vendor:
FreeBSD
by:
zx2c4
7.2
CVSS
HIGH
Netgraph Exploit
119
CWE
Product Name: FreeBSD
Affected Version From: 6.4-RELEASE
Affected Version To: 6.4-RELEASE
Patch Exists: YES
Related CWE: CVE-2008-5736
CPE: o:freebsd:freebsd
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: FreeBSD
2011
FreeBSD <= 6.4-RELEASE Netgraph Exploit
This is an exploit for CVE-2008-5736, the FreeBSD protosw and loosely based on Don Bailey's 2008 exploit. It reliably works on kernels on or below 6.4-RELEASE. It's an oldie, but simple enough that someone needed to write another PoC exploit at some point.
Mitigation:
Upgrade to a version of FreeBSD greater than 6.4-RELEASE.