Vulnerabilities > CVE-2007-4303 - System Call Wrappers Concurrency vulnerability in CerbNG
Attack vector
LOCAL Attack complexity
HIGH Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Multiple race conditions in (1) certain rules and (2) argument copying during VM protection, in CerbNG for FreeBSD 4.8 allow local users to defeat system call interposition and possibly gain privileges or bypass auditing, as demonstrated by modifying command lines in log-exec.cb.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 | |
Application | 4 |