vulnerability

FreeBSD: VID-FA9AE646-DEBC-11EF-87BA-002590C1F29C (CVE-2025-0374): FreeBSD -- Unprivileged access to system files

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:C/I:N/A:N)
Published
Jan 29, 2025
Added
Jan 31, 2025
Modified
Feb 18, 2025

Description

When etcupdate encounters conflicts while merging files, it saves a version containing conflict markers in /var/db/etcupdate/conflicts. This version does not preserve the mode of the input file, and is world-readable. This applies to files that would normally have restricted visibility, such as /etc/master.passwd.



An unprivileged local user may be able to read encrypted root and user passwords from the temporary master.passwd file created in /var/db/etcupdate/conflicts. This is possible only when conflicts within the password file arise during an update, and the unprotected file is deleted when conflicts are resolved.

Solutions

freebsd-upgrade-base-13_4-release-p3freebsd-upgrade-base-14_1-release-p7freebsd-upgrade-base-14_2-release-p1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.