PT-2002-1850 · Freebsd · Freebsd
Published
2002-08-12
·
Updated
2016-10-18
·
CVE-2002-0831
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
FreeBSD versions 4.3 through 4.6 STABLE
Description:
The issue allows local users to cause a denial of service, resulting in a kernel panic. This occurs when a pipe call is made where one end is terminated and an EVFILT WRITE filter is registered for the other end.
Recommendations:
For FreeBSD versions 4.3 through 4.6 STABLE, consider restricting the use of the kqueue mechanism as a temporary workaround until a patch is available. Avoid using the EVFILT WRITE filter in conjunction with pipe calls where one end is terminated to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Freebsd