CVE-2003-0001

Freebsd - Information Disclosure

Title source: rule

Description

Multiple ethernet Network Interface Card (NIC) device drivers do not pad frames with null bytes, which allows remote attackers to obtain information from previous packets or kernel memory by using malformed packets, as demonstrated by Etherleak.

Exploits (4)

nomisec SCANNER 5 stars
by marb08 · poc
https://github.com/marb08/etherleak-checker
exploitdb WORKING POC
by prdelka · pythondoshardware
https://www.exploit-db.com/exploits/26076
exploitdb WORKING POC VERIFIED
by Jon Hart · perlremotebsd
https://www.exploit-db.com/exploits/22131
exploitdb WORKING POC VERIFIED
by Jon Hart · perlremotemultiple
https://www.exploit-db.com/exploits/3555

Scores

EPSS 0.0373
EPSS Percentile 87.8%

Classification

CWE
CWE-200
Status draft

Affected Products (37)

freebsd/freebsd
freebsd/freebsd
freebsd/freebsd
freebsd/freebsd
freebsd/freebsd
freebsd/freebsd
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
... and 22 more

Timeline

Published Jan 17, 2003
Tracked Since Feb 18, 2026