Vulnerabilities > CVE-2004-0099 - Unspecified vulnerability in Freebsd 5.1/5.2.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN freebsd
nessus
Summary
mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system, which causes default values for other flags to be used, possibly disabling security-critical settings and allowing a local user to bypass intended access restrictions.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 2 |
Nessus
NASL family | FreeBSD Local Security Checks |
NASL id | FREEBSD_MKSNAP_FFS.NASL |
description | The remote host is running a version of FreeBSD which contains a bug in the mksnap_ffs(8) utility which may reset file flags on the remote file system, thus resetting the type of access control that were assigned to a file. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 12575 |
published | 2004-07-06 |
reporter | This script is Copyright (C) 2004-2010 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/12575 |
title | FreeBSD : SA-04:01.mksnap_ff |
code |
|
References
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:01.mksnap_ffs.asc
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:01.mksnap_ffs.asc
- http://www.osvdb.org/3790
- http://www.osvdb.org/3790
- http://www.securityfocus.com/bid/9533
- http://www.securityfocus.com/bid/9533
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15005
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15005