Integer overflow in the systrace_preprepl function (STRIOCREPLACE) in systrace in OpenBSD 3.9 and NetBSD 3 allows local users to cause a denial of service (crash), gain privileges, or read arbitrary kernel memory via large numeric arguments to the systrace ioctl.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/29392 | vdb entry |
http://www.osvdb.org/29570 | vdb entry |
http://secunia.com/advisories/22324 | third party advisory patch vendor advisory |
http://scary.beasts.org/security/CESA-2006-003.html | exploit |
http://www.securityfocus.com/bid/20392 | vdb entry patch |
http://securitytracker.com/id?1017009 | vdb entry patch |
http://openbsd.org/errata.html#systrace | patch vendor advisory |