14
OR
freebsdfreebsdMatch5.0releng
OR
freebsdfreebsdMatch5.1
OR
freebsdfreebsdMatch5.1alpha
OR
freebsdfreebsdMatch5.1release
OR
freebsdfreebsdMatch5.1release_p5
OR
freebsdfreebsdMatch5.1releng
OR
freebsdfreebsdMatch5.2
OR
freebsdfreebsdMatch5.2.1
OR
freebsdfreebsdMatch5.2.1release
OR
freebsdfreebsdMatch5.2.1releng
OR
freebsdfreebsdMatch5.3
OR
freebsdfreebsdMatch5.3release
OR
freebsdfreebsdMatch5.3releng
OR
freebsdfreebsdMatch5.3stable
OR
freebsdfreebsdMatch5.4
OR
freebsdfreebsdMatch5.4pre-release
OR
freebsdfreebsdMatch5.4release
OR
freebsdfreebsdMatch5.4releng
VendorProductVersionCPE
freebsdfreebsd5.0cpe:2.3:o:freebsd:freebsd:5.0:*:*:*:*:*:*:*
freebsdfreebsd5.0cpe:2.3:o:freebsd:freebsd:5.0:alpha:*:*:*:*:*:*
freebsdfreebsd5.0cpe:2.3:o:freebsd:freebsd:5.0:release_p14:*:*:*:*:*:*
freebsdfreebsd5.0cpe:2.3:o:freebsd:freebsd:5.0:releng:*:*:*:*:*:*
freebsdfreebsd5.1cpe:2.3:o:freebsd:freebsd:5.1:*:*:*:*:*:*:*
freebsdfreebsd5.1cpe:2.3:o:freebsd:freebsd:5.1:alpha:*:*:*:*:*:*
freebsdfreebsd5.1cpe:2.3:o:freebsd:freebsd:5.1:release:*:*:*:*:*:*
freebsdfreebsd5.1cpe:2.3:o:freebsd:freebsd:5.1:release_p5:*:*:*:*:*:*
freebsdfreebsd5.1cpe:2.3:o:freebsd:freebsd:5.1:releng:*:*:*:*:*:*
freebsdfreebsd5.2cpe:2.3:o:freebsd:freebsd:5.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 211

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.4

Confidence

Low

EPSS

0.001

Percentile

25.3%