The kernel in FreeBSD 6.3 through 7.0 on amd64 platforms can make an extra swapgs call after a General Protection Fault (GPF), which allows local users to gain privileges by triggering a GPF during the kernel's return from (1) an interrupt, (2) a trap, or (3) a system call.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://secunia.com/advisories/31743 | third party advisory vendor advisory |
http://security.freebsd.org/advisories/FreeBSD-SA-08:07.amd64.asc | vendor advisory |
http://www.securitytracker.com/id?1020815 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/44905 | vdb entry |
http://www.securityfocus.com/bid/31003 | vdb entry |