PT-2007-2692 · Netbsd · Netbsd

Published

2007-03-10

·

Updated

2009-10-14

·

CVE-2007-1273

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions NetBSD versions prior to 20061022 NetBSD 3 and 3-0 versions prior to 20061024 NetBSD 2 versions prior to 20070209
Description The issue is related to an integer overflow in the ktruser function. This occurs when the kernel is built with the COMPAT FREEBSD or COMPAT DARWIN option, allowing local users to cause a denial of service and possibly gain privileges.
Recommendations For NetBSD versions prior to 20061022, update to a version after 20061022. For NetBSD 3 and 3-0 versions prior to 20061024, update to a version after 20061024. For NetBSD 2 versions prior to 20070209, update to a version after 20070209.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1273

Affected Products

Netbsd