SB2016071809 - Resource exhaustion in OpenBSD OpenBSD
Published: July 18, 2016 Updated: November 22, 2018
Security Bulletin ID
SB2016071809
Severity
Medium
Patch available
YES
Number of vulnerabilities
1
Exploitation vector
Local access
Highest impact
Denial of service
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Resource exhaustion (CVE-ID: CVE-2016-6239)
The vulnerability allows a local user to cause denial of service conditions on the target system.The vulnerability exists due to resource error in OpenBSD. A local user can cause excessive resource consumption and a system crash by invoking the __MAP_NOFAULT mmap extension to trigger a flaw in sys_mmap().
Successful exploitation of this vulnerability may result in denial of service.
Remediation
Install update from vendor's website.