CNCVE编号:CNCVE-20010061 CVE编号:CVE-2001-0061 安全级别:高 漏洞中文描述: FreeBSD和一些其他操作系统的procfs不能正确的限制对每个进程的mem和ctl文件的访问,这将允许本地用户创建一个子进程并从这个子进程执行有特权的进程,这个父进程可以访问子进程的地址空间,从而获取到root权限。 漏洞英文描述: procfs in FreeBSD and possibly other operating systems does not properly restrict access to per-process mem and ctl files, which allows local users to gain root privileges by forking a child process and executing a privileged process from the child, which can access the address of the process. 漏洞参考: BID:2130 FREEBSD:FreeBSD-SA-00:77 系统类型:其他 漏洞类型:权限有效性检查错误