CVE-2004-0099

UnknownEPSS 0.33%

Last modified

CVE-2004-0099 is a vulnerability of currently unknown severity. mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system, which causes default values for other flags to be used, possibly disabling security-critical settings and allowing a local user to bypass intended access restrictions.. EPSS estimates a 0.33% chance of exploitation in the next 30 days.

Description

mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system, which causes default values for other flags to be used, possibly disabling security-critical settings and allowing a local user to bypass intended access restrictions.

Metrics

EPSS Probability
0.33%

24.8th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersionsUpdate
FreebsdFreebsd5.1Release
FreebsdFreebsd5.2.1Release

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2004-0099?
mksnap_ffs in FreeBSD 5.1 and 5.2 only sets the snapshot flag when creating a snapshot for a file system, which causes default values for other flags to be used, possibly disabling security-critical settings and allowing a local user to bypass intended access restrictions.
How severe is CVE-2004-0099?
Severity scoring for CVE-2004-0099 is pending analysis. The EPSS model estimates a 0.33% probability of exploitation in the next 30 days.
How do I fix CVE-2004-0099?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2004-0099?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST