Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0125

EPSS 0.05% · P15
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0125

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The jail system call in FreeBSD 4.x before 4.10-RELEASE does not verify that an attempt to manipulate routing tables originated from a non-jailed process, which could allow local users to modify the routing table.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
FreeBSD jail()进程未授权路由表修改漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
FreeBSD是一款免费开放源代码的UNIX操作系统。 FreeBSD没有正确允许jail()环境中的超级用户进程修改路由表,远程攻击者可以利用这个漏洞破坏路由表,对网络服务进行攻击等。 jail(2)系统调用允许系统管理员琐住进程并在限制的环境中运行,FreeBSD内核维护内部路由表来判断要传送数据的接口。这些路由表可以允许超级用户权限的用户进程通过在路由套接口上发送消息来更改。由于程序设计错误,在jail环境中的超级用户权限的进程可以发送路由表更改信息而操作路由表,可导致破坏服务器路由表,拒绝正常的网
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0125

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0125

登录查看更多情报信息。

Same Patch Batch · n/a · 2004-06-23 · 17 CVEs total

CVE-2004-0135SGI IRIX SYSSGI()系统调用非特权用户内核内存访问漏洞
CVE-2004-0136SGI IRIX MapElf32Exec未明本地拒绝服务漏洞
CVE-2004-0137SGI IRIX Init未明本地拒绝服务漏洞
CVE-2004-0413Subversion SVN协议解析远程整数溢出漏洞
CVE-2004-0492Apache 安全漏洞
CVE-2004-0495Linux Kernel多个设备驱动漏洞
CVE-2004-0579超级本地格式串漏洞Super本地格式字符串漏洞
CVE-2004-0580多种Linksys设备DHCP信息泄露和拒绝服务漏洞
CVE-2004-0581KSymoops KSymoops-GZNM处理不安全的临时文件符号链接漏洞
CVE-2004-0582Webmin多个未明安全漏洞
CVE-2004-0583Webmin多个未明安全漏洞
CVE-2004-0584Horde IMP Email Header HTML注入漏洞
CVE-2004-0586acpRunner ActiveX 代码存在威胁 acpRunner ActiveX执行任意代码漏洞
CVE-2004-0587SuSE Linux Kernel HbaApiNode不安全文件权限本地拒绝服务漏洞
CVE-2004-0588Usermin HTML Email脚本代码执行漏洞
CVE-2004-0589Cisco IOS 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2004-0125

No comments yet


Leave a comment