CVE-2001-0371
Last modified
CVE-2001-0371 is a vulnerability of currently unknown severity. Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information.. EPSS estimates a 0.30% chance of exploitation in the next 30 days.
Description
Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Freebsd | Freebsd | <= 4.2 |
References
- http://archives.neohapsis.com/archives/freebsd/2001-03/0403.htmlPatch, Vendor Advisory
- http://archives.neohapsis.com/archives/freebsd/2001-03/0403.htmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-0371?
How severe is CVE-2001-0371?
How do I fix CVE-2001-0371?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2001
- CVE-2001-0365Eudora before 5.1 allows a remote attacker to execute arbitr…
- CVE-2001-0366saposcol in SAP R/3 Web Application Server Demo before 1.5 t…
- CVE-2001-0367Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a …
- CVE-2001-0368Directory traversal vulnerability in BearShare 2.2.2 and ear…
- CVE-2001-0369Buffer overflow in lpsched on DGUX version R4.20MU06 and MU0…
- CVE-2001-0370fcheck prior to 2.57.59 calls the file signature checking pr…
- CVE-2001-0372Akopia Interchange 4.5.3 through 4.6.3 installs demo stores …
- CVE-2001-0373The default configuration of the Dr. Watson program in Windo…
- CVE-2001-0374The HTTP server in Compaq web-enabled management software fo…
- CVE-2001-0375Cisco PIX Firewall 515 and 520 with 5.1.4 OS running aaa aut…
- CVE-2001-0376SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware usi…
- CVE-2001-0377Infradig Inframail prior to 3.98a allows a remote attacker t…
Are you affected by CVE-2001-0371?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
