Vulnerability Name: | CVE-2001-0371 (CCN-6268) | ||||||||
Assigned: | 2001-03-22 | ||||||||
Published: | 2001-03-22 | ||||||||
Updated: | 2017-10-10 | ||||||||
Summary: | Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information. | ||||||||
CVSS v3 Severity: | 8.1 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 6.2 Medium (CVSS v2 Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: CCN Type: FreeBSD Security Advisory FreeBSD-SA-01:30 ufs-ext2fs Source: FREEBSD Type: Patch, Vendor Advisory FreeBSD-SA-01:30 Source: MITRE Type: CNA CVE-2001-0371 Source: OSVDB Type: UNKNOWN 5682 Source: CCN Type: OSVDB ID: 5682 FreeBSD File System Arbitrary Data Access Race Source: CCN Type: BID-2528 FreeBSD UFS Uncleared Block Data Recovery Vulnerability Source: XF Type: UNKNOWN ufs-ext2fs-data-disclosure(6268) Source: XF Type: UNKNOWN ufs-ext2fs-data-disclosure(6268) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |