Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The setlogin function in FreeBSD 8.4 through 10.1-RC4 does not initialize the buffer used to store the login name, which allows local users to obtain sensitive information from kernel memory via a call to getlogin, which returns the entire buffer.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FreeBSD 信息泄露漏洞
Vulnerability Description
FreeBSD是由Core Team团队负责的FreeBSD项目中的一套类Unix自由操作系统,是经过BSD、386BSD和4.4BSD发展而来的类Unix的一个重要分支。 FreeBSD 8.4版本至10.1-RC4版本的‘setlogin’函数中存在安全漏洞,该漏洞源于程序没有初始化存储登录名的缓冲区。本地攻击者可通过调用‘getlogin’函数利用该漏洞获取内核内存中的敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A