The copy functions in locore.s such as copyout in OpenBSD 3.5 and 3.6, and possibly other BSD based operating systems, may allow attackers to exceed certain address boundaries and modify kernel memory.
Link | Tags |
---|---|
http://www.openbsd.org/errata.html#copy | vendor advisory |
http://securitytracker.com/id?1013333 | vdb entry patch vendor advisory |
http://www.openbsd.org/errata35.html#locore | patch vendor advisory |
http://www.securityfocus.com/bid/12825 | vdb entry patch |
http://secunia.com/advisories/14432 | third party advisory patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/19531 | vdb entry |