Unrated severityNVD Advisory· Published Sep 4, 2001· Updated Jun 16, 2026
CVE-2001-1017
CVE-2001-1017
Description
rmuser utility in FreeBSD 4.2 and 4.3 creates a copy of the master.passwd file with world-readable permissions while updating the original file, which could allow local users to gain privileges by reading the copied file while rmuser is running, obtain the password hashes, and crack the passwords.
Affected products
3Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:59.rmuser.v1.1.ascnvdPatchVendor Advisory
- www.securityfocus.com/bid/3282nvdPatchVendor Advisory
- www.osvdb.org/1947nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/7086nvd
News mentions
0No linked articles in our index yet.