CVE-2009-0641

sys_term.c in telnetd in FreeBSD 7.0-RELEASE and other 7.x versions deletes dangerous environment variables with a method that was valid only in older FreeBSD distributions, which might allow remote attackers to execute arbitrary code by passing a crafted environment variable from a telnet client, as demonstrated by an LD_PRELOAD value that references a malicious library.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:freebsd:freebsd:7.0:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.0:beta_4:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.0:current:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.0-release:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.0_beta4:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.0_releng:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.1:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:7.1:rc1:*:*:*:*:*:*

History

21 Nov 2024, 01:00

Type Values Removed Values Added
References () http://lists.grok.org.uk/pipermail/full-disclosure/2009-February/067954.html - Exploit () http://lists.grok.org.uk/pipermail/full-disclosure/2009-February/067954.html - Exploit
References () http://security.freebsd.org/advisories/FreeBSD-SA-09:05.telnetd.asc - Patch () http://security.freebsd.org/advisories/FreeBSD-SA-09:05.telnetd.asc - Patch
References () http://www.securityfocus.com/bid/33777 - Exploit () http://www.securityfocus.com/bid/33777 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/48780 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/48780 -
References () https://www.exploit-db.com/exploits/8055 - () https://www.exploit-db.com/exploits/8055 -

Information

Published : 2009-02-20 06:47

Updated : 2025-04-09 00:30


NVD link : CVE-2009-0641

Mitre link : CVE-2009-0641

CVE.ORG link : CVE-2009-0641


JSON object : View

Products Affected

freebsd

  • freebsd
CWE
CWE-16

Configuration

CWE-264

Permissions, Privileges, and Access Controls