CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.2. See the original NVD description below for full technical details.
CVE
CVE-2004-2012
Severity
HIGH
CVSS
7.2
EPSS
0.85%
Original NVD Description
The systrace_exit function in the systrace utility for NetBSD-current and 2.0 before April 16, 2004, and certain FreeBSD ports, does not verify the owner of the /dec/systrace connection before setting euid to 0, which allows local users to gain root privileges.