CVE Vulnerabilities

CVE-2005-1400

Published: May 06, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values.

Affected Software

NameVendorStart VersionEnd Version
FreebsdFreebsd4.7 (including)4.7 (including)
FreebsdFreebsd4.8 (including)4.8 (including)
FreebsdFreebsd4.9 (including)4.9 (including)
FreebsdFreebsd4.10 (including)4.10 (including)
FreebsdFreebsd4.11 (including)4.11 (including)
FreebsdFreebsd5.1 (including)5.1 (including)
FreebsdFreebsd5.2 (including)5.2 (including)
FreebsdFreebsd5.3 (including)5.3 (including)
FreebsdFreebsd5.4 (including)5.4 (including)
Kfreebsd-5Ubuntudapper*
Kfreebsd-5Ubuntudevel*
Kfreebsd-5Ubuntuedgy*
Kfreebsd-5Ubuntufeisty*

References