CVE Vulnerabilities

CVE-2005-1400

Published: May 06, 2005 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values.

Affected Software

Name Vendor Start Version End Version
Freebsd Freebsd 4.7 (including) 4.7 (including)
Freebsd Freebsd 4.8 (including) 4.8 (including)
Freebsd Freebsd 4.9 (including) 4.9 (including)
Freebsd Freebsd 4.10 (including) 4.10 (including)
Freebsd Freebsd 4.11 (including) 4.11 (including)
Freebsd Freebsd 5.1 (including) 5.1 (including)
Freebsd Freebsd 5.2 (including) 5.2 (including)
Freebsd Freebsd 5.3 (including) 5.3 (including)
Freebsd Freebsd 5.4 (including) 5.4 (including)
Kfreebsd-5 Ubuntu dapper *
Kfreebsd-5 Ubuntu devel *
Kfreebsd-5 Ubuntu edgy *
Kfreebsd-5 Ubuntu feisty *

References