bsd-aio-overwrite-memory(7693)vdb entry
http://www.iss.net/security_center/static/7693.php CVE-2001-1185
FreeBSD 4.4 - AIO Library Cross Process Memory Write
Record summary
CVE-2001-1185 has a selected CVSS score of 6.2; EIP currently links 1 catalogued exploit.
Description
Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFreeBSD 4.4 - AIO Library Cross Process Memory WriteExploitDB exploitby David RufinoNot analyzed1 file
References
52001vdb entry
http://www.osvdb.org/2001 20011210 AIO vulnerabilitymailing list
http://www.securityfocus.com/archive/1/244583 3661vdb entry
http://www.securityfocus.com/bid/3661 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2001-1185