The sendfile system call in FreeBSD 5.5 through 7.0 does not check the access flags of the file descriptor used for sending a file, which allows local users to read the contents of write-only files.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://security.freebsd.org/advisories/FreeBSD-SA-08:03.sendfile.asc | patch vendor advisory |
http://securitytracker.com/id?1019416 | vdb entry |
http://www.securityfocus.com/bid/27789 | exploit vdb entry patch |
http://secunia.com/advisories/28928 | third party advisory vendor advisory |