CVE-2005-1400

FreeBSD 4.7-4.11 and 5.x-5.4 - Kernel Memory Exposure via i386_get_ldt System Call

Title source: llm
STIX 2.1

Description

The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values.

References (1)

Core 1
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_freebsd
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:07.ldt.asc

Scores

EPSS 0.0006
EPSS Percentile 19.0%

Details

Status published
Products (9)
freebsd/freebsd 4.7
freebsd/freebsd 4.8
freebsd/freebsd 4.9
freebsd/freebsd 4.10
freebsd/freebsd 4.11
freebsd/freebsd 5.1
freebsd/freebsd 5.2
freebsd/freebsd 5.3
freebsd/freebsd 5.4
Published May 06, 2005
Tracked Since Feb 18, 2026