Medium
CVSS 4.9
Overview
The sendfile system call in FreeBSD 5.5 through 7.0 does not check the access flags of the file descriptor used for sending a file, which allows local users to read the contents of write-only files.
The sendfile system call in FreeBSD 5.5 through 7.0 does not check the access fl...
The sendfile system call in FreeBSD 5.5 through 7.0 does not check the access flags of the file descriptor used for sending a file, which allows local users to read the contents of write-only files.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: