Vulnerabilities > CVE-2005-1126 - Resource Management Errors vulnerability in Freebsd
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer before using it, which allows local users to obtain portions of sensitive kernel memory.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Nessus
NASL family | MacOS X Local Security Checks |
NASL id | MACOSX_10_4_3.NASL |
description | The remote host is running a version of Mac OS X 10.4.x that is prior to 10.4.3. Mac OS X 10.4.3 contains several security fixes for : - Finder - Software Update - memberd - KeyChain - Kernel |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20113 |
published | 2005-11-01 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/20113 |
title | Mac OS X 10.4.x < 10.4.3 Multiple Vulnerabilities |
code |
|
References
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:04.ifconf.asc
- http://lists.apple.com/archives/security-announce/2005/Oct/msg00000.html
- http://secunia.com/advisories/14959
- http://secunia.com/advisories/17368
- http://www.osvdb.org/15514
- http://www.securityfocus.com/bid/15252
- http://www.vupen.com/english/advisories/2005/2256
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20114