Vulnerabilities (CVE)

Filtered by vendor Niels Subscribe
Filtered by product Provos Systrace
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-2012 3 Netbsd, Niels, Vladimir Kotal 3 Netbsd, Provos Systrace, Systrace Port For Freebsd 2023-12-10 7.2 HIGH N/A
The systrace_exit function in the systrace utility for NetBSD-current and 2.0 before April 16, 2004, and certain FreeBSD ports, does not verify the owner of the /dec/systrace connection before setting euid to 0, which allows local users to gain root privileges.