Описание
NetBSD 1.4 through 1.6 beta allows local users to cause a denial of service (kernel panic) via a series of calls to the TIOCSCTTY ioctl, which causes an integer overflow in a structure counter and sets the counter to zero, which frees memory that is still in use by other processes.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:o:netbsd:netbsd:1.4:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4:*:alpha:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4:*:arm32:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4:*:sparc:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4:*:x86:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.1:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.1:*:alpha:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.1:*:arm32:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.1:*:sh3:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.1:*:sparc:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.1:*:x86:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.2:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.2:*:alpha:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.2:*:arm32:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.2:*:sparc:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.2:*:x86:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.4.3:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5:*:sh3:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5:*:x86:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5.1:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5.2:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.5.3:*:*:*:*:*:*:*
cpe:2.3:o:netbsd:netbsd:1.6:beta:*:*:*:*:*:*
EPSS
Процентиль: 21%
0.00065
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
NetBSD 1.4 through 1.6 beta allows local users to cause a denial of service (kernel panic) via a series of calls to the TIOCSCTTY ioctl, which causes an integer overflow in a structure counter and sets the counter to zero, which frees memory that is still in use by other processes.
EPSS
Процентиль: 21%
0.00065
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other