Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-4358
Description:freebsd-update in FreeBSD 8.0, 7.2, 7.1, 6.4, and 6.3 uses insecure permissions in its working directory (/var/db/freebsd-update by default), which allows local users to read copies of sensitive files after a (1) freebsd-update fetch (fetch) or (2) freebsd-update upgrade (upgrade) operation.
Test IDs: 1.3.6.1.4.1.25623.1.0.66355  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-4358
BugTraq ID: 37190
http://www.securityfocus.com/bid/37190
FreeBSD Security Advisory: FreeBSD-SA-09:17
http://security.freebsd.org/advisories/FreeBSD-SA-09:17.freebsd-update.asc
http://secunia.com/advisories/37575




© 1998-2025 E-Soft Inc. All rights reserved.