CVE-2008-5736
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.2%
from disclosure to weapon804 days
Published on NVDDec 26
1st PoC+804d
exploitation probability
1.2%top 35% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Multiple unspecified vulnerabilities in FreeBSD 6 before 6.4-STABLE, 6.3 before 6.3-RELEASE-p7, 6.4 before 6.4-RELEASE-p1, 7.0 before 7.0-RELEASE-p7, 7.1 before 7.1-RC2, and 7 before 7.1-PRERELEASE allow local users to gain privileges via unknown attack vectors related to function pointers that are "not properly initialized" for (1) netgraph sockets and (2) bluetooth sockets.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/16951unverifiedcve_referencewww.exploit-db.com/exploits/7581unverifiedcve_referencewww.exploit-db.com/exploits/16951unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://osvdb.org/50936http://secunia.com/advisories/33209http://security.freebsd.org/advisories/FreeBSD-SA-08:13.protosw.aschttp://securityreason.com/securityalert/8124https://exchange.xforce.ibmcloud.com/vulnerabilities/47570https://www.exploit-db.com/exploits/7581http://www.exploit-db.com/exploits/16951http://www.securityfocus.com/bid/32976http://www.securitytracker.com/id?1021491