Vulnerability Description
FreeBSD 5.x to 5.4 on AMD64 does not properly initialize the IO permission bitmap used to allow user access to certain hardware, which allows local users to bypass intended access restrictions to cause a denial of service, obtain sensitive information, and possibly gain privileges.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Freebsd | Freebsd | >= 5.0, <= 5.4 |
| Amd | Amd64 | - |
Related Weaknesses (CWE)
References
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:03.amd64.ascBroken Link
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:03.amd64.ascBroken Link
FAQ
What is CVE-2005-1036?
CVE-2005-1036 is a vulnerability with a CVSS score of 7.8 (HIGH). FreeBSD 5.x to 5.4 on AMD64 does not properly initialize the IO permission bitmap used to allow user access to certain hardware, which allows local users to bypass intended access restrictions to caus...
How severe is CVE-2005-1036?
CVE-2005-1036 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-1036?
Check the references section above for vendor advisories and patch information. Affected products include: Freebsd Freebsd, Amd Amd64.