CVE Vulnerabilities

CVE-2001-0061

Published: Feb 12, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

procfs in FreeBSD and possibly other operating systems does not properly restrict access to per-process mem and ctl files, which allows local users to gain root privileges by forking a child process and executing a privileged process from the child, while the parent retains access to the childs address space.

Affected Software

NameVendorStart VersionEnd Version
FreebsdFreebsd3.5.1 (including)3.5.1 (including)
FreebsdFreebsd4.1 (including)4.1 (including)
FreebsdFreebsd4.1.1 (including)4.1.1 (including)
FreebsdFreebsd4.2 (including)4.2 (including)

References