CVE-2004-0099 Information

Description

mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system which causes default values for other flags to be used possibly disabling security-critical settings and allowing a local user to bypass intended access restrictions.

Reference

ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-04:01.mksnap_ffs.asc http://www.osvdb.org/3790 http://www.securityfocus.com/bid/9533 https://exchange.xforce.ibmcloud.com/vulnerabilities/15005

Share on: