Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-0216
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-0216

Description:
The ptsname function in FreeBSD 6.0 through 7.0-PRERELEASE does not properly verify that a certain portion of a device name is associated with a pty of a user who is calling the pt_chown function, which might allow local users to read data from the pty from another user.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/39667

ST
  1019191

SAID
  Secunia Advisory: SA28498

FREEBSD
  http://security.FreeBSD.org/advisories/FreeBSD-SA-08:01.pty.asc

BID
  27284


Return to the previous page.