CVE-2013-5710: Low severity freebsd kernel vulnerability
The nullfs implementation in sys/fs/nullfs/nullvnops.c in the kernel in FreeBSD 8.3 through 9.2 allows local users with certain permissions to bypass access restrictions via a hardlink in a nullfs instance to a file in a different instance.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5710?
CVE-2013-5710 has been classified as a medium severity vulnerability indicating a moderate risk to affected systems.
How do I fix CVE-2013-5710?
To fix CVE-2013-5710, it is recommended to upgrade FreeBSD to a version that has patched this vulnerability, specifically versions 9.3 or later.
Who is affected by CVE-2013-5710?
Local users with certain permissions on FreeBSD versions 8.3 through 9.2 are affected by CVE-2013-5710.
What systems are impacted by CVE-2013-5710?
CVE-2013-5710 affects FreeBSD versions 8.3, 8.4, and 9.0 to 9.2.
What does CVE-2013-5710 exploit?
CVE-2013-5710 exploits the nullfs implementation to bypass access restrictions through a hard link.