Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

James Gritton

#39599of 53,633
6.9Total CVSS
Vulnerabilities · 1
PT-2008-4915
6.9
2008-09-05
Freebsd · Freebsd · CVE-2008-3531
**Name of the Vulnerable Software and Affected Versions** FreeBSD versions 7.0 through 7.1 **Description** A stack-based buffer overflow issue exists in the kernel, specifically in sys/kern/vfs mount.c, when vfs.usermount is enabled. This allows local users to gain privileges via a crafted mount or nmount system call. The issue is related to the copying of user-defined data in certain error conditions. **Recommendations** For FreeBSD versions 7.0 through 7.1, consider disabling the vfs.usermount option as a temporary workaround to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.