BSD contains a flaw that may allow a malicious local user to modify arbitrary files on the system. The issue is triggered when a malicious user mails himself a root passwd entry that /usr/ucb/mail will append to /etc/passwd, resulting in a loss of integrity.
BSD contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a malicious user uses the cat command to view the output of a victim user terminal, resulting in a loss of confidentiality.