FreeBSD : SA-04:11.msync

low Nessus Plugin ID 12527

Synopsis

The remote device is missing a vendor-supplied security patch

Description

The remote host is running a version of FreeBSD which contains a programming error in the msync(2) system call which may let a local user with read access to a given file to forbid any change to this file to be written to disk.

Solution

http://www.vuxml.org/freebsd/1db1ed59-af07-11d8-acb9-000d610a3b12.html

Plugin Details

Severity: Low

ID: 12527

File Name: freebsd_buffer_cache.nasl

Version: Revision: 1.11

Published: 7/6/2004

Updated: 10/6/2010

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.7

CVSS v2

Risk Factor: Low

Base Score: 3.6

Temporal Score: 2.7

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Information

Required KB Items: Host/FreeBSD/pkg_info

Exploit Ease: No known exploits are available

Reference Information

CVE: CVE-2004-0435

BID: 10416