Integer overflow in the ffs_mountfs function in FreeBSD 6.1 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted UFS filesystem that causes invalid or large size parameters to be provided to the kmem_alloc function. NOTE: a third party states that this issue does not cross privilege boundaries in FreeBSD because only root may mount a filesystem.
References
Configurations
Information
Published : 2006-11-03 14:07
Updated : 2011-10-10 21:00
NVD link : CVE-2006-5679
Mitre link : CVE-2006-5679
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
freebsd
- freebsd