PT-2002-1848 · Freebsd · Freebsd
Published
2002-08-12
·
Updated
2016-10-18
·
CVE-2002-0829
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
FreeBSD versions 4.6.1 RELEASE-p4 and earlier
Description:
The issue is related to an integer overflow in the Berkeley Fast File System (FFS) that allows local users to access arbitrary file contents within FFS to gain privileges. This is achieved by creating a file that exceeds the size allowed by the virtual memory system.
Recommendations:
For versions 4.6.1 RELEASE-p4 and earlier, update to a version that addresses the integer overflow issue in the Berkeley Fast File System (FFS).
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Freebsd