Buffer overflow in NetBSD - #VU18387
Published: May 3, 2019
NetBSD
Detailed vulnerability description
The vulnerability allows a local user to execute arbitrary code on the target system withe elevated privileges.
The vulnerability exists due to a boundary error when validating arguments in mq_send(3) system call. A local unprivileged user can create a specially crafted application, run it on the affected system, trigger memory corruption and overwrite kernel memory.