Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Kostik Belousov

#50017de 53,779
4.9CVSS total
Vulnerabilidades · 1
PT-2008-2395
4.9
2008-02-15
Freebsd · Freebsd · CVE-2008-0777
**Name of the Vulnerable Software and Affected Versions** FreeBSD versions 5.5 through 7.0 **Description** The issue concerns the sendfile system call, which does not properly check the access flags of the file descriptor used for sending a file. This allows local users to read the contents of files that are supposed to be write-only. **Recommendations** For versions 5.5 through 7.0, update to a version that includes a fix for this issue, as the current version allows unauthorized access to file contents.