Integer overflow in the ffs_mountfs function in FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted UFS filesystem that causes invalid or large size parameters to be provided to the kmem_alloc function. NOTE: a third party states that this issue does not cross privilege boundaries in FreeBSD because only root may mount a filesystem.
References
Configurations
History
No history.
Information
Published : 2006-11-03 22:07
Updated : 2011-10-11 04:00
NVD link : CVE-2006-5679
Mitre link : CVE-2006-5679
CVE.ORG link : CVE-2006-5679
JSON object : View
Products Affected
freebsd
- freebsd
CWE
CWE-189
Numeric Errors