CVE Vulnerabilities

CVE-2005-1400

Published: May 06, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values.

Affected Software

Name Vendor Start Version End Version
Freebsd Freebsd 4.7 (including) 4.7 (including)
Freebsd Freebsd 4.8 (including) 4.8 (including)
Freebsd Freebsd 4.9 (including) 4.9 (including)
Freebsd Freebsd 4.10 (including) 4.10 (including)
Freebsd Freebsd 4.11 (including) 4.11 (including)
Freebsd Freebsd 5.1 (including) 5.1 (including)
Freebsd Freebsd 5.2 (including) 5.2 (including)
Freebsd Freebsd 5.3 (including) 5.3 (including)
Freebsd Freebsd 5.4 (including) 5.4 (including)
Kfreebsd-5 Ubuntu dapper *
Kfreebsd-5 Ubuntu devel *
Kfreebsd-5 Ubuntu edgy *
Kfreebsd-5 Ubuntu feisty *

References