Lucene search

K
cve[email protected]CVE-2008-5736
HistoryDec 26, 2008 - 6:30 p.m.

CVE-2008-5736

2008-12-2618:30:03
CWE-264
web.nvd.nist.gov
19
freebsd
vulnerabilities
privilege escalation
netgraph sockets
bluetooth sockets
nvd

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.5%

Multiple unspecified vulnerabilities in FreeBSD 6 before 6.4-STABLE, 6.3 before 6.3-RELEASE-p7, 6.4 before 6.4-RELEASE-p1, 7.0 before 7.0-RELEASE-p7, 7.1 before 7.1-RC2, and 7 before 7.1-PRERELEASE allow local users to gain privileges via unknown attack vectors related to function pointers that are “not properly initialized” for (1) netgraph sockets and (2) bluetooth sockets.

Affected configurations

NVD
Node
freebsdfreebsdMatch6.0-
OR
freebsdfreebsdMatch6.3-
OR
freebsdfreebsdMatch6.3p1
OR
freebsdfreebsdMatch6.3p2
OR
freebsdfreebsdMatch6.3p3
OR
freebsdfreebsdMatch6.3p4
OR
freebsdfreebsdMatch6.3p5
OR
freebsdfreebsdMatch6.3p6
OR
freebsdfreebsdMatch6.4-
OR
freebsdfreebsdMatch7.0-
OR
freebsdfreebsdMatch7.0p1
OR
freebsdfreebsdMatch7.0p3
OR
freebsdfreebsdMatch7.0p4
OR
freebsdfreebsdMatch7.0p5
OR
freebsdfreebsdMatch7.0p6
OR
freebsdfreebsdMatch7.1-
OR
freebsdfreebsdMatch7.1rc1

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.5%