Multiple integer overflows in the IP_MSFILTER and IPV6_MSFILTER features in (1) sys/netinet/in_mcast.c and (2) sys/netinet6/in6_mcast.c in the multicast implementation in the kernel in FreeBSD 8.3 through 9.2-PRERELEASE allow local users to bypass intended restrictions on kernel-memory read and write operations, and consequently gain privileges, via vectors involving a large number of source-filter entries.
References
Link | Resource |
---|---|
http://www.freebsd.org/security/advisories/FreeBSD-SA-13:09.ip_multicast.asc | Vendor Advisory |
http://svnweb.freebsd.org/base?view=revision&revision=254629 | Patch |
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-08-28 06:13
Updated : 2019-03-18 08:35
NVD link : CVE-2013-3077
Mitre link : CVE-2013-3077
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
freebsd
- freebsd