CVE Vulnerabilities

CVE-2005-1406

Published: May 06, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The kernel in FreeBSD 4.x to 4.11 and 5.x to 5.4 does not properly clear certain fixed-length buffers when copying variable-length data for use by applications, which could allow those applications to read previously used sensitive memory.

Affected Software

NameVendorStart VersionEnd Version
FreebsdFreebsd4.1 (including)4.1 (including)
FreebsdFreebsd4.2 (including)4.2 (including)
FreebsdFreebsd4.3 (including)4.3 (including)
FreebsdFreebsd4.4 (including)4.4 (including)
FreebsdFreebsd4.5 (including)4.5 (including)
FreebsdFreebsd4.6 (including)4.6 (including)
FreebsdFreebsd4.7 (including)4.7 (including)
FreebsdFreebsd4.8 (including)4.8 (including)
FreebsdFreebsd4.9 (including)4.9 (including)
FreebsdFreebsd4.10 (including)4.10 (including)
FreebsdFreebsd4.11 (including)4.11 (including)
FreebsdFreebsd5.1 (including)5.1 (including)
FreebsdFreebsd5.2 (including)5.2 (including)
FreebsdFreebsd5.3 (including)5.3 (including)
FreebsdFreebsd5.4 (including)5.4 (including)
Kfreebsd-5Ubuntudapper*
Kfreebsd-5Ubuntudevel*
Kfreebsd-5Ubuntuedgy*
Kfreebsd-5Ubuntufeisty*

References