CVE-2025-0374

MEDIUM

etcupdate - Info Disclosure

Title source: llm
STIX 2.1

Description

When etcupdate encounters conflicts while merging files, it saves a version containing conflict markers in /var/db/etcupdate/conflicts. This version does not preserve the mode of the input file, and is world-readable. This applies to files that would normally have restricted visibility, such as /etc/master.passwd. An unprivileged local user may be able to read encrypted root and user passwords from the temporary master.passwd file created in /var/db/etcupdate/conflicts. This is possible only when conflicts within the password file arise during an update, and the unprotected file is deleted when conflicts are resolved.

Scores

CVSS v3 6.5
EPSS 0.0011
EPSS Percentile 28.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-732
Status published
Products (3)
FreeBSD/FreeBSD 13.4-RELEASE - p3
FreeBSD/FreeBSD 14.1-RELEASE - p7
FreeBSD/FreeBSD 14.2-RELEASE - p1
Published Jan 30, 2025
Tracked Since Feb 18, 2026