SB2011101801 - Buffer overflow in FreeBSD



SB2011101801 - Buffer overflow in FreeBSD

Published: October 18, 2011 Updated: August 11, 2020

Security Bulletin ID SB2011101801
Severity
High
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Remote access
Highest impact Code execution

Breakdown by Severity

High 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Buffer overflow (CVE-ID: CVE-2011-4062)

The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.

Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX socket.


Remediation

Install update from vendor's website.