Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.
Link | Tags |
---|---|
http://www.iss.net/security_center/static/7693.php | vdb entry vendor advisory |
http://www.securityfocus.com/archive/1/244583 | mailing list vendor advisory |
http://www.securityfocus.com/bid/3661 | exploit vdb entry patch vendor advisory |
http://www.osvdb.org/2001 | vdb entry |