mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 01:02:25 +00:00
108 lines
3.4 KiB
JSON
108 lines
3.4 KiB
JSON
{
|
|
"id": "CVE-2007-4304",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2007-08-13T21:17:00.000",
|
|
"lastModified": "2008-09-05T21:27:54.427",
|
|
"vulnStatus": "Analyzed",
|
|
"cveTags": [],
|
|
"evaluatorComment": "More information about this vulnerability can be found at: http://www.securityfocus.com/bid/25259",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CerbNG for FreeBSD 4.8 does not properly implement VM protection when attempting to prevent system call wrapper races, which allows local users to have an unknown impact related to an \"incorrect write protection of pages\"."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "CerbNG para FreeBSD 4.8 no implementa protecci\u00f3n de la memoria virtual (VM) cuando intenta prevenir condiciones de carrera en envoltorios de llamadas al sistema, lo cual permite a usuarios locales tener impacto desconocido relacionado con una \"incorrecta protecci\u00f3n de escritura de p\u00e1ginas\"."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:L/AC:H/Au:N/C:C/I:C/A:C",
|
|
"accessVector": "LOCAL",
|
|
"accessComplexity": "HIGH",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "COMPLETE",
|
|
"integrityImpact": "COMPLETE",
|
|
"availabilityImpact": "COMPLETE",
|
|
"baseScore": 6.2
|
|
},
|
|
"baseSeverity": "MEDIUM",
|
|
"exploitabilityScore": 1.9,
|
|
"impactScore": 10.0,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": true,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "NVD-CWE-Other"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:o:freebsd:freebsd:4.8:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "441BE3A0-20F4-4972-B279-19B3DB5FA14D"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:cerb:cerbng:0.1:*:freebsd:*:*:*:*:*",
|
|
"matchCriteriaId": "0181B778-3BF9-41A3-BAA0-1D0259E64AE8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:cerb:cerbng:0.2:*:freebsd:*:*:*:*:*",
|
|
"matchCriteriaId": "F3C8CEE0-3973-4B6A-ABF1-630C56FB41E7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:cerb:cerbng:0.3:*:freebsd:*:*:*:*:*",
|
|
"matchCriteriaId": "1D418808-847A-42D7-97B8-167790F869FD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:a:cerb:cerbng:0.4:*:freebsd:*:*:*:*:*",
|
|
"matchCriteriaId": "54FF562D-154E-4576-BB79-467D97CA842B"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://www.watson.org/~robert/2007woot/",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |