NetBSD KTRUser Integer Overflow Vulnerability

NetBSD is prone to a local integer-overflow vulnerability because it fails to adequately bounds-check user-supplied data.

An attacker can exploit this vulnerability to execute arbitrary code with superuser privileges. Failed exploit attempts will likely cause denial-of-service conditions.

NetBSD 4.0-current and prior versions are affected.


 

Privacy Statement
Copyright 2010, SecurityFocus