The bsdinstall installer in FreeBSD 10.x before 10.1 p9, when configuring full disk encrypted ZFS, uses world-readable permissions for the GELI keyfile (/boot/encryption.key), which allows local users to obtain sensitive key information by reading the file.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1032042 | vdb entry |
https://www.freebsd.org/security/advisories/FreeBSD-SA-15:08.bsdinstall.asc | vendor advisory exploit |
http://www.securityfocus.com/archive/1/535209/100/0/threaded | mailing list |
http://packetstormsecurity.com/files/131338/FreeBSD-10.x-ZFS-encryption.key-Disclosure.html | exploit |