Vulnerability Name: | CVE-2011-4062 (CCN-70153) | ||||||||
Assigned: | 2011-09-28 | ||||||||
Published: | 2011-09-28 | ||||||||
Updated: | 2011-12-13 | ||||||||
Summary: | Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX socket. | ||||||||
CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.6 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
5.6 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-119 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2011-4062 Source: CCN Type: SA46202 FreeBSD UNIX Domain Socket Handling Privilege Escalation Vulnerability Source: SECUNIA Type: Vendor Advisory 46202 Source: SECUNIA Type: UNKNOWN 46564 Source: CCN Type: FreeBSD-SA-11:05.unix Buffer overflow in handling of UNIX socket addresses Source: FREEBSD Type: Vendor Advisory FreeBSD-SA-11:05 Source: MISC Type: Patch http://security.freebsd.org/patches/SA-11:05/unix2.patch Source: DEBIAN Type: UNKNOWN DSA-2325 Source: DEBIAN Type: DSA-2325 kfreebsd-8 -- privilege escalation/denial of service Source: EXPLOIT-DB Type: Exploit 17908 Source: OSVDB Type: UNKNOWN 75788 Source: CCN Type: OSVDB ID: 75788 FreeBSD UNIX Domain Socket sys/kern/uipc_usrreq.c uipc_bind() Function Local Overflow Source: BID Type: UNKNOWN 49862 Source: CCN Type: BID-49862 FreeBSD UNIX Domain Socket Local Privilege Escalation Vulnerabiity Source: SECTRACK Type: UNKNOWN 1026106 Source: XF Type: UNKNOWN freebsd-uipcbind-bo(70153) Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [09-30-2011] | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |