Lucene search

K
debianDebianDEBIAN:DSA-2714-1:6E01F
HistoryJun 25, 2013 - 5:23 p.m.

[SECURITY] [DSA 2714-1] kfreebsd-9 security update

2013-06-2517:23:40
lists.debian.org
13

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

5.6 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.1%


Debian Security Advisory DSA-2714-1 [email protected]
http://www.debian.org/security/ Moritz Muehlenhoff
June 25, 2013 http://www.debian.org/security/faq


Package : kfreebsd-9
Vulnerability : programming error
Problem type : remote
Debian-specific: no
CVE ID : CVE-2013-2171

Konstantin Belousov and Alan Cox discovered that insufficient permission
checks in the memory management of the FreeBSD kernel could lead to
privilege escalation.

For the stable distribution (wheezy), this problem has been fixed in
version 9.0-10+deb70.2.

For the unstable distribution (sid), this problem has been fixed in
version 9.0-12.

We recommend that you upgrade your kfreebsd-9 packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/

Mailing list: [email protected]

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

5.6 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.1%