OpenBSD Systrace STRIOCREPLACE Local Integer Overflow Vulnerability
BID:20392
Info
OpenBSD Systrace STRIOCREPLACE Local Integer Overflow Vulnerability
| Bugtraq ID: | 20392 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-5218 |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 07 2006 12:00AM |
| Updated: | Nov 28 2006 10:19PM |
| Credit: | Chris Evans of the Google Security Team discovered this issue. |
| Vulnerable: |
OpenBSD OpenBSD 3.9 OpenBSD OpenBSD 3.8 NetBSD NetBSD 3.0.1 NetBSD NetBSD 2.1 NetBSD NetBSD 2.0.3 NetBSD NetBSD 2.0.2 NetBSD NetBSD 2.0.1 NetBSD NetBSD 2.0 NetBSD NetBSD Current NetBSD NetBSD 2.1.1 NetBSD NetBSD 2.0.4 Navision Financials Server 3.0 |
| Not Vulnerable: | |
Discussion
OpenBSD Systrace STRIOCREPLACE Local Integer Overflow Vulnerability
OpenBSD systrace is prone to a local integer-overflow vulnerability.
An attacker can exploit this vulnerability to execute arbitrary code with elevated privileges. A successful exploit could lead to a complete compromise of affected computers.
OpenBSD 3.8 and 3.9 are reported vulnerable; other BSD variants such as NetBSD and FreeBSD may be affected as well.
OpenBSD systrace is prone to a local integer-overflow vulnerability.
An attacker can exploit this vulnerability to execute arbitrary code with elevated privileges. A successful exploit could lead to a complete compromise of affected computers.
OpenBSD 3.8 and 3.9 are reported vulnerable; other BSD variants such as NetBSD and FreeBSD may be affected as well.
Exploit / POC
OpenBSD Systrace STRIOCREPLACE Local Integer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected]
Solution / Fix
OpenBSD Systrace STRIOCREPLACE Local Integer Overflow Vulnerability
Solution:
OpenBSD has released source-code patches to address this issue.
Please see the referenced advisories for further information.
OpenBSD OpenBSD 3.8
OpenBSD OpenBSD 3.9
Solution:
OpenBSD has released source-code patches to address this issue.
Please see the referenced advisories for further information.
OpenBSD OpenBSD 3.8
-
OpenBSD 019_systrace.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.8/common/019_systrace.patc h
OpenBSD OpenBSD 3.9
-
OpenBSD 014_systrace.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.9/common/014_systrace.patc h
References
OpenBSD Systrace STRIOCREPLACE Local Integer Overflow Vulnerability
References:
References:
- OpenBSD Homepage (OpenBSD)