The ktrace utility in the FreeBSD kernel 8.4 before p11, 9.1 before p14, 9.2 before p7, and 9.3-BETA1 before p1 uses an incorrect page fault kernel trace entry size, which allows local users to obtain sensitive information from kernel memory via a kernel process trace.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-06-10 07:55
Updated : 2014-06-24 07:41
NVD link : CVE-2014-3873
Mitre link : CVE-2014-3873
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
freebsd
- freebsd