CVE-2001-0371: Race Condition
Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0371?
CVE-2001-0371 has a high severity level due to its potential for local users to access restricted information.
How do I fix CVE-2001-0371?
To fix CVE-2001-0371, upgrade to FreeBSD 4.3 or later where this race condition has been addressed.
What systems are affected by CVE-2001-0371?
CVE-2001-0371 affects FreeBSD 4.2 and earlier versions, as well as potentially other operating systems that use similar file systems.
What is the risk associated with CVE-2001-0371?
The risk associated with CVE-2001-0371 is unauthorized access to deleted data, which can expose sensitive information to local users.
Can CVE-2001-0371 be exploited remotely?
CVE-2001-0371 cannot be exploited remotely as it requires local access to the affected system to exploit the race condition.