Vulnerabilities > CVE-2005-1406 - Local Kernel Memory Disclosure vulnerability in FreeBSD
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
The kernel in FreeBSD 4.x to 4.11 and 5.x to 5.4 does not properly clear certain fixed-length buffers when copying variable-length data for use by applications, which could allow those applications to read previously used sensitive memory.
Vulnerable Configurations
Nessus
NASL family | MacOS X Local Security Checks |
NASL id | MACOSX_10_4_3.NASL |
description | The remote host is running a version of Mac OS X 10.4.x that is prior to 10.4.3. Mac OS X 10.4.3 contains several security fixes for : - Finder - Software Update - memberd - KeyChain - Kernel |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20113 |
published | 2005-11-01 |
reporter | This script is Copyright (C) 2005-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/20113 |
title | Mac OS X 10.4.x < 10.4.3 Multiple Vulnerabilities |
code |
|
References
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:08.kmem.asc
- http://lists.apple.com/archives/security-announce/2005/Oct/msg00000.html
- http://secunia.com/advisories/17368
- http://www.securityfocus.com/bid/13526
- http://www.securityfocus.com/bid/15252
- http://www.vupen.com/english/advisories/2005/2256