7.2 High
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
6.5 Medium
AI Score
Confidence
High
0.0004 Low
EPSS
Percentile
13.1%
FreeBSD 7.1 through 8.1-PRERELEASE does not copy the read-only flag when creating a duplicate mbuf buffer reference, which allows local users to cause a denial of service (system file corruption) and gain privileges via the sendfile system call.
CPE | Name | Operator | Version |
---|---|---|---|
freebsd:freebsd | freebsd | eq | 7.1 |
freebsd:freebsd | freebsd | eq | 7.2 |
freebsd:freebsd | freebsd | eq | 7.3 |
freebsd:freebsd | freebsd | eq | 8.0 |
freebsd:freebsd | freebsd | eq | 8.1 |