First published: Fri May 28 2010(Updated: )
jail.c in jail in FreeBSD 8.0 and 8.1-PRERELEASE, when the "-l -U root" options are omitted, does not properly restrict access to the current working directory, which might allow local users to read, modify, or create arbitrary files via standard filesystem operations.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD FreeBSD | =8.0 | |
FreeBSD FreeBSD | =8.1-prerelease |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.