PT-2007-2692 · Netbsd · Netbsd
Published
2007-03-10
·
Updated
2009-10-14
·
CVE-2007-1273
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
NetBSD versions prior to 20061022
NetBSD 3 and 3-0 versions prior to 20061024
NetBSD 2 versions prior to 20070209
Description
The issue is related to an integer overflow in the
ktruser function. This occurs when the kernel is built with the COMPAT FREEBSD or COMPAT DARWIN option, allowing local users to cause a denial of service and possibly gain privileges.Recommendations
For NetBSD versions prior to 20061022, update to a version after 20061022.
For NetBSD 3 and 3-0 versions prior to 20061024, update to a version after 20061024.
For NetBSD 2 versions prior to 20070209, update to a version after 20070209.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netbsd