Total vulnerabilities in the database
The pfs_getextattr function in FreeBSD 7.x before 7.3-RELEASE and 8.x before 8.0-RC1 unlocks a mutex that was not previously locked, which allows local users to cause a denial of service (kernel panic), overwrite arbitrary memory locations, and possibly execute arbitrary code via vectors related to opening a file on a file system that uses pseudofs.
Software | From | Fixed in |
---|---|---|
freebsd / freebsd | 7.0 | 7.3 |
freebsd / freebsd | 8.0-p1 | 8.0-p1.x |
freebsd / freebsd | 8.0-p2 | 8.0-p2.x |
freebsd / freebsd | 8.0-p3 | 8.0-p3.x |
freebsd / freebsd | 8.0-p4 | 8.0-p4.x |
freebsd / freebsd | 8.0-p5 | 8.0-p5.x |
freebsd / freebsd | 8.0-p6 | 8.0-p6.x |